ARTICLE
18 December 2020

URGENT: Widespread Hacking Campaign Could Require Immediate Action

LR
Lewis Roca
Contributor
Lewis Roca logo
Lewis Roca serves clients around the world in complex litigation, intellectual property, business transactions, labor and employment, regulatory counseling, and government relations.  With legal excellence and exceptional client service, we pride ourselves on our ability to win for our clients while serving their highest goals and needs.   
FireEye, Inc., a leading U.S. cybersecurity firm, recently disclosed that it had been hacked by a nation-state actor. The company has since revealed that the hack was likely perpetrated,...
United States Technology
To print this article, all you need is to be registered or login on Mondaq.com.

FireEye, Inc., a leading U.S. cybersecurity firm, recently disclosed that it had been hacked by a nation-state actor. The company has since revealed that the hack was likely perpetrated, in part, through an ongoing compromise of "Orion" IT monitoring and management software offered by SolarWinds Worldwide, LLC.

Additional reports indicate that the U.S. Department of the Treasury and other agencies have also been affected by the breach, and thousands of other entities could be involved, as SolarWinds boasts more than 300,000 customers, including more than 425 of the Fortune 500, all of the top-ten U.S. telecom companies, all five branches of the U.S. military, and all of the top-five U.S. accounting firms. Indeed, according to FireEye, the hacking campaign resulting from the SolarWinds compromise is widespread and has likely affected numerous public and private organizations around the world.

As a result of this news, the U.S. Cybersecurity & Infrastructure Agency (CISA) has issued an emergency directive to all federal civilian executive branch agencies. The directive indicates that the SolarWinds exploit "poses an unacceptable risk" to the agencies and "requires emergency action," including the immediate disconnection or powering down of Orion products and the blocking of all traffic to and from external hosts with any version of Orion software installed. Although the CISA directive applies only to federal agencies, almost every organization (including state agencies, for-profit companies, and non-profits) should take note of the advice contained in the directive and take immediate action to address the issue.

We encourage you to confer as soon as possible with your information-technology personnel to determine if your organization might have been affected by this incident. If your organization was or might have been affected by this incident, you might want to consider taking immediate steps similar to those outlined in the CISA directive. In addition, please feel free to contact a member of our Data Protection and Cybersecurity Team if you would like to discuss this incident or if you have any other questions pertaining to data privacy or security.

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

We operate a free-to-view policy, asking only that you register in order to read all of our content. Please login or register to view the rest of this article.

ARTICLE
18 December 2020

URGENT: Widespread Hacking Campaign Could Require Immediate Action

United States Technology
Contributor
Lewis Roca logo
Lewis Roca serves clients around the world in complex litigation, intellectual property, business transactions, labor and employment, regulatory counseling, and government relations.  With legal excellence and exceptional client service, we pride ourselves on our ability to win for our clients while serving their highest goals and needs.   
See More Popular Content From

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More