{"id":133070,"date":"2021-12-26T00:40:34","date_gmt":"2021-12-26T08:40:34","guid":{"rendered":"https:\/\/lifeboat.com\/blog\/2021\/12\/solarwinds-hackers-targeting-government-and-business-entities-worldwide"},"modified":"2021-12-26T00:40:34","modified_gmt":"2021-12-26T08:40:34","slug":"solarwinds-hackers-targeting-government-and-business-entities-worldwide","status":"publish","type":"post","link":"https:\/\/lifeboat.com\/blog\/2021\/12\/solarwinds-hackers-targeting-government-and-business-entities-worldwide","title":{"rendered":"SolarWinds Hackers Targeting Government and Business Entities Worldwide"},"content":{"rendered":"<p><a class=\"aligncenter blog-photo\" href=\"https:\/\/lifeboat.com\/blog.images\/solarwinds-hackers-targeting-government-and-business-entities-worldwide3.jpg\"><\/a><\/p>\n<p>If anything, the development is yet another indication of the threat actor\u2019s capacity to continually \u201cinnovate and identify new techniques and tradecraft to maintain persistent access to victim environments, hinder detection, and confuse attribution efforts,\u201d while also highlighting the \u201ceffectiveness of leveraging third parties and trusted vendor relationships to carry out nefarious operations.\u201d<\/p>\n<p>Microsoft had previously <a href=\"https:\/\/thehackernews.com\/2021\/01\/heres-how-solarwinds-hackers-stayed.html\" rel=\"noopener\" target=\"_blank\">dubbed<\/a> Nobelium as \u201cskillful and methodic operators who follow operations security (OpSec) best practices.\u201d<\/p>\n<p>Ever since the SolarWinds incident came to light, the APT group has been <a href=\"https:\/\/thehackernews.com\/2021\/05\/solarwinds-hackers-target-think-tanks.html\" rel=\"noopener\" target=\"_blank\">connected<\/a> to a <a href=\"https:\/\/thehackernews.com\/2021\/09\/microsoft-warns-of-foggyweb-malware.html\" rel=\"noopener\" target=\"_blank\">string<\/a> of <a href=\"https:\/\/thehackernews.com\/2021\/09\/new-tomiris-backdoor-found-linked-to.html\" rel=\"noopener\" target=\"_blank\">attacks<\/a> aimed at think tanks, businesses, and government entities around the globe, even as an ever-expanding malware toolbox has been put to use with the goal of establishing a foothold in the attacked system and downloading other malicious components.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>If anything, the development is yet another indication of the threat actor\u2019s capacity to continually \u201cinnovate and identify new techniques and tradecraft to maintain persistent access to victim environments, hinder detection, and confuse attribution efforts,\u201d while also highlighting the \u201ceffectiveness of leveraging third parties and trusted vendor relationships to carry out nefarious operations.\u201d Microsoft had [\u2026]<\/p>\n","protected":false},"author":513,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[43,34,1490],"tags":[],"class_list":["post-133070","post","type-post","status-publish","format-standard","hentry","category-business","category-cybercrime-malcode","category-government"],"_links":{"self":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/133070","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/users\/513"}],"replies":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/comments?post=133070"}],"version-history":[{"count":0,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/133070\/revisions"}],"wp:attachment":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/media?parent=133070"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/categories?post=133070"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/tags?post=133070"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}