Question did @TuckerCarlson or @seanhannity or @IngrahamAngle even mention or dedicate a news block to what is quite possibly on of the largest hacks in US History?
This hack involves our financial infrastructure our Military Defense systems including our only dual nuclear AFB at Kirkland.

What the hell is going on with the blackout of even mentioning it outside of Digital media outlets?
FireEye says it was SolarWINDS & vise versa, so no one is owning it just blaming the other. Bottom line this falls at the feet of a complacent DHS/CISA. Krebs was fired far too late.
We won't know the far reaching impact until all of those companies start doing audits. Step one is stopping the vulnerability, step 2 will be forensics to see if anything got exfiltrated/compromised.
Also depends on the intent of the controller. With it being currently designated as nation-state, it's a big unknown. They could have had a specific target in mind (like FireEye), or they could just be seeing what they could get.
What's this mean for the average Joe?

Unknown what the exposure is yet.

I would suggest to keep a close eye on your finances for a bit until this is nailed down, because the financial infrastructure was hit hard.

Expect telecommunication patches soon.
Will take a long time to understand the extent of the information that they got. But if they were in the treasury and commerce departments, it's a fair bet they're trying to do something bigger than just steal random data from companies.
Likely looking to manipulate the value of currency or a particular commodity, or looking for leverage into the current & new administration.

The DOD targets affected are far more scary. DOD is recommending all devices be rebuilt. This means routers, core switches & firewalls
For commercial infrastructure you're looking more at modifying various credential sets. The companies out there who were lax with internal security protocols are feeling the heat because of how this compromise is operating, and how long of a window this thing has had to operate.
Bottom line folks just keep an eye on your finances and if your banking institution has unusual activity filters be sure you have them turned up and active. Cheap protection insurance might not be a bad idea for a few months. Lotta deals out there with 90 day free trials.
You can follow @RoscoeBDavis1.
Tip: mention @twtextapp on a Twitter thread with the keyword “unroll” to get a link to it.

Latest Threads Unrolled:

By continuing to use the site, you are consenting to the use of cookies as explained in our Cookie Policy to improve your experience.