Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Cyber expert says he found the SolarWinds “backdoor”: Computer expert Andrew Morris says he downloaded the infected installer from SolarWinds Orion
Election Wiz ^ | 12/15/2020

Posted on 12/15/2020 6:56:04 AM PST by SeekAndFind

Computer expert Andrew Morris says he downloaded the infected installer from SolarWinds Orion and found the “backdoor” is still contained on the installer on SolarWinds’ website.

Morris is the founder of GreyNoise, a cyber security firm that specializes in finding comprised devices and detecting internet threats.

SolarWinds Orion is part of the SolarWinds suite of network and computer management tools used by the US government.

Reports indicate that someone, possible Russia, managed to modify SolarWinds Orion in the spring of this year. The modification created a “backdoor” which allowed the hacker to spy on numerous government agencies, including the Treasury, Commerce, Homeland Security, and the Pentagon.

The “backdoor” was identified by cyber security firm FireEye, and dubbed the backdoor “Sunburst.”

The SolarWinds attack seemingly went undetected for months as hackers were able to sneak into U.S. government agencies, putting sensitive information at risk of theft.

Unconfirmed news broke last night that federal agents and Texas Rangers “raided” SolarWinds headquarters in Austin, Texas.

(Excerpt) Read more at electionwiz.com ...


TOPICS: Computers/Internet; Conspiracy; Society
KEYWORDS: backdoor; hacking; solarwinds; solarwindssoftware

1 posted on 12/15/2020 6:56:04 AM PST by SeekAndFind
[ Post Reply | Private Reply | View Replies]

To: SeekAndFind

Election Wiz has a moron for an author, and a non-existent editor. If you can’t be bothered to write above a 5th grade level, you don’t deserve to have your crap read by anyone.


2 posted on 12/15/2020 7:01:57 AM PST by TheZMan (I am a secessionist.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: TheZMan

OK, he’s not the best writer in the world. But do you have any objections to the INFORMATION provided in the article other than the author is not the second coming of Bill Buckley Jr.?


3 posted on 12/15/2020 7:06:26 AM PST by SeekAndFind
[ Post Reply | Private Reply | To 2 | View Replies]

To: SeekAndFind

Here are additional articles that go into more depth:

https://arstechnica.com/information-technology/2020/12/18000-organizations-downloaded-backdoor-planted-by-cozy-bear-hackers/

https://arstechnica.com/information-technology/2020/12/solarwinds-hackers-have-a-clever-way-to-bypass-multi-factor-authentication/


4 posted on 12/15/2020 7:06:36 AM PST by proxy_user
[ Post Reply | Private Reply | To 1 | View Replies]

To: SeekAndFind

Nice hack, infect the network monitoring tools.


5 posted on 12/15/2020 7:11:34 AM PST by glorgau
[ Post Reply | Private Reply | To 1 | View Replies]

To: SeekAndFind

I’m still not completely clear on the connection people are making between SolarWinds and Dominion Voting.

SolarWinds was hacked in March. Malware was inserted. Perhaps by Russia. This compromised a lot of systems. Okay. I get that.

But I think people are hinting that this allowed the FBI and Texas Rangers to seize Dominion servers and gain access to auditable logs showing election fraud? Or something?

I’m not getting this connection.


6 posted on 12/15/2020 7:14:01 AM PST by ClearCase_guy (If White Privilege is real, why did Elizabeth Warren lie about being an Indian?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: SeekAndFind

Hard to say. I can’t read dumb.


7 posted on 12/15/2020 7:24:01 AM PST by TheZMan (I am a secessionist.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: SeekAndFind

“Reports indicate that someone, possible Russia...”

Russia, Russia, Russia.... my azz. More likely China, China, China as they have the most to lose.


8 posted on 12/15/2020 7:42:38 AM PST by LastDayz (A blunt and brazen Texan. I will not be assimilated.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ClearCase_guy
SolarWinds is used in Dominion Voting systems
Orion was a patch for solarwinds it's not a version. Dominion systems adviser said today that he has very limited information but implied this was a package that Dominion doesn't use. Though he implied they do use solarwinds in his testimony today. the problem with that is they used solarwinds and updated regularly they took the package.

Types of patch's
Hotpatch - A quick bug fix for a specific software issue.
Orion - A cloud based software solution produced by SolarWinds (large IT software company) used by IT administrators to managed workstations/servers/devices
Patches - Normal software updates & security updates.
Usually released on a regular schedule, as opposed to hotpatches, which are quickly released for a specific issue

this is the log screen capture of the log of in Dominion systems

My opinion if the FBI is involved they're securing the banks and military systems. They will not even look at if dominion used solarwinds

9 posted on 12/15/2020 2:10:36 PM PST by Steve Van Doorn (*in my best Eric Cartman voice* 'I love you, guys')
[ Post Reply | Private Reply | To 6 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson