2020–2021 Autodesk — SolarWinds Orion compromise; internal server targeted (SVR campaign)
Data compromised
Internal enterprise/server context per Autodesk statements—no standardized PII leak count
Technical writeup
Autodesk told media and reflected in SEC commentary that on 13 December 2020 its team found a compromised SolarWinds Orion server, addressed containment/patching, and concluded no customer product operations were disrupted—placing the CAD giant in the large downstream set touched by the SVR-attributed supply-chain wave disclosed via FireEye’s December 2020 revelations. The row documents espionage-oriented software-infrastructure exposure rather than a public consumer record census.
Root cause
Trojanized SolarWinds Orion update channel enabling follow-on actor access to select enterprise environments