
#45 - Hacker History: SolarWinds
About this episode
In this episode of The Cybersecurity Defenders Podcast, we recount some hacker history, and with the help of John Bambenek, tell the story of one of the largest and most complicated supply chain attacks in history: SolarWinds
On December 13, 2020, The Washington Post reported that multiple government agencies were breached through SolarWinds's Orion software.
Victims of this attack include the cybersecurity firm FireEye, the US Treasury Department, the US Department of Commerce's National Telecommunications and Information Administration, as well as the US Department of Homeland Security.Prominent international SolarWinds customers investigating whether they were impacted include the North Atlantic Treaty Organization (NATO), the European Parliament, UK Government Communications Headquarters, the UK Ministry of Defence, the UK National Health Service (NHS), the UK Home Office, and AstraZeneca. FireEye reported the hackers inserted "malicious code into legitimate software updates for the Orion software that allow an attacker remote access into the victim's environment" and that they have found "indications of compromise dating back to the spring of 2020". FireEye named the malware SUNBURST. Microsoft called it Solorigate.
The attack used a backdoor in a SolarWinds library; when an update to SolarWinds occurred, the malicious attack would go unnoticed due to the trusted certificate.
The Cybersecurity Defenders Podcast: a show about cybersecurity and the people that defend the internet.
Get every episode summarized
Each time The Cybersecurity Defenders Podcast publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from The Cybersecurity Defenders Podcast

How AI adoption in enterprise infrastructure has expanded the attack surface wit...
The Cybersecurity Defenders Podcast

Cybersecurity is a core leadership issue & opportunity with David Chernitzky fro...
The Cybersecurity Defenders Podcast

Millions in crypto stolen, Vercel breach, Mastodon DDoS attack, North Korean IT...
The Cybersecurity Defenders Podcast

Real examples of AI-powered code scanning with Jeff McJunkin from Rogue Valley I...
The Cybersecurity Defenders Podcast