● SYSTEM ONLINE Thursday August 20, 2026 00:00:00.00
// LOG INTERCEPT: "we love buzzwords in cybersecurity. every few months the industry discovers a new shiny acronym,..."// LOG INTERCEPT: "The Problem Is Not The Worker/Employee One time I discussed this matter in depth: Because..."// LOG INTERCEPT: "I have spent years watching organizations waste thousands of hours on vendor security assessments that..."// LOG INTERCEPT: "Regardless of how SIEM in today’s cybersecurity marketing campaign is driven mainly by Compliance, which..."// LOG INTERCEPT: "You probably think they are the same thing. They are not. And if you are..."

SolarWinds hack: what just happened?

Solarigate, Sunbusrt, UNC2452 or whatever they call it, how even fireEye, SolarWinds, Crowdstrike and many other involved are able to sell and survive after this disaster, and how security community is able to trust them again?

it is interesting that how these top security companies with lots of managed service and bunch of products in their portfolio lectured everybody and then for 9+ months they did not figure out that they had been hacked?!

I don’t care if SolarWinds share holders knew so they cashed out their stock a few days prior to breaking the news, as some media are talking about it, but about the hack and its technicality I have opinion: it is not sophisticated, and it is simply a matter of understanding essentials of supply chain security and exposures and executing standard security practices.

of course they say the hack was sophisticated because top security firms don’t want to admit they were naive in Detection & Response. let’s be result oriented.