GoldMax, GoldFinder, and Sibot, 3 new malware used by SolarWinds attackersSecurity Affairs·Mar 5, 20:00 UTC · Mar 5, 2021Malware42
Researchers uncover three more malware strains linked to SolarWinds hackersCyberScoop·Mar 4, 22:08 UTC · Mar 4, 2021Malware in the wild60
Intern caused 'solarwinds123' password leak,former SolarWinds CEO saysSecurity Affairs·Mar 1, 15:09 UTC · Mar 1, 2021Malware42
After SolarWinds breach, lawmakers ask NSA for help in cracking Juniper cold caseCyberScoop·Jan 29, 20:31 UTC · Jan 29, 2021Data breach57
In the Wake of the SolarWinds Hack, Here's How Businesses Should RespondThe Hacker News·Jan 27, 04:28 UTC · Jan 27, 2021Data breach60
Symantec connects another hacking tool to SolarWinds campaignCyberScoop·Jan 19, 12:36 UTC · Jan 19, 2021Threat actor in the wild60
Third Malware Strain Discovered as Part of SolarWinds AttackInfosecurity Magazine·Jan 12, 11:25 UTC · Jan 12, 2021Malware42
Microsoft Says SolarWinds Hackers Accessed Some of Its Source CodeThe Hacker News·Jan 1, 04:50 UTC · Jan 1, 2021Malware42
Microsoft Says Its Systems Were Also Breached in Massive SolarWinds HackThe Hacker News·Dec 18, 05:07 UTC · Dec 18, 2020Data breach60
Microsoft was also a victim of the SolarWinds supply chain hackHelp Net Security·Dec 18, 00:00 UTC · Dec 18, 2020Malware42
SolarWinds announces new pricing model of its on-premises IT operations management productsHelp Net Security·Apr 23, 00:00 UTC · Apr 23, 2020Model release50
SolarWinds Identity Monitor helps orgs improve security posture and mitigate risk proactivelyHelp Net Security·Oct 10, 00:00 UTC · Oct 10, 2019Data breach57
SolarWinds fixes severe Serv-U vulnerability (CVE-2024-28995)Help Net Security·Jun 8, 10:34 UTC · Jun 8, 2026Vulnerability in the wildCVE-2024-28995160
SolarWinds Serv-U hit by four critical RCE-level vulnerabilitiesHelp Net Security·Jun 8, 10:28 UTC · Jun 8, 2026Vulnerability in the wildCVE-2025-40538CVE-2025-40539CVE-2025-40540+1 CVEs60
SolarWinds Patches 4 Critical Serv-U 15.5 Flaws Allowing Root Code ExecutionThe Hacker News·Feb 25, 07:04 UTC · Feb 25, 2026Vulnerability in the wildCVE-2025-40538CVE-2025-40539CVE-2025-40540+4 CVEs60
SolarWinds Web Help Desk Vulnerability Actively ExploitedInfosecurity Magazine·Feb 4, 10:15 UTC · Feb 4, 2026Vulnerability in the wildCVE-2025-40551CVE-2025-40553CVE-2025-40552+1 CVEs60
CISA orders federal agencies to patch exploited SolarWinds bug by FridayThe Record·Feb 3, 20:59 UTC · Feb 3, 2026Vulnerability in the wildCVE-2025-40551CVE-2024-2898660
SolarWinds addressed three critical flaws in Serv-USecurity Affairs·Nov 21, 14:08 UTC · Nov 21, 2025VulnerabilityCVE-2025-40549CVE-2025-40548CVE-2025-4054760
SolarWinds fixed a critical RCE flaw in its Web Help Desk softwareSecurity Affairs·Sep 24, 11:50 UTC · Sep 24, 2025Vulnerability in the wildCVE-2025-26399CVE-2024-28988CVE-2024-2898660
SEC fined 4 companies for misleading disclosures about the impact of the SolarWinds attackSecurity Affairs·Oct 23, 08:11 UTC · Oct 23, 2024Policy & legal42
SEC Charges Tech Firms Over Misleading SolarWinds Hack DisclosuresInfosecurity Magazine·Oct 22, 16:45 UTC · Oct 22, 2024Policy & legal42
U.S. CISA adds Microsoft Windows Kernel, Mozilla Firefox and SolarWinds Web Help Desk bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 16, 10:48 UTC · Oct 16, 2024Exploit / PoC in the wildCVE-2024-30088CVE-2024-9680CVE-2024-2898760
SolarWinds fixed hardcoded credential issue in Web Help DeskSecurity Affairs·Aug 22, 17:29 UTC · Aug 22, 2024Exploit / PoC in the wildCVE-2024-28987CVE-2024-2898660
SolarWinds Releases Patch for Critical Flaw in Web Help Desk SoftwareThe Hacker News·Aug 19, 05:04 UTC · Aug 19, 2024Vulnerability in the wildCVE-2024-28986CVE-2024-5914CVE-2024-5915+1 CVEs60
U.S. CISA adds Adobe Commerce and Magento, SolarWinds Serv-U, and VMware vCenter Server bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 21, 08:29 UTC · Jul 21, 2024Exploit / PoC in the wildCVE-2024-34102CVE-2024-28995CVE-2022-2294860
Threat actors exploited SolarWinds Serv-U bug CVE-2024Security Affairs·Jun 23, 08:23 UTC · Jun 23, 2024Threat actor in the wildCVE-2024-28995160
SolarWinds adds Kevin Kline to the Head Geek teamHelp Net Security·Jan 26, 09:20 UTC · Jan 26, 2024Industry30
SolarWinds CEO apologizes for blaming an intern, says attack may have started in January 2019The Record·Jul 7, 14:13 UTC · Jul 7, 2023Policy & legal42
SolarWinds Detected Six Months EarlierSchneier on Security·May 5, 00:10 UTC · May 5, 2023Data breach45
We\'re responding in election cycles:' Niloofar Razi Howe on the big changes needed to prevent the next SolarWinds attackThe Record·Jan 26, 00:00 UTC · Jan 26, 2023Ransomware57
Attacks on SolarWinds Servers Also Linked To Chinese Threat ActorThe Record·Nov 17, 07:59 UTC · Nov 17, 2022Threat actorCVE-2020-1014860
RomCom RAT campaigns abuses popular brands like KeePass and SolarWinds NPMSecurity Affairs·Nov 4, 13:51 UTC · Nov 4, 2022Malware42
SolarWinds hackers targeted Autodesk in latest confirmed fallout from cyberCyberScoop·Sep 2, 14:02 UTC · Sep 2, 2021Data breach in the wild60
Chinese Hackers Exploited Latest SolarWinds 0The Hacker News·Jul 15, 00:00 UTC · Jul 15, 2021Exploit / PoCCVE-2021-3521160
SEC Probes SolarWinds Breach Disclosure FailuresInfosecurity Magazine·Jun 22, 18:25 UTC · Jun 22, 2021Policy & legal55
Biden budget seeks $750 million to respond to SolarWinds compromises, plus billions more for cyberCyberScoop·May 28, 18:11 UTC · May 28, 2021Exploit / PoC in the wild60
Automatically mitigate ProxyLogon, detect IoCs associated with SolarWinds attackers' activitiesHelp Net Security·Mar 19, 00:00 UTC · Mar 19, 2021VulnerabilityCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs47
Threat Source newsletter (March 11, 2021) — Featuring new SolarWinds roundtableCisco Talos·Mar 11, 19:00 UTC · Mar 11, 2021Data breach in the wild60
Cybersecurity Webinar — SolarWinds Sunburst: The Big PictureThe Hacker News·Mar 9, 10:42 UTC · Mar 9, 2021Exploit / PoC57