Source |
Contagio |
Identifiant |
2101960 |
Date de publication |
2020-12-15 00:41:04 (vue: 2020-12-15 06:05:27) |
Titre |
2020-12-13 SUNBURST SolarWinds Backdoor samples |
Texte |
ReferenceI am sure you all saw the news. 2020-12-13 Fireeye Highly Evasive Attacker Leverages SolarWinds Supply Chain to Compromise Multiple Global Victims With SUNBURST Backdoor2020-12-13 MicrosoftCustomer Guidance on Recent Nation-State Cyber Attacks Well, here are the Sunburst binaries. Download Other malware |
Notes |
|
Envoyé |
Oui |
Condensat |
other referencei 04/21/2020signerssolarwinds 05:32 13 microsoftcustomer 17:31:02solarwinds 2020 2020file 3d5c 419 4d93 77e2d294 884ccead93b0 adf1 all are athis attacker attacks well backdoor backdoor2020 binaries businesslayer caverisignvt chain check 019085a76ba7126fff22770d71bd901c325fc68ac55aa743327984e89f4b0134 class code compromise compromised core coreinstaller cyber dec detections dhaa dll under dll32519b85c0b422e4656de6e6c41878e95fd95026267daab4215ee59c107d6c77019085a76ba7126fff22770d71bd901c325fc68ac55aa743327984e89f4b0134a25cadd48d70f6ea0c4a241d99c5241269e6faccb4054e62d16784640f8e53bcce77d116a074dab7a22a0fd4f2c1ab475f16eec42e1ded3c0b0aa8211fe858d6d3c6785e18fba3749fb785bc313cf8346182f532c59172b69adfb31b96a5d0aftrojan:msil/solorigate dlls download downloads email evasive file fireeye highly global guidance here informationdate installer ioc leverages llcsymantec malwaredownload mbcoreinstaller msi msiad2fbf4add71f61173975989d1a18395afb8538ed889012b9d2e21c19e98bbd12020 msil/sunburst multiple nation need news orion orioncore part password profile recent sample hashessolarwinds samples saw see services set sha256 signed signing size solarwinds state sunburst supply sure trojaned unzip update variant version victims was still on worldwide |
Tags |
Mobile
|
Stories |
Solardwinds
|
Move |
|