SUNBURST

New SEC Disclosure Rules Demand Better CISO Communication
The SEC's charges against SolarWinds and its CISO follow a new set of rules that put greater responsibility on organizations' leadership ...
Security Boulevard

The SEC and SolarWinds’ CISO: A Wake-Up Call
The United States Securities and Exchange Commission (SEC) filed a landmark lawsuit against SolarWinds and its CISO for securities fraud ...
Security Boulevard

SolarWinds Swings Back at SEC Following Fraud Charges
Executives at SolarWinds are pushing back at the lawsuit filed this week by the Securities and Exchange Commission against the company and its top security official in connection with the high-profile cyberattack, ...
Security Boulevard

SolarWinds CISO Sued for Fraud by US SEC
Richi Jennings | | CISO, CISO duties, CISO Incompetency, CISO reporting structure, SB Blogwatch, SEC, Securities and Exchange Commission, SolarWinds, SolarWinds Orion Supply Chain, SolarWinds Vulnerability, solarwinds123, SolarWindsOrion, Sudhakar Ramakrishna, SUNBURST, Sunburst malware, Sunburst Vuln, Timothy Brown, U.S. Securities and Exchange Commission
The password was ‘solarwinds123’: SUNBURST still reverberates as SolarWinds CISO Timothy Brown co-defends SEC lawsuit ...
Security Boulevard

SEC Sends Wells Notice to SolarWinds Executives
Christopher Burgess | | Orion, SEC, Security Exchange Commission, SolarWinds, SUNBURST, Wells Notice
On June 23, 2023, SolarWinds revealed via an SEC Form 8-K filing that the U.S. Securities and Exchange Commission (SEC) notified the company that “certain current and former executive officers and employees ...
Security Boulevard

How the SolarWinds Hack (almost) went Undetected
Erik Hjelmvik | | ascii-art, backdoor, C2, dns, SEC-T, SolarWinds, Solorigate, Stage 2, STAGE2, SUNBURST, video, YouTube
My lightning talk from the SEC-T 0x0D conference has now been published on YouTube. This 13 minute talk covers tactics and techniques that the SolarWinds hackers used in order to avoid being ...
Smart PCAP and threat detection in the cloud
John Gamble | | network detection response, Network Security, network security monitoring, network traffic analysis, pcap, Product, SIEM, Smart PCAP, SOC, SUNBURST, Suricata, Zeek
I am thrilled to publicly launch Corelight software version 22, which introduces a transformative new security product, Smart PCAP, and also enables threat detection in the cloud by extending Corelight’s Open NDR ...

Detecting CVE-2021-31166 – HTTP vulnerability
Ben Reardon | | Accept-Encoding, Corelight Labs, CVE-202131166, GitHub, http, http.log, HTTP.sys, Network Security, network security monitoring, network traffic analysis, network visibility, SOAP, SolarWinds, SUNBURST, WinRM, Zeek
By Ben Reardon, Corelight Security Researcher In this blog we aim to provide a little insight into part of the lifecycle of Corelight Lab’s response to a critical HTTP vulnerability. We’ve open-sourced ...
What the Cyber EO means for federal agencies
Jean Schaffer | | Chris Inglis, Cybersecurity, Defense Federal Acquisition Regulation, executive order, Federal, Federal Acquisition Regulation, Industry, Jean Schaffer, Mandiant, network detection response, Network Security, network security monitoring, network traffic analysis, network visibility, nsa, President Biden, Snowden, SUNBURST, Zeek, zero trust
By Jean Schaffer, Federal CTO, Corelight For those of us who have spent our careers working in cybersecurity, President Biden’s recent “Executive Order on Improving the Nation’s Cybersecurity,” (EO) held no surprises ...
Extending NDR visibility in AWS IaaS
Vijit Nair | | Amazon GuardDuty, aws, dns, ec2, IaaS, NDR, network security monitoring, partnership, Product, SIEM, SSH, SSL-TLS, SUNBURST, Suricata, VPC traffic mirroring, Zeek
By Vijit Nair, Sr. Director, Product Management, Corelight Comprehensive visibility is challenging in a cloud environment. While these environments are rich sources of telemetry and logs, it is challenging for security teams ...