News: 0141272820

  ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

FireEye Releases Tool For Auditing Networks for Techniques Used by SolarWinds Hackers (zdnet.com)

(Tuesday January 19, 2021 @05:40PM (msmash) from the moving-forward dept.)


Cybersecurity firm FireEye has released today a report [1]detailing the techniques used by the SolarWinds hackers inside the networks of companies they breached. From a report:

> Together with the report, FireEye researchers have also released a free tool on GitHub named [2]Azure AD Investigator that they say can help companies determine if the SolarWinds hackers (also known as UNC2452) used any of these techniques inside their networks. Today's FireEye report comes as the security firm has spearheaded investigations into the SolarWinds supply chain compromise, together with Microsoft and CrowdStrike. The SolarWinds hack came to light on December 13, 2020, when FireEye and Microsoft confirmed that a threat actor broke into the network of IT software provider SolarWinds and poisoned updates for the Orion app with malware.



[1] https://www.zdnet.com/article/fireeye-releases-tool-for-auditing-networks-for-techniques-used-by-solarwinds-hackers/

[2] https://github.com/fireeye/Mandiant-Azure-AD-Investigator

Russians (Score:2)

by andydread ( 758754 )

I'm sure FireEye is definitely stung by this one.

He didn't run for reelection. "Politics brings you into contact with all
the people you'd give anything to avoid," he said. "I'm staying home."
-- Garrison Keillor, "Lake Wobegone Days"