13
Comments (2)
sorted by:
2
deleted 2 points ago +2 / -0
1
Davenema [S] 1 point ago +1 / -0

Running history of the massive hack... editing over time as I acquire links.

https://www.geekwire.com/2020/microsoft-unleashes-death-star-solarwinds-hackers-extraordinary-response-breach/amp/?__twitter_impression=true

https://www.newsweek.com/biden-team-weighing-cyberattacks-russian-infrastructure-response-solarwinds-hack-report-1556213?amp=1&__twitter_impression=true

October 10, 2019... We know at minimum they had access Oct. 10, 2019...that intrusion has to originate probably at least a couple of months before that — probably at least mid-2019 [if not earlier]. https://mobile.twitter.com/KimZetter/status/1340062632020115456

March to June... Various updates containing the hack from the software production side are sent to SolarWinds Orion customers.. the customers unwitting installed the update that compromised their computers and servers.. https://www.tenable.com/blog/solorigate-solarwinds-orion-platform-contained-a-backdoor-since-march-2020-sunburst

Dec 7... $286M Of SolarWinds Stock Sold Before CEO, Hack Disclosures by Silver Lake and Thoma Bravo https://www.crn.com/news/security/-286m-of-solarwinds-stock-sold-before-ceo-hack-disclosures

Dec 7... CEO resigns .. good timing bud https://www.sec.gov/ix?doc=/Archives/edgar/data/1739942/000162828020017244/swi-20201207.Htm

Dec 7... SolarWinds majority owners Silver Lake and Thoma Bravo sold $286 million of stock just before the company announced a new CEO and disclosed a cyberattack.3 https://www.crn.com/news/security/-286m-of-solarwinds-stock-sold-before-ceo-hack-disclosures

Dec 8... FireEye announces that it found the Solarwinds hack https://www.fireeye.com/blog/products-and-services/2020/12/fireeye-shares-details-of-recent-cyber-attack-actions-to-protect-community.html

Dec 12... Emergency meeting of the National Security Council indicates how serious and widespread this hack is. https://thehill.com/policy/cybersecurity/530184-lawmakers-call-for-action-after-devastating-nation-state-cyberattack-on

Dec 13... Reuters reports the hack... first time public is informed https://www.reuters.com/article/us-usa-cyber-amazon-com-exclsuive-idUSKBN28N0PG

Dec 13... ex-CISA Krebs “protect your Crown Jewels” https://mobile.twitter.com/C_C_Krebs/status/1338271894416601088

Dec 13... Emergency order 21-01.. unplug your damn computers https://cyber.dhs.gov/ed/21-01/

Dec 14... SolarWinds says 10% of its customers use the Orion Product. Each customer is not an individual, but a govt Department or possibly a company... 33,000 of 300,000... https://www.sec.gov/ix?doc=/Archives/edgar/data/1739942/000162828020017451/swi-20201214

Dec 15... Allegedly, The Pentagon has imposed an emergency shutdown of its Secret Internet Protocol Router Network, which handles classified information up to the secret level (Just the News). https://mobile.twitter.com/thebias_news/status/1338978708489551872?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E1338978708489551872%7Ctwgr%5E%7Ctwcon%5Es1_&ref_url=https%3A%2F%2Fthedonald.win%2Fp%2F11R4bxS9tJ%2Fjust-in-the-pentagon-has-imposed%2Fc%2F

Dec 15... Presidential Policy Directive 41 initiated... NatSec announces https://mobile.twitter.com/WHNSC/status/1338863139278913537

Dec 15... Democratic Senator Blumenthal “Stunning. Today’s classified briefing on Russia’s cyberattack left me deeply alarmed, in fact downright scared.”... (later) disastrous, our worst fears, only worse... terrifying.. https://mobile.twitter.com/SenBlumenthal/status/1338972186535727105

Dec 17... CISA alert .. multiple “initial attack vectors”. Stating that Solarwinds Orion was not the only backdoor, nor the only entry point. Access is now denied to this alert. https://us-cert.cisa.gov/ncas/alerts/aa20-352a

Dec 17... Second major technology supplier compromised by the same state-sponsored hackers that attacked @SolarWinds. FBI, and other agencies have scheduled a classified briefing for members of Congress Friday (Reuters)

Dec 17... Dept of Energy announces its been hacked ... according to them only the business side... uh huh.. https://www.dw.com/en/cyberattack-on-us-department-of-energy-a-grave-threat/a-55981368

Dec 17... Dept of Energy next states that we need to stop buying components for our energy grid from China ASAP... wow! Maybe because our grid is fubared? https://www.energy.gov/articles/secretary-energy-signs-order-mitigate-security-risks-nations-electric-grid

Dec 17... Microsoft admits it was hacked but says it was not an additional attack vector ... uh .. ok.. sure bout that? Their wording is ambiguous. https://mobile.twitter.com/KimZetter/status/1339738985401180161

Dec 17 ... "The Department of Justice, FBI and Defense Department, among others, have moved routine communication onto classified networks that are believed not to have been breached, according to a person briefed on the measures." (Potentially the reason for the shutdown on the SPIR network on the 15th)

Archived partial list of SolarWinds customers https://web.archive.org/web/20201213230906/https://www.solarwinds.com/company/customers more than 425 of the U.S. Fortune 500 the Pentagon the State Department the National Security Agency the Department of Justice The White House.

https://www.politico.com/news/2020/12/17/nuclear-agency-hacked-officials-inform-congress-447855

Who is Solarwinds that they could position themselves to be providing software to damn near the entire govt and most of the Fortune 500? https://www.naturalnews.com/2020-12-17-relation-of-solarwinds-to-elections-china-democrats.html#