Posts

Showing posts from December, 2020

Solorigate FAQ

Image
 I have agreated a Solorigate FAQ here: https://www.linkedin.com/pulse/faq-solorigate-attack-pavel-paul-volosen-cissp/ Last Update: 12/22/2020 This write-up is meant to coalesce, and provide an executive-style summary of the most important critical questions concerning the Who, What, Where, Why, and How of the recent SoloriGate, leveraging the best sources known on the topic. This is a living-document, and will be updated as new information becomes available. NOTE: I view this as a collaborative project with other industry professionals, and if this is a topic of interest, PLEASE feel free to contribute. [Please, no product placement]   NOTE2: This analysis is based on security researches, and should NOT replace vendor-specific, or government agency instructions.  WHAT: What are the most valuable source on this issue (and used throughout this FAQ)? https://cyber.dhs.gov/ed/21-01/ https://msrc-blog.microsoft.com/2020/12/21/December-21st-2020-solorigate-resource-center/ htt...