Get a Pentest and security assessment of your IT network.

News

Customer Guidance on Recent Nation-State Cyber Attacks Microsoft Security Response Center

This post contains technical details about the methods of the actor we believe was involved in Recent Nation-State Cyber Attacks. This is a summary of techniques that are part of the toolkit of this actor. An intrusion through malicious code in the SolarWinds Orion product results in the attacker gaining a foothold in the network, which the attacker can use to gain elevated credentials. Anomalous logins using the SAML tokens created by the compromised token signing certificate can then be made against any on-premises resources (regardless of identity system or vendor)”]

Source: https://msrc-blog.microsoft.com/2020/12/13/customer-guidance-on-recent-nation-state-cyber-attacks/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin