Threat Advisory: SolarWinds supply chain attackCisco Talos·Dec 14, 22:20 UTC · Dec 14, 2020Advisory in the wild57
Chinese hacking group DEV-0322 behind Solarwinds ServSecurity Affairs·Jul 14, 08:48 UTC · Jul 14, 2021Exploit / PoC in the wildCVE-2021-35211CVE-2020-1014860
SEC sues SolarWinds and CISO for fraudCyberScoop·Nov 1, 14:21 UTC · Nov 1, 2023Phishing & fraud in the wild60
NSA warns defense contractors of potential SolarWinds falloutCyberScoop·Dec 18, 21:57 UTC · Dec 18, 2020Exploit / PoC in the wild60
SolarWinds issues patches for two new critical bugs found in Orion softwareCyberScoop·Feb 3, 13:12 UTC · Feb 3, 2021Vulnerability in the wild60
Threat actors attempted to exploit SolarWinds Serv-U bug in attacks in the wild, Microsoft warnsSecurity Affairs·Jan 24, 21:05 UTC · Jan 24, 2022Exploit / PoC in the wildCVE-2021-35247CVE-2021-3521160
SolarWinds says hackers used a zero-day flaw for 'targeted attacks' in a new breachCyberScoop·Jul 12, 20:43 UTC · Jul 12, 2021Exploit / PoC in the wild60
Grid regulator warns utilities of risk of SolarWinds backdoor, asks how exposed they areCyberScoop·Dec 23, 21:22 UTC · Dec 23, 2020Malware in the wild60
SolarWinds fixes critical Serv-U zeroSecurity Affairs·Jul 12, 21:01 UTC · Jul 12, 2021Exploit / PoC in the wild60
China-linked hackers exploited SolarWinds software in 2020 breach, researchers sayCyberScoop·Mar 8, 22:36 UTC · Mar 8, 2021Exploit / PoC in the wild60
SolarWinds Patches 8 Critical Flaws in Access Rights Manager SoftwareThe Hacker News·Jul 20, 04:07 UTC · Jul 20, 2024Vulnerability in the wildCVE-2024-23472CVE-2024-28074CVE-2024-23469+6 CVEs60
Number of investigations into SolarWinds breach grows, along with cleanup costCyberScoop·Mar 2, 15:15 UTC · Mar 2, 2021Data breach in the wild60
Senate hearing on SolarWinds hack lays bare US shortcomings, remaining mysteriesCyberScoop·Feb 24, 00:40 UTC · Feb 24, 2021Data breach in the wild60
Microsoft shares tool to hunt for compromise in SolarWinds breachCyberScoop·Feb 26, 15:47 UTC · Feb 26, 2021Exploit / PoC in the wild60
White House warns SolarWinds breach cleanup will take timeCyberScoop·Feb 18, 00:28 UTC · Feb 18, 2021Data breach in the wild60
Microsoft details how SolarWinds hackers hid their espionageCyberScoop·Jan 20, 21:43 UTC · Jan 20, 2021Threat actor in the wild60
U.S. CISA adds SolarWinds Serv-U flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 6, 21:45 UTC · Jun 6, 2026Exploit / PoC in the wildCVE-2026-2831860
SolarWinds CEO talks hack, remaining questions before Capitol Hill hearingsCyberScoop·Feb 23, 15:21 UTC · Feb 23, 2021Exploit / PoC in the wild60
Kaspersky discovers overlap between SolarWinds hack, TurlaCyberScoop·Jan 11, 16:22 UTC · Jan 11, 2021Threat actor in the wild60
Lawmakers want more transparency on SolarWinds breach from State, VACyberScoop·Dec 24, 17:19 UTC · Dec 24, 2020Exploit / PoC in the wild60
SolarWinds breach has industrial firms checking their networks for vulnerabilitiesCyberScoop·Dec 16, 14:32 UTC · Dec 16, 2020Vulnerability in the wild60
Attackers abuse SolarWinds Web Help Desk to install Zoho agents and VelociraptorSecurity Affairs·Feb 9, 12:28 UTC · Feb 9, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-26399CVE-2025-4053660
SolarWinds Releases Hotfix for Critical CVE-2025The Hacker News·Sep 23, 12:46 UTC · Sep 23, 2025Exploit / PoC in the wildCVE-2025-26399CVE-2024-28988CVE-2024-2898660
SolarWinds CISO says security execs are ‘nervous’ about individual liability for data breachesCyberScoop·Feb 28, 23:23 UTC · Feb 28, 2025Data breach in the wild60
CISA adds SolarWinds Web Help Desk bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 16, 20:13 UTC · Aug 16, 2024Exploit / PoC in the wildCVE-2024-2898660
Microsoft discovers SolarWinds zeroThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoC in the wildCVE-2021-35211CVE-2021-5321160
US Sanctions Russia and Expels 10 Diplomats Over SolarWinds CyberattackThe Hacker News·Jun 4, 10:27 UTC · Jun 4, 2021Policy & legal in the wildCVE-2018-13379CVE-2019-9670CVE-2019-11510+2 CVEs60
Mimecast confirms SolarWinds attackers breached security certificate, 'potentially exfiltrated' credentialsCyberScoop·Jan 26, 20:15 UTC · Jan 26, 2021Data breach in the wild60
Biden's Cabinet picks face cyber questions from Congress as SolarWinds looms largeCyberScoop·Jan 19, 22:48 UTC · Jan 19, 2021Policy & legal in the wild60
SolarWinds details stealthy code used to launch hacking campaignCyberScoop·Jan 11, 23:35 UTC · Jan 11, 2021Threat actor in the wild60
Critical RCE bug in SolarWinds Web Help Desk fixed (CVE-2024-28986)Help Net Security·Aug 15, 00:00 UTC · Aug 15, 2024Vulnerability in the wildCVE-2024-2898660
Judge dismisses much of SEC suit against SolarWinds over cybersecurity disclosuresCyberScoop·Jul 18, 22:55 UTC · Jul 18, 2024Policy & legal in the wild60
Chinese hackers behind July 2021 SolarWinds zeroThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Data breach in the wildCVE-2021-35211CVE-2020-10148160
SolarWinds hackers had access to Denmark's central bank, report saysCyberScoop·Jul 1, 13:01 UTC · Jul 1, 2021Data breach in the wild60
White House slaps sanctions on Russian cyber activities while blaming SVR for SolarWinds campaignCyberScoop·Apr 15, 18:31 UTC · Apr 15, 2021Threat actor in the wild60
Biden administration mulls software security grades after SolarWindsCyberScoop·Mar 12, 21:02 UTC · Mar 12, 2021Exploit / PoC in the wild60
More federal victims of SolarWinds hacking likely to come forward, CISA chief saysCyberScoop·Jan 11, 18:10 UTC · Jan 11, 2021Data breach in the wild60
SolarWinds hires Chris Krebs, Alex Stamos to boost security in wake of suspected Russian hackCyberScoop·Jan 8, 02:47 UTC · Jan 8, 2021Data breach in the wild60
Microsoft identifies second hacking group affecting SolarWinds softwareCyberScoop·Dec 21, 19:11 UTC · Dec 21, 2020Data breach in the wild60
CISA orders federal agencies to patch exploited SolarWinds, Apple, Microsoft bugs within weeksThe Record·Feb 13, 14:58 UTC · Feb 13, 2026Vulnerability in the wildCVE-2025-40536CVE-2026-20700CVE-2025-14174+5 CVEs160