IT management and observability software provider SolarWinds has become the inaugural software provider to submit the Secure Software Development self-attestation as part of the U.S. government's overall plan to fortify the software supply chain.The event is particularly notable because SolarWinds was one of the first software companies that suffered from a software supply chain attack, first reported in December 2020. More information about the event and SolarWinds' response is here.The SolarWinds Orion security breach, a.k.a. SUNBURST, impacted numerous U.S. government agencies, business customers and consulting firms. Russian hackers allegedly weaponized SolarWinds Orion business software updates in order to distribute malware called SUNBURST. From there, the Russian hackers allegedly attacked multiple government, consulting, technology, telecom, and oil and gas companies in North America, Europe, Asia and the Middle East, FireEye said in a blog post and The Washington Post further reported.The SolarWinds self-attestation aligns with U.S. government requirements from the Cybersecurity and Infrastructure Security Agency (CISA) and the Office of Management and Budget (OMB), marking what the company calls a significant milestone in cybersecurity standards.
Supply chain, MSP, IT management, Event logging, Breach
SolarWinds First to Submit CISA Self-Attestation

(Adobe Stock)
You can skip this ad in 5 seconds