Close Menu
Beverly Hills Examiner

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    The Metal Bands Soundgarden’s Kim Thayil Listened to in the ‘80s

    June 4, 2026

    SpaceX reveals its share price and record valuation: $135 a share, at a $1.77 trillion valuation

    June 4, 2026

    Reeling Trump Loses On Iran War Powers, Ballroom, And Weaponization Fund All On The Same Day

    June 4, 2026
    Facebook X (Twitter) Instagram
    Beverly Hills Examiner
    • Home
    • US News
    • Politics
    • Business
    • Science
    • Technology
    • Lifestyle
    • Music
    • Television
    • Film
    • Books
    • Contact
      • About
      • Amazon Disclaimer
      • DMCA / Copyrights Disclaimer
      • Terms and Conditions
      • Privacy Policy
    Beverly Hills Examiner
    Home»Technology»DOJ Detected SolarWinds Breach Months Before Public Disclosure
    Technology

    DOJ Detected SolarWinds Breach Months Before Public Disclosure

    By AdminApril 29, 2023
    Facebook Twitter Pinterest LinkedIn WhatsApp Email Reddit Telegram
    DOJ Detected SolarWinds Breach Months Before Public Disclosure


    In November 2020, months after the DOJ completed the mitigation of its breach, Mandiant discovered that it had been hacked, and traced its breach to the Orion software on one of its servers the following month. An investigation of the software revealed that it contained a backdoor that the hackers had embedded in the Orion software while it was being compiled by SolarWinds in February 2020. The tainted software went out to about 18,000 SolarWinds customers, who downloaded it between March and June, right around the time the DOJ discovered the anomalous traffic exiting its Orion server. The hackers chose only a small subset of these to target for their espionage operation, however. They burrowed further into the infected federal agencies and about 100 other organizations, including technology firms, government agencies, defense contractors, and think tanks.

    Mandiant itself got infected with the Orion software on July 28, 2020, the company told WIRED, which would have coincided with the period that the company was helping the DOJ investigate its breach.

    When asked why, when the company announced the supply-chain hack in December, it didn’t publicly disclose that it had been tracking an incident related to the SolarWinds campaign in a government network months earlier, a spokesperson noted only that “when we went public, we had identified other compromised customers.”

    The incident underscores the importance of information-sharing among agencies and industry, something the Biden administration has emphasized. Although the DOJ had notified CISA, a spokesperson for the National Security Agency told WIRED that it didn’t learn of the early DOJ breach until January 2021, when the information was shared in a call among employees of several federal agencies.

    That was the same month the DOJ—whose 100,000-plus employees span multiple agencies including the FBI, Drug Enforcement Agency, and US Marshals Service—publicly revealed that the hackers behind the SolarWinds campaign had possibly accessed about 3 percent of its Office 365 mailboxes. There are conflicting reports about whether this attack was part of the SolarWinds campaign or carried out by the same actors. Six months later, the department expanded on this and announced that the hackers had managed to breach email accounts of employees at 27 US Attorneys’ offices, including ones in California, New York, and Washington, DC. 

    In its latter statement, the DOJ said that to “encourage transparency and strengthen homeland resilience,” it wanted to provide new details, including that the hackers were believed to have had access to compromised accounts from about May 7 to December 27, 2020. And the compromised data included “all sent, received, and stored emails and attachments found within those accounts during that time.”

    The investigators of the DOJ incident weren’t the only ones to stumble upon early evidence of the breach. Around the same time of the department’s investigation, security firm Volexity, as the company previously reported, was also investigating a breach at a US think tank and traced it to the organization’s Orion server. Later in September, the security firm Palo Alto Networks also discovered anomalous activity in connection with its Orion server. Volexity suspected there might be a backdoor on its customer’s server but ended the investigation without finding one. Palo Alto Networks contacted SolarWinds, as the DOJ had, but in that case as well, they failed to pinpoint the problem.

    Senator Ron Wyden, an Oregon Democrat who has been critical of the government’s failure to prevent and detect the campaign in its early stages, says the revelation illustrates the need for an investigation into how the US government responded to the attacks and missed opportunities to halt it.

    “Russia’s SolarWinds hacking campaign was only successful because of a series of cascading failures by the US government and its industry partners,” he wrote in an email. “I haven’t seen any evidence that the executive branch has thoroughly investigated and addressed these failures. The federal government urgently needs to get to the bottom of what went wrong so that in the future, backdoors in other software used by the government are promptly discovered and neutralized.“



    Original Source Link

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Email Reddit Telegram
    Previous ArticleSnow may have fallen on Mars 400,000 years ago
    Next Article Benadryl TikTok ‘challenge’: A 13-year-old died in Ohio after participating

    RELATED POSTS

    xAI Asks Court to Strip Alleged Grok Deepfake Nudes Victims of Anonymity

    June 4, 2026

    The world’s largest privately owned laser just turned on

    June 3, 2026

    Palantir Contracts Have Become ‘An Unacceptable Point of Weakness,’ UK Politicians Warn

    June 3, 2026

    Rocket engine startup Impulse raises $500 million to hire people, not AI

    June 2, 2026

    Anthropic Confidentially Files for What Could Be the Largest IPO Ever

    June 1, 2026

    Unastella, a South Korean rocket startup that launched from home, raises $24M

    June 1, 2026
    latest posts

    The Metal Bands Soundgarden’s Kim Thayil Listened to in the ‘80s

    During a new interview, Soundgarden’s Kim Thayil named the metal bands he listened to in…

    SpaceX reveals its share price and record valuation: $135 a share, at a $1.77 trillion valuation

    June 4, 2026

    Reeling Trump Loses On Iran War Powers, Ballroom, And Weaponization Fund All On The Same Day

    June 4, 2026

    FCC Chairman Brendan Carr targets school screen time in E-Rate review

    June 4, 2026

    xAI Asks Court to Strip Alleged Grok Deepfake Nudes Victims of Anonymity

    June 4, 2026

    Scientists just built a powerful AI computer worm that learns as it spreads

    June 4, 2026

    Inside Chronically Online: a big-screen…

    June 3, 2026
    Categories
    • Books (1,281)
    • Business (6,187)
    • Cover Story (5)
    • Film (6,124)
    • Lifestyle (4,204)
    • Music (6,194)
    • Politics (6,181)
    • Science (5,535)
    • Technology (6,120)
    • Television (5,814)
    • Uncategorized (3)
    • US News (6,171)
    popular posts

    Why Peeves Wasn’t In The Movies

    Why wasn’t the poltergeist Peeves in the Harry Potter movies? The actor cast for the…

    Biden Is Exploring Additional Executive Actions On Guns

    June 1, 2022

    Austin Butler Was Inspired by Gary Oldman, Heath Ledger for Dune Role

    March 8, 2024

    [PHOTOS] ‘Call the Midwife’ Helen George Returns In Time for Season 12

    May 18, 2022
    Archives
    Browse By Category
    • Books (1,281)
    • Business (6,187)
    • Cover Story (5)
    • Film (6,124)
    • Lifestyle (4,204)
    • Music (6,194)
    • Politics (6,181)
    • Science (5,535)
    • Technology (6,120)
    • Television (5,814)
    • Uncategorized (3)
    • US News (6,171)
    About Us

    We are a creativity led international team with a digital soul. Our work is a custom built by the storytellers and strategists with a flair for exploiting the latest advancements in media and technology.

    Most of all, we stand behind our ideas and believe in creativity as the most powerful force in business.

    What makes us Different

    We care. We collaborate. We do great work. And we do it with a smile, because we’re pretty damn excited to do what we do. If you would like details on what else we can do visit out Contact page.

    Our Picks

    Scientists just built a powerful AI computer worm that learns as it spreads

    June 4, 2026

    Inside Chronically Online: a big-screen…

    June 3, 2026

    ‘Calabasas Confidential’ Suede Brooks Parties With Scott Disick

    June 3, 2026
    © 2026 Beverly Hills Examiner. All rights reserved. All articles, images, product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only. Use of these names, logos, and brands does not imply endorsement unless specified. By using this site, you agree to the Terms & Conditions and Privacy Policy.

    Type above and press Enter to search. Press Esc to cancel.

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
    CookieDurationDescription
    cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
    cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
    cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
    cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
    cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
    viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
    Functional
    Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
    Performance
    Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
    Analytics
    Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
    Advertisement
    Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
    Others
    Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
    SAVE & ACCEPT