If it’s “Russia” why are they investigating if the execs were in on it?

“HAGENS BERMAN, NATIONAL TRIAL ATTORNEYS, Investigating SolarWinds (SWI) $285 Million Insider Stock Sales, Knowledge of Hack in Orion Products, Encourages SWI Investors with Losses to Contact Firm Now” https://t.co/n7AHw51r4m
SolarWinds report (Feb 2020): “2020 Key Findings
For the fifth year in a row, careless and untrained insiders are the leading source of security threats for public sector organizations”

https://t.co/TjgcuaBzUb
“‘Security is everyone’s job, but holding the team accountable is lacking. Until there are real individual accountability regimens in place, the network will remain at risk.’
- Division Chief, Federal Civilian”
Again insiders are the top threat, why ignoring in public rhetoric?

https://t.co/603WejHoYG
It doesn’t add up https://t.co/1MNMdHqyH6
Why would SolarWinds ignore this warning?

https://t.co/VVQ7TqlUzW
Important article

“The SolarWinds Perfect Storm: Default Password, Access Sales and More” https://t.co/a1xHU46nON via @threatpost
“Orion is a product with such market dominance that company CEO Kevin Thompson bragged on an October earnings call that “.....We manage everyone’s network gear.”
“In addition to its overall footprint, perhaps what made SolarWinds the most attractive vector for the attackers however is its sheer reach into customer networks.”
“access to the full network....Compromising SolarWinds makes sure an attacker does not have to worry about firewalls and other preventative security solutions.... It knows EVERYTHING on your network.”

- Marcus Hartwig, manager of security analytics, Vectra
“users of SolarWinds are IT/network admins with privileged access accounts”
“cybercriminals were spotted hawking access to SolarWinds’ infrastructure in underground forums, as far back as 2017”
“One of the access-dealers, they said, was the notorious Kazakh native known as ‘fxmsp’”
“German newspaper flagged the fact that SolarWinds has a support page advising users to disable antivirus scanning” (!) in Orion folders
“authorities have identified fxmsp as a 37-year-old Kazakhstan citizen named Andrey Turchin” https://t.co/TH0AnXfREl
“established backdoors to corporate networks and then sold them in cybercrime forums for thousands to hundreds of thousands of dollars”
“Think of almost any kind of company and there’s a good chance a prolific, financially-motivated hacker known as Fxmsp has broken into it, or attempted to” https://t.co/WpOWvufeHF
“starts by scanning for open Remote Desktop Protocol ports and then brute-forcing their way into networks. They then steal administrative credentials and modify antivirus software settings to make sure their malware remains undetected.” https://t.co/TH0AnXfREl
“sold backdoor access to hundreds of corporate networks in 44 countries via Russian-language underground forums” https://t.co/pRU52RSMy1
https://t.co/6Ex9IpsZPu
Remember the Equifax hack

https://t.co/m7yWUOxHFH
“On March 7, 2017, the Apache Software Foundation announced that some versions of its Apache Struts software had a vulnerability that could allow attackers to remotely execute code on a targeted web application.”

More from Dannielle (Dossy) Blumenthal PhD

What’s going on, open thread 12/19

https://t.co/jcUfxbzvRv


https://t.co/P06PsHzRyu

More from For later read

There is some valuable analysis in this report, but on the defense front this report is deeply flawed. There are other sections of value in report but, candidly, I don't think it helps us think through critical question of Taiwan defense issues in clear & well-grounded way. 1/


Normally as it might seem churlish to be so critical, but @cfr is so high-profile & the co-authors so distinguished I think it’s key to be clear. If not, people - including in Beijing - could get the wrong idea & this report could do real harm if influential on defense issues. 2/

BLUF: The defense discussion in this report does not engage at the depth needed to add to this critical debate. Accordingly conclusions in report are ill-founded - & in key parts harmful/misleading, esp that US shldnt be prepared defend Taiwan directly (alongside own efforts). 3/

The root of the problem is that report doesn't engage w the real debate on TWN defense issues or, frankly, the facts as knowable in public. Perhaps the most direct proof of this: The citations. There is nothing in the citations to @DeptofDefense China Military Power Report...4/

Nor to vast majority of leading informed sources on this like Ochmanek, the @RANDCorporation Scorecard, @CNAS, etc. This is esp salient b/c co-authors by their own admission have v little insight into contemporary military issues. & both last served in govt in Bush 43. 5/

You May Also Like

1/12

RT-PCR corona (test) scam

Symptomatic people are tested for one and only one respiratory virus. This means that other acute respiratory infections are reclassified as


2/12

It is tested exquisitely with a hypersensitive non-specific RT-PCR test / Ct >35 (>30 is nonsense, >35 is madness), without considering Ct and clinical context. This means that more acute respiratory infections are reclassified as


3/12

The Drosten RT-PCR test is fabricated in a way that each country and laboratory perform it differently at too high Ct and that the high rate of false positives increases massively due to cross-reaction with other (corona) viruses in the "flu


4/12

Even asymptomatic, previously called healthy, people are tested (en masse) in this way, although there is no epidemiologically relevant asymptomatic transmission. This means that even healthy people are declared as COVID


5/12

Deaths within 28 days after a positive RT-PCR test from whatever cause are designated as deaths WITH COVID. This means that other causes of death are reclassified as
Fake chats claiming to be from the Irish African community are being disseminated by the far right in order to suggest that violence is imminent from #BLM supporters. This is straight out of the QAnon and Proud Boys playbook. Spread the word. Protest safely. #georgenkencho


There is co-ordination across the far right in Ireland now to stir both left and right in the hopes of creating a race war. Think critically! Fascists see the tragic killing of #georgenkencho, the grief of his community and pending investigation as a flashpoint for action.


Across Telegram, Twitter and Facebook disinformation is being peddled on the back of these tragic events. From false photographs to the tactics ofwhite supremacy, the far right is clumsily trying to drive hate against minority groups and figureheads.


Declan Ganley’s Burkean group and the incel wing of National Party (Gearóid Murphy, Mick O’Keeffe & Co.) as well as all the usuals are concerted in their efforts to demonstrate their white supremacist cred. The quiet parts are today being said out loud.


The best thing you can do is challenge disinformation and report posts where engagement isn’t appropriate. Many of these are blatantly racist posts designed to drive recruitment to NP and other Nationalist groups. By all means protest but stay safe.