Jump to content
Chauncey

Cybersecurity group admits SolarWinds hack came FROM WITHIN THE US, but doubles down on blaming Russia

 Share

10 posts in this topic

Recommended Posts

https://www.dailymail.co.uk/news/article-9108511/SolarWinds-warned-potential-cyber-attack-cost-saving-Europe-exposed-firm.html
 

Former and current SolarWinds staffers say the company was slow to prioritize security, even when its software was adopted by top cybersecurity companies and federal agencies. SolarWinds only added on security in 2017 under the threat of penalty from a new European privacy law. Then it hired its first chief information officer and brought in a vice president of security architecture. A reason, in part, why security was so relaxed was allegedly due to chief executive Kevin B. Thompson's cuts. Past and current employees say that Thompson, who was formerly an accountant and a chief financial officer, cut common security practices to save costs and his approach almost tripled SolarWinds' annual profit margins to more than $453million in 2019 from $152milliom in 2010. But some of those measures may have jeopardized the company and put its customers at a greater risk for attack. SolarWinds also moved much of its engineering to satellite offices in the Czech Republic, Poland and Belarus, where engineers had access to the Orion network management software that was hacked. Some of the Orion software was also engineered there. American investigators are focusing on whether the hack started at the Eastern Europe offices, where Russian intelligence operatives are deeply rooted. Initially officials said the hack began as early as March this year but SolarWinds have since revealed they traced the hackers back to October 2019. The spies were were believed to have tested their ability to insert the malicious code into their system on October 10, 2019.


I don't trust the RT to tell me that it didn't come from Russia. But when the final report does come out I can't wait to see it

Link to comment
Share on other sites

1 minute ago, Cyberfx1024 said:

I don't trust the RT to tell me that it didn't come from Russia. But when the final report does come out I can't wait to see it

I'd take RT with a grain of salt too, on the other hand, I see no reason to be excited for any report, we know how those go, and it never ends with anyone of significance being culpable, they make sure of that.

Link to comment
Share on other sites

Country: Russia
Timeline
11 minutes ago, Burnt Reynolds said:

I'd take RT with a grain of salt too, on the other hand, I see no reason to be excited for any report, we know how those go, and it never ends with anyone of significance being culpable, they make sure of that.

It's better that they post something though than ignore any updates and keep it on Russia

Link to comment
Share on other sites

11 minutes ago, Chauncey said:

It's better that they post something though than ignore any updates and keep it on Russia

They are just trying to deflect when in reality we know this is a state actor. It very could be China for all we know but at this point in time I am not ruling anyone out

Link to comment
Share on other sites

24 minutes ago, Burnt Reynolds said:

I'd take RT with a grain of salt too, on the other hand, I see no reason to be excited for any report, we know how those go, and it never ends with anyone of significance being culpable, they make sure of that.

Well by the Dailymail's report the company did what most companies do in regards to IT and treat us like we are a expendable line item that can be budgeted away

Link to comment
Share on other sites

23 minutes ago, Cyberfx1024 said:

Well by the Dailymail's report the company did what most companies do in regards to IT and treat us like we are a expendable line item that can be budgeted away

That's its own can of worms, but I will say, yeah, we are, because people send that message by the way they conduct themselves, outwardly and at the ballot box. Because of this, public contracts where the taxpayer is collateral is today's warped capitalist dream. The corrupt partnership means exactly what we're seeing, the only stakeholder the company cares about is the politicians, where companies can have near inscrutible power over vital government functions, get away with whatever they want, and the stakeholders have no vested interest in holding them accountable because they benefit. But what they're doing is precisely the kind of accountability angle the public has over elected politicians. As much as I know the whole "you get what you deserve" thing isn't very popular in Trump circles at the moment, it's nonetheless true. Many, many of these people are Republicans too. It's not merely Democrats.

Edited by Burnt Reynolds
Link to comment
Share on other sites

Filed: Citizen (apr) Country: Ecuador
Timeline
10 hours ago, Cyberfx1024 said:

Thompson, who was formerly an accountant and a chief financial officer, cut common security practices to save costs

Years ago, I heard this:  "When accountants are in charge, the net result of everything is Zero."

06-04-2007 = TSC stamps postal return-receipt for I-129f.

06-11-2007 = NOA1 date (unknown to me).

07-20-2007 = Phoned Immigration Officer; got WAC#; where's NOA1?

09-25-2007 = Touch (first-ever).

09-28-2007 = NOA1, 23 days after their 45-day promise to send it (grrrr).

10-20 & 11-14-2007 = Phoned ImmOffs; "still pending."

12-11-2007 = 180 days; file is "between workstations, may be early Jan."; touches 12/11 & 12/12.

12-18-2007 = Call; file is with Division 9 ofcr. (bckgrnd check); e-prompt to shake it; touch.

12-19-2007 = NOA2 by e-mail & web, dated 12-18-07 (187 days; 201 per VJ); in mail 12/24/07.

01-09-2008 = File from USCIS to NVC, 1-4-08; NVC creates file, 1/15/08; to consulate 1/16/08.

01-23-2008 = Consulate gets file; outdated Packet 4 mailed to fiancee 1/27/08; rec'd 3/3/08.

04-29-2008 = Fiancee's 4-min. consular interview, 8:30 a.m.; much evidence brought but not allowed to be presented (consul: "More proof! Second interview! Bring your fiance!").

05-05-2008 = Infuriating $12 call to non-English-speaking consulate appointment-setter.

05-06-2008 = Better $12 call to English-speaker; "joint" interview date 6/30/08 (my selection).

06-30-2008 = Stokes Interrogations w/Ecuadorian (not USC); "wait 2 weeks; we'll mail her."

07-2008 = Daily calls to DOS: "currently processing"; 8/05 = Phoned consulate, got Section Chief; wrote him.

08-07-08 = E-mail from consulate, promising to issue visa "as soon as we get her passport" (on 8/12, per DHL).

08-27-08 = Phoned consulate (they "couldn't find" our file); visa DHL'd 8/28; in hand 9/1; through POE on 10/9 with NO hassles(!).

Link to comment
Share on other sites

 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
- Back to Top -

Important Disclaimer: Please read carefully the Visajourney.com Terms of Service. If you do not agree to the Terms of Service you should not access or view any page (including this page) on VisaJourney.com. Answers and comments provided on Visajourney.com Forums are general information, and are not intended to substitute for informed professional medical, psychiatric, psychological, tax, legal, investment, accounting, or other professional advice. Visajourney.com does not endorse, and expressly disclaims liability for any product, manufacturer, distributor, service or service provider mentioned or any opinion expressed in answers or comments. VisaJourney.com does not condone immigration fraud in any way, shape or manner. VisaJourney.com recommends that if any member or user knows directly of someone involved in fraudulent or illegal activity, that they report such activity directly to the Department of Homeland Security, Immigration and Customs Enforcement. You can contact ICE via email at Immigration.Reply@dhs.gov or you can telephone ICE at 1-866-347-2423. All reported threads/posts containing reference to immigration fraud or illegal activities will be removed from this board. If you feel that you have found inappropriate content, please let us know by contacting us here with a url link to that content. Thank you.
×
×
  • Create New...