Click here to download all references as Bib-File.•
2021-01-28
⋅
Microsoft
⋅
ZINC attacks against security researchers ComeBacker Klackring |
2021-01-21
⋅
Medium CSIS Techblog
⋅
Silencing Microsoft Defender for Endpoint using firewall rules |
2021-01-20
⋅
Microsoft
⋅
Deep dive into the Solorigate second-stage activation: From SUNBURST to TEARDROP and Raindrop Cobalt Strike SUNBURST TEARDROP |
2021-01-19
⋅
Malwarebytes
⋅
Malwarebytes targeted by Nation State Actor implicated in SolarWinds breach. Evidence suggests abuse of privileged access to Microsoft Office 365 and Azure environments |
2021-01-19
⋅
Mandiant
⋅
Remediation and Hardening Strategies for Microsoft 365 to Defend Against UNC2452 (WHITE PAPER) |
2021-01-19
⋅
FireEye
⋅
Remediation and Hardening Strategies for Microsoft 365 to Defend Against UNC2452 |
2021-01-14
⋅
Microsoft
⋅
Increasing resilience against Solorigate and other sophisticated attacks with Microsoft Defender SUNBURST |
2021-01-08
⋅
US-CERT
⋅
Alert (AA21-008A): Detecting Post-Compromise Threat Activity in Microsoft Cloud Environments SUNBURST SUPERNOVA |
2020-12-31
⋅
Microsoft
⋅
Microsoft Internal Solorigate Investigation Update SUNBURST |
2020-12-28
⋅
Microsoft
⋅
Using Microsoft 365 Defender to protect against Solorigate SUNBURST TEARDROP |
2020-12-26
⋅
The Washington Post
⋅
Russian hackers compromised Microsoft cloud customers through third party, putting emails and other data at risk |
2020-12-22
⋅
Microsoft
⋅
Azure AD workbook to help you assess Solorigate risk SUNBURST |
2020-12-21
⋅
Microsoft
⋅
Solorigate Resource Center SUNBURST TEARDROP |
2020-12-21
⋅
Microsoft
⋅
Cyber Mercenaries Don’t Deserve Immunity |
2020-12-21
⋅
US Court of Appeals for the Ninth Court
⋅
Case: 20-16408: WhatsApp et al. vs NSO Group |
2020-12-21
⋅
Microsoft
⋅
Advice for incident responders on recovery from systemic identity compromises |
2020-12-21
⋅
Microsoft
⋅
Understanding "Solorigate"'s Identity IOCs - for Identity Vendors and their customers. SUNBURST |
2020-12-18
⋅
Microsoft
⋅
Protecting Microsoft 365 from on-premises attacks |
2020-12-18
⋅
Microsoft
⋅
Analyzing Solorigate, the compromised DLL file that started a sophisticated cyberattack, and how Microsoft Defender helps protect customers SUNBURST SUPERNOVA TEARDROP UNC2452 |
2020-12-18
⋅
Reuters
⋅
Exclusive: Microsoft breached in suspected Russian hack using SolarWinds - sources |