Did Someone at the Commerce Dept. Find a SolarWinds Backdoor in Aug. 2020?Krebs on Security·Apr 15, 00:00 UTC · Apr 15, 2021MalwareCVE-2020-400660
SolarWinds addressed critical RCEs in Access Rights ManagerSecurity Affairs·Feb 19, 07:48 UTC · Feb 19, 2024VulnerabilityCVE-2023-40057CVE-2024-23476CVE-2024-23477+4 CVEs60
Chinese hacking group DEV-0322 behind Solarwinds ServSecurity Affairs·Jul 14, 08:48 UTC · Jul 14, 2021Exploit / PoC in the wildCVE-2021-35211CVE-2020-1014860
SolarWinds: What the Intelligence Tells UsRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
SEC sues SolarWinds and CISO for fraudCyberScoop·Nov 1, 14:21 UTC · Nov 1, 2023Phishing & fraud in the wild60
SolarWinds Blames Intern for 'solarwinds123' Password LapseThe Hacker News·Mar 2, 08:51 UTC · Mar 2, 2021Data breach60
NSA warns defense contractors of potential SolarWinds falloutCyberScoop·Dec 18, 21:57 UTC · Dec 18, 2020Exploit / PoC in the wild60
Attacks against SolarWinds Serv-U SW were possible due to the lack of ASLR mitigationSecurity Affairs·Sep 3, 06:55 UTC · Sep 3, 2021Exploit / PoCCVE-2021-3521160
Protecting Critical Data with Proactive Cyber Defense SolutionsSecurity Affairs·Feb 13, 14:45 UTC · Feb 13, 2021Data breach60
SolarWinds issues patches for two new critical bugs found in Orion softwareCyberScoop·Feb 3, 13:12 UTC · Feb 3, 2021Vulnerability in the wild60
Threat actors attempted to exploit SolarWinds Serv-U bug in attacks in the wild, Microsoft warnsSecurity Affairs·Jan 24, 21:05 UTC · Jan 24, 2022Exploit / PoC in the wildCVE-2021-35247CVE-2021-3521160
SolarWinds says hackers used a zero-day flaw for 'targeted attacks' in a new breachCyberScoop·Jul 12, 20:43 UTC · Jul 12, 2021Exploit / PoC in the wild60
Grid regulator warns utilities of risk of SolarWinds backdoor, asks how exposed they areCyberScoop·Dec 23, 21:22 UTC · Dec 23, 2020Malware in the wild60
SolarWinds fixes critical Serv-U zeroSecurity Affairs·Jul 12, 21:01 UTC · Jul 12, 2021Exploit / PoC in the wild60
China-linked hackers exploited SolarWinds software in 2020 breach, researchers sayCyberScoop·Mar 8, 22:36 UTC · Mar 8, 2021Exploit / PoC in the wild60
Microsoft confirms breach in SolarWinds hack, but denies its clients were affectedSecurity Affairs·Dec 18, 10:50 UTC · Dec 18, 2020Data breach60
SolarWinds Patches 8 Critical Flaws in Access Rights Manager SoftwareThe Hacker News·Jul 20, 04:07 UTC · Jul 20, 2024Vulnerability in the wildCVE-2024-23472CVE-2024-28074CVE-2024-23469+6 CVEs60
Clop gang is exploiting CVE-2021-35211 RCE in SolarWinds Serv-USecurity Affairs·Nov 9, 18:35 UTC · Nov 9, 2021RansomwareCVE-2021-3521160
Number of investigations into SolarWinds breach grows, along with cleanup costCyberScoop·Mar 2, 15:15 UTC · Mar 2, 2021Data breach in the wild60
Senate hearing on SolarWinds hack lays bare US shortcomings, remaining mysteriesCyberScoop·Feb 24, 00:40 UTC · Feb 24, 2021Data breach in the wild60
A New SolarWinds Flaw Likely Had Let Hackers Install SUPERNOVA MalwareThe Hacker News·Dec 28, 06:14 UTC · Dec 28, 2020MalwareCVE-2020-1014860
US Agencies and FireEye Were Hacked Using SolarWinds Software BackdoorThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2020MalwareCVE-2019-11510CVE-2020-1472CVE-2020-10189+1 CVEs60
SolarWinds addressed four critical Web Help Desk flawsSecurity Affairs·Jan 29, 19:17 UTC · Jan 29, 2026VulnerabilityCVE-2025-40552CVE-2025-40553CVE-2025-40554+3 CVEs60
SolarWinds Urges Upgrade After Revealing Critical RCE BugInfosecurity Magazine·Aug 15, 09:35 UTC · Aug 15, 2024VulnerabilityCVE-2024-2898660
RCE vulnerabilities fixed in SolarWinds enterprise solutionsHelp Net Security·Feb 19, 00:00 UTC · Feb 19, 2024VulnerabilityCVE-2024-23476CVE-2024-23479CVE-2024-23477+4 CVEs60
SolarWinds says fewer than 100 customers were impacted by supply chain attackThe Record·Dec 9, 00:00 UTC · Dec 9, 2022Exploit / PoC60
Microsoft shares tool to hunt for compromise in SolarWinds breachCyberScoop·Feb 26, 15:47 UTC · Feb 26, 2021Exploit / PoC in the wild60
White House warns SolarWinds breach cleanup will take timeCyberScoop·Feb 18, 00:28 UTC · Feb 18, 2021Data breach in the wild60
SolarWinds Orion exploited by another group of state-sponsored hackersHelp Net Security·Feb 3, 00:00 UTC · Feb 3, 2021Threat actorCVE-2021-25274CVE-2021-25275CVE-2021-2527660
Microsoft details how SolarWinds hackers hid their espionageCyberScoop·Jan 20, 21:43 UTC · Jan 20, 2021Threat actor in the wild60
A Second Hacker Group May Have Also Breached SolarWinds, Microsoft SaysThe Hacker News·Dec 24, 06:44 UTC · Dec 24, 2020Data breach60
VMware and Cisco also impacted by the SolarWinds hackSecurity Affairs·Dec 23, 06:56 UTC · Dec 23, 2020Data breachCVE-2020-400660
SolarWinds hackers' capabilities include bypassing MFAHelp Net Security·Dec 16, 00:00 UTC · Dec 16, 2020Data breach60
SolarWinds Issues Second Hotfix for Orion Platform Supply Chain AttackThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2020Data breach60
U.S. CISA adds SolarWinds Serv-U flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 6, 21:45 UTC · Jun 6, 2026Exploit / PoC in the wildCVE-2026-2831860
SolarWinds fixed three critical RCE flaws in its Access Rights Manager productSecurity Affairs·Oct 23, 11:52 UTC · Oct 23, 2023VulnerabilityCVE-2023-35182CVE-2023-35185CVE-2023-3518760
Feds aren't well prepared to spot SolarWinds-style hacks at agencies, CISA official saysCyberScoop·Mar 18, 22:10 UTC · Mar 18, 2021Exploit / PoC60
SolarWinds CEO talks hack, remaining questions before Capitol Hill hearingsCyberScoop·Feb 23, 15:21 UTC · Feb 23, 2021Exploit / PoC in the wild60
Kaspersky discovers overlap between SolarWinds hack, TurlaCyberScoop·Jan 11, 16:22 UTC · Jan 11, 2021Threat actor in the wild60