Threat Source newsletter (Dec. 17, 2020)

Threat Source newsletter (Dec. 17, 2020)

  


Newsletter compiled by Jon Munshaw.

Good afternoon, Talos readers.   This will be our last Threat Source newsletter of the year. We’ll be on a few-week break for the holidays until Jan. 7.  Of course, all anyone wants to talk about this week is the SolarWinds supply chain attack. There are still many outstanding questions yet to be answered. But everything Cisco Talos knows about this incident and our coverage can be found here. And our pre-existing coverage keeps users protected from the exploitation of any of the FireEye vulnerabilities that arose out of this attack.  While we’re away for the holidays, why not do some reverse-engineering and threat hunting of your own with some of our open-source tools? We just released new versions of GhIDA and Dynamic Data Resolver as an early holiday present.  

Cyber security week in review



Security researchers, defenders, IT professionals and government officials around the U.S. are scrambling this week to respond to the SolarWinds incident. Here’s why it’s such a big deal. 
Several security industry organizations came together in a massive response to this attack. On Wednesday, security researchers seized control of and sinkholed a key domain used in the SolarWinds incident. 
The U.S. Treasury and Commerce departments were also threat source newsletter