#Russia|n hackers behind the massive #SolarWinds hack are at it again - targeting +140 tech service providers since May, per @Microsoft's @TomBurt45

"To date we believe as many as 14 of these resellers & service providers have been compromised"
blogs.microsoft.com/on-the-issues/…
The #Russia|n hackers are "attempting to replicate the approach it has used in past attacks by targeting organizations integral to the global IT supply chain" per @Microsoft's @TomBurt45
The #Russia|n group, aka #Nobelium, "ultimately hopes to piggyback on any direct access that resellers may have to their customers’ IT systems & more easily impersonate an organization’s trusted technology partner to gain access to their downstream customers" per @Microsoft
"This recent activity is another indicator that #Russia is trying to gain long-term, systematic access to a variety of points in the technology supply chain & establish a mechanism for surveilling–now or in the future–targets of interest" per @Microsoft's @TomBurt45
"These attacks have been a part of a larger wave of #Nobelium activities" per @Microsoft's @TomBurt45 "Btw July 1 & October 19 this year, we informed 609 customers that they had been attacked 22,868 times by Nobelium, with a success rate in the low single digits"
More on #Russia #cyber from @Mandiant

"While the SolarWinds supply chain attack involved malicious code...this recent intrusion activity has involved leveraging stolen identities & the networks of technology solutions, services & reseller companies" per SVP Charles Carmakal
"This attack path makes it very difficult for victim organizations to discover they were compromised & investigate the actions taken by the threat actor" per @Mandiant's Carmakal in statement

re #Russia #cyber
"Similar to the victimology observed in the 2020 campaign, the targets of this intrusion activity appear to ultimately be gvt organizations & other organizations that deal in matters of interest to #Russia" per @Mandiant's Carmakal

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Jeff Seldin

Jeff Seldin Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @jseldin

26 Oct
HAPPENING NOW: From Sept 1 - Oct 25, "The US gvt has directly facilitated the departure of 240 US citizens & 157 lawful permanent residents, as well as others who have come out on out charters" @DOD_Policy Undersecretary Colin Kahl tells Senate Armed Services Committee
"We are examining & learning from the past..." per @DOD_Policy "...reckoning w/the uncomfortable truth that despite decades & billions of dollars of US investment, the #Afghan military evaporated in the face of the #Taliban assault"
US-#Afghanistan-counterterrorism: "We are actively setting the conditions to ensure we remain situationally aware & are postured to mitigate & neutralize developing terrorist threats & streams" @thejointstaff's LtGen James Mingus tells SASC
Read 40 tweets
25 Oct
US still talking to countries about making 'over-the-horizon' counterterrorism strikes in #Afghanistan easier

"We continue to have conversations w/neighboring nations & partners in the region" per @PentagonPresSec
NEW: Latest number on #Afghanistan refugees currently at US military bases

3,000 in @CENTCOM

463 in @US_EUCOM

5,300 in @USNorthernCmd

- per @PentagonPresSec
No comment from @PentagonPresSec about @Microsoft warning on #Russia #SVR #Nobelius attempts to infiltrate the supply chain

But he says, "Our networks on under siege every single day" and that @DeptofDefense, @SecDef is focused on the problem
Read 11 tweets
25 Oct
White House reax to continue hacking attempts by #Russia

"The federal government is aggressively using our authorities to protect the nation from cyber threats, including helping the private sector defend itself..." per @KJP46
Per @KJP46 those efforts include increased intelligence sharing, bilateral/multilateral diplomacy and "measuress we do not speak about publicly for national security reasons"

re #Russia #cyber
"Obviously we don't talk about what we do in the in cyberspace" per @PentagonPresSec on @Microsoft warning about #Russia's SVR, adding "I don't have any particular knowledge of this latest report"
Read 6 tweets
18 Aug
Happening now: @SecDef Lloyd Austin, @thejointstaff Chairman Gen Mark Milley speaking to reporters for the 1st time since the fall of #Kabul, collapse of the @ashrafghani-led #Afghanistan gvt
NEW: "We remain laser focused right now on Hamid Karzai Int'l Airport in #Kabul & on doing everything we can" to evacuate American, Afghans, allies, per @SecDef

Says about 4,500 US troops in place - no hostile interactions w/#Taliban
US increasingly flow of aircraft, ppl out of #Kabul, per @SecDef

"Our US service members are making exceptional efforts under challenging circumstances" he adds
Read 31 tweets
17 Aug
NEW: #Afghanistan - "We are continuing air operations" per @USArmy MajGen Hank Taylor, calling it "a Herculean effort"

Says there will be +4,000 in #Kabul by the end of Tuesday
#Kabul airport "remains secure" for military flight ops and limited commercial flights, per @USArmy MajGen Hank Taylor

Currently one flight per hour but ,"The speed of evacuation will pick up" he says
Photo of hundreds of #Afghans crowded into a C-17 "speaks to the humanity of our troops" per @USArmy MajGen Hank Taylor
Read 19 tweets
16 Aug
NEW: @DeptofDefense says US military flights back in the air, headed to #Kabul #Afghanistan

Another 1,000 US troops are expected to be there by the end of the day, bringing total to 3,500
"It's not a perfect process" per @PentagonPresSec on planning for evacuations at #Kabul airport

"You have to adjust in real time"
@PentagonPresSec says much of the planning & recent tabletop exercises for #Kabul airport did pay off

@DeptofDefense saw it as "a distinct possibility" #Taliban could overrrun the country & Kabul, he says, but that capitulation of so many #Afghan forces was surprising
Read 7 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Too expensive? Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal Become our Patreon

Thank you for your support!

Follow Us on Twitter!

:(