comparemela.com


December 18, 2020
Analyzing Solorigate, the compromised DLL file that started a sophisticated cyberattack, and how Microsoft Defender helps protect customers
Microsoft 365 Defender Research Team
Microsoft Threat Intelligence Center (MSTIC)
Share
UPDATE: Microsoft continues to work with partners and customers to expand our knowledge of the threat actor behind the nation-state cyberattacks that compromised the supply chain of SolarWinds and impacted multiple other organizations. Microsoft previously used ‘Solorigate’ as the primary designation for the actor, but moving forward, we want to place appropriate focus on the actors behind the sophisticated attacks, rather than one of the examples of malware used by the actors. Microsoft Threat Intelligence Center (MSTIC) has named the actor behind the attack against SolarWinds, the SUNBURST backdoor, TEARDROP malware, and related components as NOBELIUM. As we release new content and analysis, we will use NOBELIUM to refer to the actor and the campaign of attacks.

Related Keywords

,Solarwinds Orion ,Gettask Eventcachemanager ,Responseand Additionalfields ,Businesslayer Backgroundinventory Inventorymanager ,Solarwinds Businesslayerhost ,Identityserver Servicehost ,Softwaredistribution Eventcachemanager ,Solorigate Adha ,Softwareprotectionplatform Eventcachemanager ,Comobject Schedule Service ,Microsoft Defender Security Center ,Microsoft ,Solarwinds Orion Platform ,Solarwinds Orion Core Businesslayer ,Microsoft Defender ,Orionimprovementbusinesslayer Initialize ,Background Inventory ,Computer Domain ,Settings Executiontimelimit ,Cobalt Strike ,Microsoft Defender Endpoint ,Defender Antivirus ,Winds Malicious ,Winds Compromised ,Active Directory ,Winds Businesslayerhost ,Vulnerability Management ,மைக்ரோசாஃப்ட் பாதுகாவலர் பாதுகாப்பு மையம் ,மைக்ரோசாஃப்ட் ,மைக்ரோசாஃப்ட் பாதுகாவலர் ,பின்னணி சரக்கு ,கணினி களம் ,கோபால்ட் வேலைநிறுத்தம் ,மைக்ரோசாஃப்ட் பாதுகாவலர் இறுதிப்புள்ளி ,பாதுகாவலர் வைரஸ் தடுப்பு ,காற்று தீங்கிழைக்கும் ,செயலில் அடைவு ,

© 2024 Vimarsana

comparemela.com © 2020. All Rights Reserved.