CISA issues warning on exploited VPN flaw -- Defense Systems
By Justin Katz Apr 27, 2021 A Chinese hacking campaign is using known flaws in a virtual private network application to breach entity networks and implant the malware security researchers dubbed SUPERNOVA, the Cybersecurity and Infrastructure Security Agency said April 22. While similar to the recent attack attributed to Russian foreign intelligence, "CISA assesses this is a separate actor than the APT actor responsible for the SolarWinds supply chain compromise described in" previous alerts, a...
Solarwinds Orion Justin Katz Infrastructure Security Agency Authentication Management Program Pulse Secure Pulse Connect Secure
Source: defensesystems.com