8

iTWire - SolarWinds quietly pulls customer page after news of global attack

 3 years ago
source link: https://www.itwire.com/security/solarwinds-quietly-pulls-customer-page-after-news-of-global-attack.html
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

Tuesday, 15 December 2020 07:15

SolarWinds quietly pulls customer page after news of global attack Featured

By Sam Varghese
SolarWinds quietly pulls customer page after news of global attack

Image by Clker-Free-Vector-Images from Pixabay

The company at the centre of the global intrusion detailed by security company FireEye on Monday AEDT — SolarWinds — has quietly taken down the page on its website which had a list of its elite customers.

But the company appears to have forgotten that any person with reasonable online skills can easily obtain the page from the Internet Archive aka The Wayback Machine.

Which is what security researcher Tal Be'ery did: he surfaced both pages in a tweet which tells its own story.

FireEye chief executive Kevin Mandia said in a blog post on Sunday (Monday AEDT) that the compromise of public and private sector bodies was executed through the Orion network monitoring product sold by SolarWinds.

The product has extremely wide usage, with about 400 of the so-called Fortune 500, and the top telcos, the US military, the US State Department, the NSA and the Office of the President of the US, all using the same NMS.

Until the day of this exposure, SolarWinds considered a listing of its customers a very good advertisement for its brand.

solarwinds

Now you see it... The SolarWinds customer page taken from the Internet Archive. Courtesy Tal Be'ery

That appears to have changed, judging from the two screenshots posted within this article, both courtesy Be'ery.

SolarWinds is not the first company that has resorted to such a tactic to reduce its exposure in a situation like this.

solarwinds2

...and now you don't. The SolarWinds 404 page that comes up when anyone looks for the customer page. Courtesy: Tal Be'ery

When the WannaCry ransomware hit in May 2017, the global security firm Sophos quietly effected changes on a page on which it had proclaimed that it was defending Britain's National Health Service, with a banner reading: "The NHS is totally protected with Sophos."

That was quietly changed to "Sophos understands the security needs of the NHS", with the company apparently hoping that nobody would notice.

But it reckoned without eagle-eyed British security researcher Kevin Beaumont who surfaced both pages in a tweet so that world+dog would be aware of reality.

Sophos then made matters even worse, by trying to "clarify" things with iTWire. That did not go very well.

Subscribe to ITWIRE UPDATE Newsletter here

Now’s the Time for 400G Migration

The optical fibre community is anxiously awaiting the benefits that 400G capacity per wavelength will bring to existing and future fibre optic networks.

Nearly every business wants to leverage the latest in digital offerings to remain competitive in their respective markets and to provide support for fast and ever-increasing demands for data capacity. 400G is the answer.

Initial challenges are associated with supporting such project and upgrades to fulfil the promise of higher-capacity transport.

The foundation of optical networking infrastructure includes coherent optical transceivers and digital signal processing (DSP), mux/demux, ROADM, and optical amplifiers, all of which must be able to support 400G capacity.

With today’s proprietary power-hungry and high cost transceivers and DSP, how is migration to 400G networks going to be a viable option?

PacketLight's next-generation standardised solutions may be the answer. Click below to read the full article.

CLICK HERE!

WEBINAR PROMOTION ON ITWIRE: It's all about webinars

These days our customers Advertising & Marketing campaigns are mainly focussed on webinars.

If you wish to promote a Webinar we recommend at least a 2 week campaign prior to your event.

The iTWire campaign will include extensive adverts on our News Site itwire.com and prominent Newsletter promotion https://www.itwire.com/itwire-update.html and Promotional News & Editorial.

This coupled with the new capabilities 5G brings opens up huge opportunities for both network operators and enterprise organisations.

We have a Webinar Business Booster Pack and other supportive programs.

We look forward to discussing your campaign goals with you.

MORE INFO HERE!


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK