On October 30, 2023, the U.S. Securities and Exchange Commission (SEC) took legal action against SolarWinds, claiming that the company concealed cybersecurity vulnerabilities that ultimately resulted in a significant breach in December 2020, orchestrated by APT29, a division of the Russian Foreign Intelligence Service (SVR). This breach had far-reaching implications, affecting several U.S. federal agencies. The SEC alleges that SolarWinds, along with its Chief Information Security Officer, Timothy G. Brown, failed to disclose cybersecurity risks and inadequate practices that were well-known within the organization. The SEC contends that SolarWinds and Brown ignored warning signs regarding their cybersecurity vulnerabilities and presented a misleading portrayal of their cybersecurity controls, depriving investors of vital information. Brown was conscious of the challenges in detecting remote attackers since 2018 and expressed concerns about the potential use of SolarWinds' Orion software as a tool for future attacks due to the company's backend vulnerabilities. SolarWinds' President and CEO, Sudhakar Ramakrishna, criticized the SEC's actions, claiming that they impede progress in the industry and discourage the open sharing of information, which is crucial for collective cybersecurity. Notably, the SEC had previously issued Wells notices to SolarWinds and its executives, signaling the potential for civil enforcement actions due to alleged violations of U.S. federal securities laws. The 2020 SolarWinds breach, attributed to APT29, involved the manipulation of SolarWinds' Orion platform and affected fewer than 18,000 victims. SolarWinds serves a vast customer base of over 300,000 clients worldwide, including 96% of Fortune 500 companies and numerous government agencies such as the U.S. Military, NASA, and the Department of Justice. This breach resulted in security compromises in various U.S. government agencies, including the State Department, Department of Homeland Security, Department of Energy, and National Institutes of Health.
Charter Communications has confirmed a cybersecurity incident impacting millions of customers following a breach allegedly conducted by the ShinyHunters extortion gang. According t...
A critical Remote Code Execution (RCE) vulnerability has been identified in Samba, the widely used open-source SMB/CIFS file-sharing software for Linux and Unix systems. The flaw c...
A sophisticated cyber-espionage campaign linked to the Iran-aligned threat group Seedworm has targeted at least nine organizations across multiple countries during early 2026. The ...