Computer tutorials How to properly create a Website? Learn to master Wordpress Increase your visibility (SEO) Our web hosting services SolarWinds : la société embauche deux experts reconnus pour revoir sa sécurité SolarWinds: the company hires two recognized experts to review its security SolarWinds: la empresa contrata a dos reconocidos expertos para revisar su seguridad
HébergementWebs.com : L'actualités, guides et tutoriaux du moment
Our services
SEO
Wordpress
Web Site
Tutorials
SolarWinds: la empresa contrata a dos reconocidos expertos para revisar su seguridad SolarWinds: the company hires two recognized experts to review its security SolarWinds : la société embauche deux experts reconnus pour revoir sa sécurité

SolarWinds: the company hires two recognized experts to review its security

Cyber ​​attack
2021-01-12 00:06:57
SolarWinds: the company hires two recognized experts to review its security

 SolarWinds: the company hires two recognized experts to review its security

The company SolarWinds has hired the former chief cybersecurity officer government Chris Krebs to help him restore his systems and learn from the incident.

Hackers infiltrated the SolarWinds network before inserting malware into its Orion software updates. this attack, hackers gained access to the networks of approximately 18,000 SolarWinds customers around the world, including the US government.

Targeted agencies included the State Department, the Department of Homeland Security, National Institutes of Health, the Pentagon, the Treasury Department, the Commerce Department, the Department of Energy, as well as the national nuclear security administration.

The cybersecurity firm FireEye was also targeted in this spy campaign, as attackers sought information on government clients.

The US government has officially accused Russia of being at the origin of attack, the full consequences of which may not yet be known.

SolarWinds brought in Chris Krebs, who occupiedthe post of Director of the Cybersecurity and Infrastructure Security Agency (CISA) until November of last year. Krebs was fired by Trump via Twitter for denouncing the questionable claims of the outgoing president on electoral fraud.

Krebs was hired by SolarWinds as an independent consultant: the latter started a new company with Alex Stamos, professor at Stanford University and former Facebook security manager. The tandem will work with SolarWinds to repair damage caused by the attack and improve business security.

"Based on what we learned from this attack, we are also reflecting on our own security practices and looking for opportunities to improve our posture and policies," said a spokesperson for SolarWinds to HFrance by e-mail.

"We enlisted the expertise of Chris Krebs and Alex Stamos to assist us with this review and provide top-notch advice on our journey to grow into an industry-leading secure software development company.

The hiring of Krebs and Stamos comes as new SolarWinds chairman and CEO Sudhakar Ramakrishna, who took over as head of the company this week, laid out plans to learn from the cyberattack.

"We have hired several leading cybersecurity experts to help us on this journey and I am committed to being transparent with our customers, government partners and the general public. short and long term regarding our security enhancements to ensure that we maintain what is most important to us - your trust, ”he wrote in un blog article.

Source: HFrance.com

Zerologon: Microsoft will tighten the screw in February Zerologon: Microsoft will tighten the screw in February

Zerologon: Microsoft will tighten the screw in February

  • 2021-01-19 16:06:09 | Cyber ​​attack

Zerologon is a security vulnerability discovered in September and corrected in August 2020 by Microsoft. Identified by CVE 2020 1472, this security flaw is an elevation of privilege affecting the Netlogon Remote Protocol and which allows an unauthenticated attacker to log into an Active Directory do...

  • facebook
  • twitter
  • xing
  • linkedin
Ledger: The July fault was more serious than announced Ledger: The July fault was more serious than announced

Ledger: The July fault was more serious than announced

  • 2021-01-15 18:06:29 | Cyber ​​attack

In July, the French company Ledger announced that it had been the victim of a data breach. While the secure wallets marketed by the company were not a concern, Ledger nevertheless explained that a security flaw discovered on their site had allowed third parties to access the personal data of 9,500 c...

  • facebook
  • twitter
  • xing
  • linkedin
SecNumCloud: understand everything in five points SecNumCloud: understand everything in five points

SecNumCloud: understand everything in five points

  • 2021-01-15 14:06:08 | Cyber ​​attack

While companies' migration to the cloud is increasing with the Covid19 pandemic, so too is the volume of cyber attacks. In this context, the security of cloud service providers has become a major issue. To address these concerns, Anssi proposes to qualify service providers who comply with good secur...

  • facebook
  • twitter
  • xing
  • linkedin
Microsoft fixes a Defender zero-day flaw in its Patch Tuesday Microsoft fixes a Defender zero-day flaw in its Patch Tuesday

Microsoft fixes a Defender zero-day flaw in its Patch Tuesday

  • 2021-01-13 17:06:47 | Cyber ​​attack

Microsoft has started rolling out its security patches, known in the industry as Patch Tuesday, and in this month's updates, the Redmond-based company fixed a total of 83 vulnerabilities across a wide range of products. , including its Windows operating system, cloud-based products, development tool...

  • facebook
  • twitter
  • xing
  • linkedin
SolarWinds: Looks Like Shadow Brokers SolarWinds: Looks Like Shadow Brokers

SolarWinds: Looks Like Shadow Brokers

  • 2021-01-13 17:06:08 | Cyber ​​attack

The United States is still unraveling the ramifications of the attack on SolarWinds, but the perpetrators obviously want to suggest the worst. A website by the name of solarleaks was put online two days ago by Internet users claiming to be the authors of the campaign of attacks targeting SolarWinds ...

  • facebook
  • twitter
  • xing
  • linkedin
Microsoft fixes a Defender zero day flaw in its Patch Tuesday Microsoft fixes a Defender zero day flaw in its Patch Tuesday

Microsoft fixes a Defender zero day flaw in its Patch Tuesday

  • 2021-01-13 12:06:09 | Cyber ​​attack

Microsoft has started rolling out its security patches, known in the industry as Patch Tuesday. In this month's updates, the Redmond-based company fixed a total of 83 vulnerabilities across a wide range of products, including its Windows operating system, cloud-based products, developer tools. and i...

  • facebook
  • twitter
  • xing
  • linkedin
CES 2021: Intel wants ransomware-resistant processors CES 2021: Intel wants ransomware-resistant processors

CES 2021: Intel wants ransomware-resistant processors

  • 2021-01-12 13:06:15 | Cyber ​​attack

At CES 2021, Intel announced the implementation of ransomware detection capabilities to its new 11th generation Core vPro processors, thanks to enhancements to its hardware protection and threat detection technology. A partnership with Boston-based Cybereason has also been announced. The security co...

  • facebook
  • twitter
  • xing
  • linkedin
SolarWinds: the company hires two renowned experts to review its security SolarWinds: the company hires two renowned experts to review its security

SolarWinds: the company hires two renowned experts to review its security

  • 2021-01-11 18:06:18 | Cyber ​​attack

SolarWinds has hired former U. S. government cybersecurity chief Chris Krebs to help restore its systems and learn lessons from the incident. Hackers infiltrated SolarWinds' network before implanting malware into updates to its Orion software. As a result of this attack, hackers gained access to the...

  • facebook
  • twitter
  • xing
  • linkedin
Ransomware: Egregor, the cybercriminal relief Ransomware: Egregor, the cybercriminal relief

Ransomware: Egregor, the cybercriminal relief

  • 2021-01-10 04:06:25 | Cyber ​​attack

What is an Egregor? Originally, the term “egregore” comes from an esoteric concept sometimes taken up in the world of management designating “a group spirit formed by the aggregation of the intentions, energies and desires of several individuals united for a good goal. defined. The term was therefor...

  • facebook
  • twitter
  • xing
  • linkedin
Ransomware: Egregor, cybercrime relief Ransomware: Egregor, cybercrime relief

Ransomware: Egregor, cybercrime relief

  • 2021-01-09 09:06:14 | Cyber ​​attack

What is an Egregor? Originally, the term “egregore” comes from an esoteric concept sometimes taken up in the world of management designating “a group spirit formed by the aggregation of the intentions, energies and desires of several individuals united for a good goal. defined. The term was therefor...

  • facebook
  • twitter
  • xing
  • linkedin
Anssi begins to detail its plan to secure local authorities Anssi begins to detail its plan to secure local authorities

Anssi begins to detail its plan to secure local authorities

  • 2021-01-08 17:06:13 | Cyber ​​attack

Guillaume Poupard mentioned it in November during his hearing before the senators: to secure local authorities, Anssi intends to dig into the stimulus plan implemented by the state. In total, Anssi has 136 million euros to reinvest as part of this recovery plan and part of this sum will be used to s...

  • facebook
  • twitter
  • xing
  • linkedin
Google Titan Key Encryption Keys Recovered by Attack Google Titan Key Encryption Keys Recovered by Attack

Google Titan Key Encryption Keys Recovered by Attack

  • 2021-01-08 13:06:15 | Cyber ​​attack

A duo of French security researchers have discovered a vulnerability that affects chips used in Google Titan and YubiKey hardware security keys. The vulnerability allows malicious actors to recover the primary encryption key used by the hardware security key to generate cryptographic tokens for two-...

  • facebook
  • twitter
  • xing
  • linkedin
Ransomware: Ryuk allegedly pocketed over $ 150 million Ransomware: Ryuk allegedly pocketed over $ 150 million

Ransomware: Ryuk allegedly pocketed over $ 150 million

  • 2021-01-08 10:07:59 | Cyber ​​attack

Image: QuinceCreative. Ryuk ransomware operators have reportedly earned more than $ 150 million in Bitcoin from paying ransoms for intrusions into companies around the world. Threat intelligence firm Advanced Intelligence (AdvIntel) and the company cybersecurity analysts HYAS on Thursday released an...

  • facebook
  • twitter
  • xing
  • linkedin
Ransomware: Ryuk reportedly pocketed over $ 150 million Ransomware: Ryuk reportedly pocketed over $ 150 million

Ransomware: Ryuk reportedly pocketed over $ 150 million

  • 2021-01-08 09:06:14 | Cyber ​​attack

Image: QuinceCreative. Ryuk ransomware operators have reportedly earned more than $ 150 million in Bitcoin from paying ransoms for intrusions into companies around the world. Threat intelligence firm Advanced Intelligence (AdvIntel) and the company cybersecurity analysts HYAS on Thursday released an...

  • facebook
  • twitter
  • xing
  • linkedin
SolarWinds: JetBrains company denies involvement in hacking SolarWinds: JetBrains company denies involvement in hacking

SolarWinds: JetBrains company denies involvement in hacking

  • 2021-01-07 13:07:18 | Cyber ​​attack

Czech software development company JetBrains today issued a disclaimer following articles in The New York Times and The Wall Street Journal claiming its software was behind the SolarWinds hack that affected thousands of businesses around the world. whole world. Both articles claim that SolarWinds us...

  • facebook
  • twitter
  • xing
  • linkedin