Microsoft Caught Up in SolarWinds Spy Effort, Joining Federal Agencies

The ongoing, growing campaign is “effectively an attack on the United States and its government and other critical institutions,” Microsoft warned. Continue reading Microsoft Caught Up in SolarWinds Spy Effort, Joining Federal Agencies

Nuclear Weapons Agency Hacked in Widening Cyberattack – Report

Sources said the DoE suffered “damage” in the attack, which also likely extends beyond the initially known SolarWinds Orion attack vector. Continue reading Nuclear Weapons Agency Hacked in Widening Cyberattack – Report

The SolarWinds Perfect Storm: Default Password, Access Sales and More

Meanwhile, Microsoft and other vendors are quickly moving to block the Sunburst backdoor used in the attack. Continue reading The SolarWinds Perfect Storm: Default Password, Access Sales and More

Gitpaste-12 Worm Widens Set of Exploits in New Attacks

The worm returned in recent attacks against web applications, IP cameras and routers. Continue reading Gitpaste-12 Worm Widens Set of Exploits in New Attacks

DHS Among Those Hit in Sophisticated Cyberattack by Foreign Adversaries – Report

The attack was mounted via SolarWinds Orion, in a manual and targeted supply-chain effort. Continue reading DHS Among Those Hit in Sophisticated Cyberattack by Foreign Adversaries – Report

Microsoft Office 365 Credentials Under Attack By Fax ‘Alert’ Emails

Emails from legitimate, compromised accounts are being sent to numerous enterprise employees with the aim of stealing their O365 credentials. Continue reading Microsoft Office 365 Credentials Under Attack By Fax ‘Alert’ Emails

New Windows Trojan Steals Browser Credentials, Outlook Files

The newly discovered Python-based malware family targets the Outlook processes, and browser credentials, of Microsoft Windows victims. Continue reading New Windows Trojan Steals Browser Credentials, Outlook Files