Categories: Internet

SolarWinds Hack Leaves Entire Industry In Panic

There is still sheer panic in the US IT industry with the SolarWinds hack. There is hardly any other explanation for the extent to which the undoubtedly skilful attack is exaggerated by the various sizes of the sector.

In essence, the success of the attack is based on the fact that the perpetrators found a security hole in a software product that was used by almost all larger companies at a critical point in the IT infrastructure. However, there is no criticism of the underlying monoculture in the IT landscapes and the often frighteningly reckless handling of the topic of IT security.

Earlier: SolarWinds Hack: Attackers were able to see Microsoft’s source code

Instead, Microsoft President Brad Smith, for example, is now going on the thesis that it is virtually a gigantic enemy. “Thousands of very well trained and skilled engineers have worked on it,” he said, according to a report by US magazine MarketWatch. Such a sophisticated campaign on such a scale has never been seen.

Call for rules

But it’s not just Smith who blows that horn. The head of the security company FireEye, Kevin Mandia, speaks of the SolarWinds hack as part of a “decades-long campaign” by the Russian government to infiltrate American companies and authorities. In his view, the timing of the hack also speaks for this. As early as the end of 2019 there were dry tests to determine how far malware can be spread. In March 2020, the actual malicious software came into play, which then went undetected until last December.

Read More: SolarWinds Hack: Windows Source Code Selling On Dark Web For $600,000

Ultimately, however, there is so far no concrete evidence from which it can really be read who is really behind the attack. The statements of the above-mentioned persons are based only on some circumstantial evidence. Accordingly, it does not help if Mandia brings the thesis into play that certain norms have to be set online – similar to how ambulances are protected in a warlike conflict, for example. In order for such regulations to be enforceable, one would at least have to be able to clearly demonstrate who attacks originate from, which in many cases is almost impossible.

Share
Published by
Yasir Zeb

Recent Posts

Update chaos after patch day: WSUS server refuses synchronization

After Windows Patch Day in July 2026, reports of problems with the Windows Server Update…

11 hours ago

PayPal Gets $53 Billion Takeover Offer from Stripe

The payment service provider PayPal is apparently facing a large-scale takeover. Two investors have submitted…

11 hours ago

GTA 3 and Vice City run on in-game TV in San Andreas

A new mod for GTA San Andreas lets players play two older parts of the…

11 hours ago

Emergency Alert: Robotaxis are helpless if passengers fall asleep

With the increasing spread of autonomous robotaxis, not only the technical capabilities of the vehicles…

11 hours ago

UK to introduce mileage tax for electric cars in 2028

From 2028, electric car drivers in the UK will have to pay a distance-based levy.…

11 hours ago

Galaxy Watch 9 & Ultra 2 Leak comes with smartwatches in official photos

Shortly before the next Unpacked event on July 22nd, official promo images of the new…

11 hours ago