Researchers Find 3 New Malware Strains Used by SolarWinds Hackers

Researchers Find 3 New Malware Strains Used by SolarWinds Hackers

FireEye and Microsoft on Thursday said they discovered three more malware strains in connection with the SolarWinds supply-chain attack, including a “sophisticated second-stage backdoor,” as the investigation into the sprawling espionage campaign continues to yield fresh clues about the threat actor’s tactics and techniques. Dubbed GoldMax (aka SUNSHUTTLE), GoldFinder, and Sibot, the new set of…

Supermicro and PulseSecure Issue Advisories on Trickboot

Supermicro and PulseSecure Issue Advisories on Trickboot

Cybercrime , Endpoint Security , Fraud Management & Cybercrime Companies Report Several of Their Products Are Vulnerable Doug Olenick (DougOlenick) • March 6, 2021     Supermicro and Pulse Secure have each issued advisories this past week warning users that some of their products are vulnerable to the updated version of Trickbot malware that features…

Hackers hit Microsoft Exchange server to steal email data

Hackers hit Microsoft Exchange server to steal email data

Microsoft says Chinese hackers from the Hafnium group waged “limited and targeted attacks,” in which its Exchange Email servers were breached to steal data using 0-day flaws.   In its recent blog post, Microsoft has identified that a group of sophisticated Chinese hackers targeted its popular email service called Microsoft Exchange. According…

Chinese cyber-espionage unit on US hacking spree: report – World

Chinese cyber-espionage unit on US hacking spree: report – World

At least 30,000 US organizations including local governments have been hacked in recent days by an “unusually aggressive” Chinese cyber-espionage campaign, according to a computer security specialist. The campaign has exploited recently discovered flaws in Microsoft Exchange software, stealing email and infecting computer servers with tools that let attackers take control remotely, Brian Krebs said…

Microsoft discovers more malware used by SolarWinds attacker while FireEye finds new backdoor

Microsoft discovers more malware used by SolarWinds attacker while FireEye finds new backdoor

New reports from FireEye and Microsoft add more depth to the ongoing investigation into the compromise by a threat actor of the SolarWinds Orion security update system and intrusions into Orion customers, as well as breaches of other organizations using different means. In a report released Thursday, Microsoft said it has identified three new pieces…

Researchers uncover three more malware strains linked to SolarWinds hackers

Researchers uncover three more malware strains linked to SolarWinds hackers

Written by Tim Starks Mar 4, 2021 | CYBERSCOOP It looks like the SolarWinds hackers had even more tricks up their sleeve. Microsoft and FireEye on Thursday revealed three more malware strains associated with the suspected Russian perpetrators who breached SolarWinds’ Orion software and used its update to infect federal agencies and major companies. FireEye…