← Microsoft

SolarWinds supply chain attack (18k customers, including Microsoft)

2020 18.0K records affected Share on X

Data compromised

Details not publicly disclosed

Technical writeup

Russian hackers used SolarWinds malicious updates to reach ~18k customers. Microsoft was among targets; Nobelium later used Microsoft systems to reach Microsoft customers. Malware found on support agent machine in June 2021.

Root cause

Supply chain attack via SolarWinds; Nobelium.

References