The FBI, National Security Agency, and the Department of Homeland Security's Cybersecurity and Infrastructure Security Agency (CISA) joined the United Kingdom's National Cyber Security Centre (NCSC) to provide more details on SVR activity, including the exploitation that followed the SolarWinds Orion software compromise, CISA officials write in an alert. CISA today also released a fact sheet on Russian SVR activities. "The group uses a variety of tools and techniques to predominantly target overseas governmental, diplomatic, think-tank, healthcare and energy targets globally for intelligence gain," the NCSC writes in the advisory. SVR has been seen leveraging publicly available exploits to target a range of vulnerabilities and "seeks to take full advantage of a variety of exploits when publicised," officials write. The flaws they target include the widely reported Microsoft Exchange Server vulnerabilities in addition to vulnerabilities affecting Cisco, Pulse Secure, VMware, Oracle WebLogic, Citrix, and Fortigate products.