{"id":922,"date":"2021-02-03T18:19:19","date_gmt":"2021-02-03T12:49:19","guid":{"rendered":"https:\/\/xiarch.com\/blog\/?p=922"},"modified":"2021-06-07T10:44:53","modified_gmt":"2021-06-07T05:14:53","slug":"us-federal-agency-got-hacked-using-solarwinds-software-attack","status":"publish","type":"post","link":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/","title":{"rendered":"US Federal Agency Got Hacked Using SolarWinds Software Attack!"},"content":{"rendered":"\n<p><p style=\"text-align: justify\">Federal Bureau of Investigation (FBI) discovered that the National Finance Center, an Untied States Department of Agriculture federal payroll agency got hacked by the SolarWinds backdoor attack.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify\">National Finance Center will provide the services of human resources and payroll to 170 federal agencies and about 650000 federal employees since 1973.<\/p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>What Occurs Accurately?<\/strong><\/h2>\n\n\n\n<p><p style=\"text-align: justify\">The USDA confirms that the vulnerability was founded in NFC\u2019s system which is different from the one that was used by the Russian nation-state hackers while compromising the update mechanism of Orion Software and execute the <a href=\"https:\/\/xiarch.com\/blog\/cyber-attack-sun-burst-backdoor\/\" target=\"_blank\" rel=\"noreferrer noopener\">Sunburst backdoor<\/a> attack on SolarWinds customer system.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify\">Both the security agencies the FBI and the USDA are not provided any information related to that data breach and what data is compromised, who is affected by it, and many more.<\/p><\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img decoding=\"async\" loading=\"lazy\" width=\"1024\" height=\"576\" src=\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/02\/US-Federal-Agency-Got-Hacked-Using-SolarWinds-Software-Attack-1024x576.png\" alt=\"US Federal Agency Got Hacked Using SolarWinds Software Attack\" class=\"wp-image-926\" srcset=\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/02\/US-Federal-Agency-Got-Hacked-Using-SolarWinds-Software-Attack-1024x576.png 1024w, https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/02\/US-Federal-Agency-Got-Hacked-Using-SolarWinds-Software-Attack-300x169.png 300w, https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/02\/US-Federal-Agency-Got-Hacked-Using-SolarWinds-Software-Attack-768x432.png 768w, https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/02\/US-Federal-Agency-Got-Hacked-Using-SolarWinds-Software-Attack.png 1200w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><\/div>\n\n\n\n<p><p style=\"text-align: justify\">Moreover, the USDA provided a statement that signifying that all the customers are notified whose data has been compromised by this data breach. After the investigation, the agencies are saying that the attackers behind these attacks are suspected to be part of a Chinese hacking group.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify\">Several experts also believed that the hacker behind this campaign is based out of China and they use the tools that were previously utilized in Chinese Counterattacks.<\/p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>How this Attached with Supernova?<\/strong><\/h2>\n\n\n\n<p><p style=\"text-align: justify\">After the investigation, the experts said that the attacker is from China but they use the same security bug that was made and deploy by <a href=\"https:\/\/xiarch.com\/blog\/another-backdoor-in-solarwinds-interface-supernova\/\" target=\"_blank\" rel=\"noreferrer noopener\">Supernova backdoor<\/a> on the system where the updates have been compromised.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify\">The vulnerability is the Solar-winds hack to be resolved and the investigation is still going on Sunburst and Supernova malware attack.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify\">Companies that haven\u2019t updated their system have used the scripts that were provided in the Solar-winds advisory that used to protect their system temporarily against the execution of the malware installed.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify\">In Supernova, attackers execute a DLL file that assists to establish a remote connection that is used to send, execute, compile various codes on the victim&#8217;s network.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify\">United States government also shares the list of targets that are affected by this attack.<\/p><\/p>\n\n\n\n<ul><li>U.S. Department of the Treasury<\/li><li>U.S. Department of State<\/li><li>U.S. National Telecommunications and Information Administration (NTIA)<\/li><li>U.S. Department of Energy (DOE)<\/li><li>The National Institutes of Health (NIH) (part of the U.S. Department of Health)<\/li><li>U.S. National Nuclear Security Administration (NNSA)<\/li><li>U.S. Department of Homeland Security (DHS)<\/li><\/ul>\n\n\n\n<p><p style=\"text-align: justify\">Along with that the Administrative Office of United States also disclosed an ongoing investigation of the federal court\u2019s cases of management and electronic case files system.<\/p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Federal Bureau of Investigation (FBI) discovered that the National Finance Center, an Untied States Department of Agriculture federal payroll agency got hacked by the SolarWinds backdoor attack. National Finance Center will provide the services of human resources and payroll to 170 federal agencies and about 650000 federal employees since 1973. What Occurs Accurately? The USDA [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":925,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[3],"tags":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v20.11 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>US Federal Agency Got Hacked Using SolarWinds Software Attack! - Xiarch Solutions Private Limited<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"US Federal Agency Got Hacked Using SolarWinds Software Attack! - Xiarch Solutions Private Limited\" \/>\n<meta property=\"og:description\" content=\"Federal Bureau of Investigation (FBI) discovered that the National Finance Center, an Untied States Department of Agriculture federal payroll agency got hacked by the SolarWinds backdoor attack. National Finance Center will provide the services of human resources and payroll to 170 federal agencies and about 650000 federal employees since 1973. What Occurs Accurately? The USDA [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/\" \/>\n<meta property=\"og:site_name\" content=\"Xiarch Solutions Private Limited\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/xiarch\/\" \/>\n<meta property=\"article:published_time\" content=\"2021-02-03T12:49:19+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-06-07T05:14:53+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/02\/ZimCore-Alliance.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"675\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Xiarch Security\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@xiarch\" \/>\n<meta name=\"twitter:site\" content=\"@xiarch\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Xiarch Security\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/\"},\"author\":{\"name\":\"Xiarch Security\",\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/person\/655d814a04eacce56942270cfdc5c59c\"},\"headline\":\"US Federal Agency Got Hacked Using SolarWinds Software Attack!\",\"datePublished\":\"2021-02-03T12:49:19+00:00\",\"dateModified\":\"2021-06-07T05:14:53+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/\"},\"wordCount\":424,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/xiarch.com\/blog\/#organization\"},\"articleSection\":[\"Consulting\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/\",\"url\":\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/\",\"name\":\"US Federal Agency Got Hacked Using SolarWinds Software Attack! - Xiarch Solutions Private Limited\",\"isPartOf\":{\"@id\":\"https:\/\/xiarch.com\/blog\/#website\"},\"datePublished\":\"2021-02-03T12:49:19+00:00\",\"dateModified\":\"2021-06-07T05:14:53+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/xiarch.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"US Federal Agency Got Hacked Using SolarWinds Software Attack!\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/xiarch.com\/blog\/#website\",\"url\":\"https:\/\/xiarch.com\/blog\/\",\"name\":\"Xiarch Solutions Private Limited\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/xiarch.com\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/xiarch.com\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/xiarch.com\/blog\/#organization\",\"name\":\"Xiarch\",\"url\":\"https:\/\/xiarch.com\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/06\/xi-logo-002.png\",\"contentUrl\":\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/06\/xi-logo-002.png\",\"width\":300,\"height\":300,\"caption\":\"Xiarch\"},\"image\":{\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/xiarch\/\",\"https:\/\/twitter.com\/xiarch\",\"https:\/\/www.linkedin.com\/company\/xiarch\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/person\/655d814a04eacce56942270cfdc5c59c\",\"name\":\"Xiarch Security\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/d33699ed91b76568586dc1ae278ea568?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/d33699ed91b76568586dc1ae278ea568?s=96&d=mm&r=g\",\"caption\":\"Xiarch Security\"},\"sameAs\":[\"https:\/\/xiarch.com\/blog\/\"],\"url\":\"https:\/\/xiarch.com\/blog\/author\/vector\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"US Federal Agency Got Hacked Using SolarWinds Software Attack! - Xiarch Solutions Private Limited","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/","og_locale":"en_US","og_type":"article","og_title":"US Federal Agency Got Hacked Using SolarWinds Software Attack! - Xiarch Solutions Private Limited","og_description":"Federal Bureau of Investigation (FBI) discovered that the National Finance Center, an Untied States Department of Agriculture federal payroll agency got hacked by the SolarWinds backdoor attack. National Finance Center will provide the services of human resources and payroll to 170 federal agencies and about 650000 federal employees since 1973. What Occurs Accurately? The USDA [&hellip;]","og_url":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/","og_site_name":"Xiarch Solutions Private Limited","article_publisher":"https:\/\/www.facebook.com\/xiarch\/","article_published_time":"2021-02-03T12:49:19+00:00","article_modified_time":"2021-06-07T05:14:53+00:00","og_image":[{"width":1200,"height":675,"url":"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/02\/ZimCore-Alliance.png","type":"image\/png"}],"author":"Xiarch Security","twitter_card":"summary_large_image","twitter_creator":"@xiarch","twitter_site":"@xiarch","twitter_misc":{"Written by":"Xiarch Security","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/#article","isPartOf":{"@id":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/"},"author":{"name":"Xiarch Security","@id":"https:\/\/xiarch.com\/blog\/#\/schema\/person\/655d814a04eacce56942270cfdc5c59c"},"headline":"US Federal Agency Got Hacked Using SolarWinds Software Attack!","datePublished":"2021-02-03T12:49:19+00:00","dateModified":"2021-06-07T05:14:53+00:00","mainEntityOfPage":{"@id":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/"},"wordCount":424,"commentCount":0,"publisher":{"@id":"https:\/\/xiarch.com\/blog\/#organization"},"articleSection":["Consulting"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/","url":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/","name":"US Federal Agency Got Hacked Using SolarWinds Software Attack! - Xiarch Solutions Private Limited","isPartOf":{"@id":"https:\/\/xiarch.com\/blog\/#website"},"datePublished":"2021-02-03T12:49:19+00:00","dateModified":"2021-06-07T05:14:53+00:00","breadcrumb":{"@id":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/xiarch.com\/blog\/us-federal-agency-got-hacked-using-solarwinds-software-attack\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/xiarch.com\/blog\/"},{"@type":"ListItem","position":2,"name":"US Federal Agency Got Hacked Using SolarWinds Software Attack!"}]},{"@type":"WebSite","@id":"https:\/\/xiarch.com\/blog\/#website","url":"https:\/\/xiarch.com\/blog\/","name":"Xiarch Solutions Private Limited","description":"","publisher":{"@id":"https:\/\/xiarch.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/xiarch.com\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/xiarch.com\/blog\/#organization","name":"Xiarch","url":"https:\/\/xiarch.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/xiarch.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/06\/xi-logo-002.png","contentUrl":"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/06\/xi-logo-002.png","width":300,"height":300,"caption":"Xiarch"},"image":{"@id":"https:\/\/xiarch.com\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/xiarch\/","https:\/\/twitter.com\/xiarch","https:\/\/www.linkedin.com\/company\/xiarch"]},{"@type":"Person","@id":"https:\/\/xiarch.com\/blog\/#\/schema\/person\/655d814a04eacce56942270cfdc5c59c","name":"Xiarch Security","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/xiarch.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/d33699ed91b76568586dc1ae278ea568?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d33699ed91b76568586dc1ae278ea568?s=96&d=mm&r=g","caption":"Xiarch Security"},"sameAs":["https:\/\/xiarch.com\/blog\/"],"url":"https:\/\/xiarch.com\/blog\/author\/vector\/"}]}},"_links":{"self":[{"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/posts\/922"}],"collection":[{"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/comments?post=922"}],"version-history":[{"count":3,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/posts\/922\/revisions"}],"predecessor-version":[{"id":928,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/posts\/922\/revisions\/928"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/media\/925"}],"wp:attachment":[{"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/media?parent=922"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/categories?post=922"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/tags?post=922"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}