Cyber Security Roundup for March 2021

 
A roundup of UK focused Cyber and Information Security News, Blog Posts, Reports and general Threat Intelligence from the previous calendar month, February 2021.

Serious Linux Vulnerability
Last month a newly discovered critical vulnerability in ‘s… Continue reading Cyber Security Roundup for March 2021

SolarWinds Hack: ‘All is Well,’ Microsoft Shrugs

Microsoft would like you to know that it’s finished investigating the SolarWinds breach, and everything’s just fine. Yeah, right.
The post SolarWinds Hack: ‘All is Well,’ Microsoft Shrugs appeared first on Security Boulevard.
Continue reading SolarWinds Hack: ‘All is Well,’ Microsoft Shrugs

Twenty-three SUNBURST Targets Identified

Remember when Igor Kuznetsov and Costin Raiu announced that two of the victims in FireEye’s SUNBURST IOC list were ***net.***.com and central.***.gov on Kaspersky’s Securelist blog in December? Reuters later reported that these victims were Cox Communi… Continue reading Twenty-three SUNBURST Targets Identified

Sunburst’s C2 Secrets Reveal Second-Stage SolarWinds Victims

Examining the backdoor’s DNS communications led researchers to find a government agency and a big U.S. telco that were flagged for further exploitation in the spy campaign. Continue reading Sunburst’s C2 Secrets Reveal Second-Stage SolarWinds Victims

Microsoft Caught Up in SolarWinds Spy Effort, Joining Federal Agencies

The ongoing, growing campaign is “effectively an attack on the United States and its government and other critical institutions,” Microsoft warned. Continue reading Microsoft Caught Up in SolarWinds Spy Effort, Joining Federal Agencies

The SolarWinds Perfect Storm: Default Password, Access Sales and More

Meanwhile, Microsoft and other vendors are quickly moving to block the Sunburst backdoor used in the attack. Continue reading The SolarWinds Perfect Storm: Default Password, Access Sales and More