SolarWinds Detection Hash method

4 years ago
9

As many folks are confused about how to detect this exploit I have created a 5 min(ish) video using a sandbox environment on how to detect if you are vulnerable to the SolarWinds attack. Sorry the editing is not the greatest, I only have so much time on my hands. Hope this helps.

Links:
FireEye Details:
https://www.fireeye.com/blog/threat-research/2020/12/evasive-attacker-leverages-solarwinds-supply-chain-compromises-with-sunburst-backdoor.html
Hashes to check against:
https://github.com/fireeye/sunburst_countermeasures/blob/main/indicator_release/Indicator_Release_Hashes.csv
CISA Mitigation Recommendations:
https://us-cert.cisa.gov/ncas/alerts/aa20-352a

Loading 1 comment...