2021-01-04
SolarWinds: Attack May Have Started Earlier and is Looking Worse
More details about the SolarWinds supply chain attack are coming to light. It is now believed that at least 250 US government agencies and private businesses were affected. US Senator Mark Warner (D-Virginia), who serves as Vice-Chair of the Senate Intelligence Committee said that the attackers may have begun even earlier than March/April 2020. Warner also noted that "if FireEye had not come forward, I'm not sure we would be fully aware of [the attack] to this day."
Editor's Note
Throughout this whole story kudos have to be given to FireEye for their open and transparent way in dealing with this incident. It is a great example of why sharing and being transparent about incidents helps the overall community at large.

Brian Honan
Read more in
ZDNet: SolarWinds: The more we learn, the worse it looks
The Register: SolarWinds mess that flared in the holidays: Biz confirms malware targeted crocked Orion product
NYT: As Understanding of Russian Hacking Grows, So Does Alarm
The Verge: SolarWinds hack may be much worse than originally feared
Reuters: Cyber attack on U.S. government may have started earlier than initially thought - U.S. senator