Chinese hacking group DEV-0322 behind Solarwinds ServSecurity Affairs·Jul 14, 08:48 UTC · Jul 14, 2021Exploit / PoC in the wildCVE-2021-35211CVE-2020-1014860
SolarWinds: What the Intelligence Tells UsRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
NSA warns defense contractors of potential SolarWinds falloutCyberScoop·Dec 18, 21:57 UTC · Dec 18, 2020Exploit / PoC in the wild60
Attacks against SolarWinds Serv-U SW were possible due to the lack of ASLR mitigationSecurity Affairs·Sep 3, 06:55 UTC · Sep 3, 2021Exploit / PoCCVE-2021-3521160
Threat actors attempted to exploit SolarWinds Serv-U bug in attacks in the wild, Microsoft warnsSecurity Affairs·Jan 24, 21:05 UTC · Jan 24, 2022Exploit / PoC in the wildCVE-2021-35247CVE-2021-3521160
SolarWinds says hackers used a zero-day flaw for 'targeted attacks' in a new breachCyberScoop·Jul 12, 20:43 UTC · Jul 12, 2021Exploit / PoC in the wild60
SolarWinds fixes critical Serv-U zeroSecurity Affairs·Jul 12, 21:01 UTC · Jul 12, 2021Exploit / PoC in the wild60
China-linked hackers exploited SolarWinds software in 2020 breach, researchers sayCyberScoop·Mar 8, 22:36 UTC · Mar 8, 2021Exploit / PoC in the wild60
SolarWinds says fewer than 100 customers were impacted by supply chain attackThe Record·Dec 9, 00:00 UTC · Dec 9, 2022Exploit / PoC60
Microsoft shares tool to hunt for compromise in SolarWinds breachCyberScoop·Feb 26, 15:47 UTC · Feb 26, 2021Exploit / PoC in the wild60
U.S. CISA adds SolarWinds Serv-U flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 6, 21:45 UTC · Jun 6, 2026Exploit / PoC in the wildCVE-2026-2831860
Feds aren't well prepared to spot SolarWinds-style hacks at agencies, CISA official saysCyberScoop·Mar 18, 22:10 UTC · Mar 18, 2021Exploit / PoC60
SolarWinds CEO talks hack, remaining questions before Capitol Hill hearingsCyberScoop·Feb 23, 15:21 UTC · Feb 23, 2021Exploit / PoC in the wild60
Lawmakers want more transparency on SolarWinds breach from State, VACyberScoop·Dec 24, 17:19 UTC · Dec 24, 2020Exploit / PoC in the wild60
Attackers abuse SolarWinds Web Help Desk to install Zoho agents and VelociraptorSecurity Affairs·Feb 9, 12:28 UTC · Feb 9, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-26399CVE-2025-4053660
SolarWinds Releases Hotfix for Critical CVE-2025The Hacker News·Sep 23, 12:46 UTC · Sep 23, 2025Exploit / PoC in the wildCVE-2025-26399CVE-2024-28988CVE-2024-2898660
CISA adds SolarWinds Web Help Desk bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 16, 20:13 UTC · Aug 16, 2024Exploit / PoC in the wildCVE-2024-2898660
Microsoft discovers SolarWinds zeroThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoC in the wildCVE-2021-35211CVE-2021-5321160
Biden administration mulls software security grades after SolarWindsCyberScoop·Mar 12, 21:02 UTC · Mar 12, 2021Exploit / PoC in the wild60
U.S. CISA adds SolarWinds Web Help Desk, Sangoma FreePBX, and GitLab flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 3, 21:06 UTC · Feb 3, 2026Exploit / PoC in the wildCVE-2019-19006CVE-2021-39935CVE-2025-40551+1 CVEs60
SolarWinds fixed multiple flaws in ServSecurity Affairs·Jun 7, 21:37 UTC · Jun 7, 2024Exploit / PoCCVE-2024-28996CVE-2024-28999CVE-2024-2900460
SolarWinds patches zero-day exploited in the wild (CVE-2021-35211)Help Net Security·Jul 13, 00:00 UTC · Jul 13, 2021Exploit / PoC in the wildCVE-2021-3521160
U.S. CISA adds Microsoft Windows Kernel, Mozilla Firefox and SolarWinds Web Help Desk bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 16, 10:48 UTC · Oct 16, 2024Exploit / PoC in the wildCVE-2024-30088CVE-2024-9680CVE-2024-2898760
SolarWinds fixed hardcoded credential issue in Web Help DeskSecurity Affairs·Aug 22, 17:29 UTC · Aug 22, 2024Exploit / PoC in the wildCVE-2024-28987CVE-2024-2898660
U.S. CISA adds Adobe Commerce and Magento, SolarWinds Serv-U, and VMware vCenter Server bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 21, 08:29 UTC · Jul 21, 2024Exploit / PoC in the wildCVE-2024-34102CVE-2024-28995CVE-2022-2294860
Chinese Hackers Exploited Latest SolarWinds 0The Hacker News·Jul 15, 00:00 UTC · Jul 15, 2021Exploit / PoCCVE-2021-3521160
Biden budget seeks $750 million to respond to SolarWinds compromises, plus billions more for cyberCyberScoop·May 28, 18:11 UTC · May 28, 2021Exploit / PoC in the wild60
Cybersecurity Webinar — SolarWinds Sunburst: The Big PictureThe Hacker News·Mar 9, 10:42 UTC · Mar 9, 2021Exploit / PoC57
Microsoft says SolarWinds hackers accessed company source codeCyberScoop·Dec 31, 19:09 UTC · Dec 31, 2020Exploit / PoC in the wild60
Microsoft alerts CrowdStrike of hackers' attempted breakCyberScoop·Dec 24, 20:30 UTC · Dec 24, 2020Exploit / PoC in the wild60
Microsoft links Serv-U zeroThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoC in the wildCVE-2021-35211CVE-2020-1014860
CISA doesn't know how many US federal agencies use firewalls to fend off malicious trafficCyberScoop·Jun 22, 12:51 UTC · Jun 22, 2021Exploit / PoC in the wild60
U.S. CISA adds Ivanti EPM, SolarWinds, and Omnissa Workspace One flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 10, 09:52 UTC · Mar 10, 2026Exploit / PoC in the wildCVE-2021-22054CVE-2025-26399CVE-2026-160360
PoC for critical SolarWinds Web Help Desk vulnerability released (CVE-2024-28987)Help Net Security·Oct 16, 09:25 UTC · Oct 16, 2024Exploit / PoC in the wildCVE-2024-28987CVE-2024-2898660
SolarWinds hackers stole Mimecast source codeCyberScoop·Mar 17, 13:59 UTC · Mar 17, 2021Exploit / PoC in the wild60
SolarWinds Hack — New Evidence Suggests Potential Links to Chinese HackersThe Hacker News·Mar 9, 09:58 UTC · Mar 9, 2021Exploit / PoCCVE-2020-1014860
US investigators say SolarWinds hack is ‘likely Russian in origin’CyberScoop·Jan 5, 22:33 UTC · Jan 5, 2021Exploit / PoC in the wild60
U.S. CISA adds SolarWinds Web Help Desk, Notepad++, Microsoft Configuration Manager, and Apple devices flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 13, 08:27 UTC · Feb 13, 2026Exploit / PoC in the wildCVE-2024-43468CVE-2025-15556CVE-2025-40536+1 CVEs60
CISA Adds Actively Exploited SolarWinds Web Help Desk RCE to KEV CatalogThe Hacker News·Feb 5, 03:59 UTC · Feb 5, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-40536CVE-2025-40537+7 CVEs60
‘Every Attack Was Like a Slightly Deadlier Version Than the Last:’ NYT’s Perlroth Talks About Her New BookThe Record·Nov 17, 16:28 UTC · Nov 17, 2022Exploit / PoC60