Hacker News new | ask | show | jobs
by tootie 2019 days ago
Yeah, seems like a buried lede. SolarWinds was owned pretty badly and the attack that lead to that isn't described. Once they had access they have free reign to send malware to any one of their clients masquerading as routine patches. Sounds like they went the extra mile to deliver an extremely subtle exploit to avoid detection.
1 comments

I bet the 2 week waiting period was to avoid detection in the solarwinds QA environment.