Microsoft responded with the strongest weapons to the SolarWinds attack
Source: IO Tech added 18th Dec 2020Microsoft and its partners have responded to a malware operation known as the SolarWinds attack, including the so-called with sinkhole tactics.
Now Microsoft has outlined what it will do to counter the attack. The company said it manually removed the digital certificates used by the Trojan-infected files as soon as the attack came to light. In practice, this means that no Windows configuration agrees to run these files because it sees them as untrusted.
In addition, Microsoft updated Windows Defender to detect and alert users of a used Trojan. On Wednesday, however, the company decided to change the standard functionality of Windows Defender for Solorigate from mere warning to automatic quarantine. Automatically quarantining infected files is effective, but at the same time it can also cause a system crash, for example.
In addition, Microsoft and its partners have isolated the so-called avsvmcloud.com site used by the attackers. with sinkhole tactics. Sinkhole refers to the way in which a server is isolated by means of DNS servers from the rest of the Internet to direct traffic destined for them elsewhere. As a result, the malware loses the ability to communicate with its host server and is left without instructions
.Sources: FireEye, GeekWire
brands: Microsoft Orion media: IO Tech keywords: Internet Server Software Windows
Related posts
Notice: Undefined variable: all_related in /var/www/vhosts/rondea.com/httpdocs/wp-content/themes/rondea-2-0/single-article.php on line 88
Notice: Undefined variable: all_related in /var/www/vhosts/rondea.com/httpdocs/wp-content/themes/rondea-2-0/single-article.php on line 88
Related Products
Notice: Undefined variable: all_related in /var/www/vhosts/rondea.com/httpdocs/wp-content/themes/rondea-2-0/single-article.php on line 91
Warning: Invalid argument supplied for foreach() in /var/www/vhosts/rondea.com/httpdocs/wp-content/themes/rondea-2-0/single-article.php on line 91