
What is Rapid7 doing as a result of the disclosure of the SUNBURST/Solorigate disclosure? For InsightIDR customers In this blog post, we will focus on answering specific questions organizations may have regarding this situation. SolarWinds has issued a separate advisory for the incident. FireEye has given the campaign an identifier of UNC2452 and is further naming the trojanized version of the SolarWinds Orion component SUNBURST (Microsoft has used the “Solorigate” identifier for the malware and added detection rules to its Defender antivirus).



12, 2020, FireEye provided detailed information on a widespread attack campaign involving a backdoored component of the SolarWinds Orion platform, which is used by organizations to monitor and manage IT infrastructure.
