{"id":39719,"date":"2021-02-24T14:30:55","date_gmt":"2021-02-24T14:30:55","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/32052\/SolarWinds-Hack-Was-The-Work-Of-At-Least-1-000-Engineers-Tech-Execs-Tell-Senate.html"},"modified":"2021-02-24T14:30:55","modified_gmt":"2021-02-24T14:30:55","slug":"solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/","title":{"rendered":"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate"},"content":{"rendered":"<p class=\"css-38z03z\">Tech executives revealed that a historic cybersecurity breach that affected about 100 US companies and nine federal agencies was larger and more sophisticated than previously known.<\/p>\n<p class=\"css-38z03z\">The revelations came during a hearing of the US Senate\u2019s select committee on intelligence on Tuesday on last year\u2019s hack of SolarWinds, a Texas-based software company. Using SolarWinds and <a href=\"https:\/\/www.theguardian.com\/technology\/microsoft\" data-component=\"auto-linked-tag\" data-link-name=\"in body link\">Microsoft<\/a> programs, hackers believed to be working for Russia were able to infiltrate the companies and government agencies. Servers run by Amazon were also used in the cyber-attack, but that company declined to send representatives to the hearing.<\/p>\n<p class=\"css-38z03z\">Representatives from the impacted firms, including SolarWinds, Microsoft, and the cybersecurity firms FireEye Inc and CrowdStrike Holdings, told senators that the true scope of the intrusions is still unknown, because most victims are not legally required to disclose attacks unless they involve sensitive information about individuals. But they described an operation of stunning size.<\/p>\n<p class=\"css-38z03z\">Brad Smith, the Microsoft president, said its researchers believed \u201cat least 1,000 very skilled, very capable engineers\u201d worked on the SolarWinds hack. \u201cThis is the largest and most sophisticated sort of operation that we have seen,\u201d Smith told senators.<\/p>\n<p class=\"css-38z03z\">Smith said the hacking operation\u2019s success was due to its ability to penetrate systems through routine processes. SolarWinds functions as a network monitoring software, working deep in the infrastructure of information technology systems to identify and patch problems, and provides an essential service for companies around the world. <\/p>\n<p class=\"css-38z03z\">\u201cThe world relies on the patching and updating of software for everything,\u201d Smith said. \u201cTo disrupt or tamper with that kind of software is to in effect tamper with the digital equivalent of our public health service. It puts the entire world at greater risk.\u201d<\/p>\n<p class=\"css-38z03z\">\u201cIt\u2019s a little bit like a burglar who wants to break into a single apartment but manages to turn off the alarm system for every home and every building in the entire city,\u201d he added. \u201cEverybody\u2019s safety is put at risk. That is what we\u2019re grappling with here.\u201d<\/p>\n<p class=\"css-38z03z\">Smith said many techniques used by the hackers have not come to light and that the attacker might have used up to a dozen different means of getting into victim networks during the past year.<\/p>\n<aside class=\"css-1kl3axy\"><span class=\"css-h3y4hc\"><svg width=\"70\" height=\"49\" viewBox=\"0 0 35 25\" class=\"css-u6yq9m\" data-testid=\"quote-icon\"><path d=\"M69.587.9c-1.842 15.556-3.89 31.316-4.708 48.1H37.043c3.07-16.784 8.391-32.544 17.602-48.1h14.942zM32.949.9c-2.047 15.556-4.094 31.316-4.912 48.1H.2C3.066 32.216 8.592 16.456 17.598.9h15.35z\" \/><\/svg><\/span><\/p>\n<blockquote class=\"css-6n7j50\"><p>This is the largest and most sophisticated sort of operation that we have seen<\/p><\/blockquote>\n<footer><cite>Brad Smith<\/cite><\/footer>\n<\/aside>\n<p class=\"css-38z03z\">Microsoft disclosed last week that the hackers had been able to read the company\u2019s closely guarded source code for how its programs authenticate users. At many of the victims, the hackers manipulated those programs to access new areas inside their targets.<\/p>\n<p class=\"css-38z03z\">Smith stressed that such movement was not due to programming errors on Microsoft\u2019s part but on poor configurations and other controls on the customer\u2019s part, including cases \u201cwhere the keys to the safe and the car were left out in the open\u201d.<\/p>\n<p class=\"css-38z03z\">George Kurtz, the CrowdStrike chief executive, explained that in the case of his company, hackers used a third-party vendor of Microsoft software, which had access to CrowdStrike systems, and tried but failed to get into the company\u2019s email. Kurtz turned the blame on Microsoft for its complicated architecture, which he called \u201cantiquated\u201d.<\/p>\n<p class=\"css-38z03z\">\u201cThe threat actor took advantage of systemic weaknesses in the Windows authentication architecture, allowing it to move laterally within the network\u201d and reach the cloud environment while bypassing multifactor authentication, Kurtz said.<\/p>\n<p class=\"css-38z03z\">Where Smith appealed for government help in providing remedial instruction for cloud users, Kurtz said Microsoft should look to its own house and fix problems with its widely used Active Directory and Azure.<\/p>\n<figure class=\"css-10khgmf\">\n<div class=\"css-1nfcn93\"><picture itemprop=\"contentUrl\"><source srcset=\"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=620&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=1a26314db8bee0e95122ea37aae03497 1240w, https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=605&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=5124e46bea784c9cd6dead0d35132d33 1210w, https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de 890w\" sizes=\"(min-width: 660px) 620px, 100vw\" media=\"(-webkit-min-device-pixel-ratio: 1.25), (min-resolution: 120dpi)\"><source srcset=\"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=620&amp;quality=85&amp;auto=format&amp;fit=max&amp;s=1388ef4b0972a834d8e0d84d4463f4e6 620w, https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=605&amp;quality=85&amp;auto=format&amp;fit=max&amp;s=1bfdff8a9586286bedc2d4f02bb99c2a 605w, https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=85&amp;auto=format&amp;fit=max&amp;s=a53f33205336810ce30b96203a78603a 445w\" sizes=\"(min-width: 660px) 620px, 100vw\"><img decoding=\"async\" alt=\"Ben Sasse questions witnesses during a Senate intelligence committee hearing on Capitol Hill.\" src=\"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de\" height=\"2101\" width=\"3500\" loading=\"lazy\" class=\"css-uk6cul\"><\/picture><\/div><figcaption class=\"css-xe26t6\"><span class=\"css-1amgqzt\"><svg width=\"11\" height=\"10\" viewBox=\"0 0 11 10\"><path fill-rule=\"evenodd\" d=\"M5.5 0L11 10H0z\" \/><\/svg><\/span><span class=\"css-19x4pdv\">Ben Sasse questions witnesses during a Senate intelligence committee hearing on Capitol Hill.<\/span> Photograph: Reuters<\/figcaption><\/figure>\n<p class=\"css-38z03z\">\u201cShould Microsoft address the authentication architecture limitations around Active Directory and Azure Active Directory, or shift to a different methodology entirely, a considerable threat vector would be completely eliminated from one of the world*s most widely used authentication platforms,\u201d Kurtz said.<\/p>\n<p class=\"css-38z03z\">The executives argued for greater transparency and information-sharing about breaches, with liability protections and a system that does not punish those who come forward, similar to airline disaster investigations.<\/p>\n<p class=\"css-38z03z\">\u201cIt\u2019s imperative for the nation that we encourage and sometimes even require better information-sharing about cyber-attacks,\u201d Smith said.<\/p>\n<p class=\"css-38z03z\">Lawmakers spoke with the executives about how threat intelligence can be more easily and confidentially shared among competitors and lawmakers to prevent large hacks like this in the future. They also discussed what kinds of repercussion nation-state sponsored hacks warrant. The Biden administration is rumored to be considering sanctions against Russia over the hack, <a href=\"https:\/\/www.washingtonpost.com\/national-security\/biden-russia-sanctions-solarwinds-hacks\/2021\/02\/23\/b77039d6-71fa-11eb-85fa-e0ccb3660358_story.html\" data-link-name=\"in body link\">according to a Washington Post report<\/a>.<\/p>\n<p class=\"css-38z03z\">\u201cThis could have been exponentially worse and we need to recognize the seriousness of that,\u201d said Senator Mark Warner of Virginia. \u201cWe can\u2019t default to security fatalism. We\u2019ve got to at least raise the cost for our adversaries.\u201d<\/p>\n<p class=\"css-38z03z\">Lawmakers berated Amazon for not appearing at the hearing, threatening to compel the company to testify at subsequent panels.<\/p>\n<p class=\"css-38z03z\">\u201cI think [Amazon has] an obligation to cooperate with this inquiry, and I hope they will voluntarily do so,\u201d said Senator Susan Collins, a Republican. \u201cIf they don\u2019t, I think we should look at next steps.\u201d<\/p>\n<p class=\"css-38z03z\"><em>Reuters contributed to this report.<\/em><\/p>\n<p>READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/32052\/SolarWinds-Hack-Was-The-Work-Of-At-Least-1-000-Engineers-Tech-Execs-Tell-Senate.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[277],"tags":[9221],"class_list":["post-39719","post","type-post","status-publish","format-standard","hentry","category-cybersecurity-blogs","tag-headlinehackergovernmentmicrosoftusadata-losscyberwar"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2021-02-24T14:30:55+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate\",\"datePublished\":\"2021-02-24T14:30:55+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/\"},\"wordCount\":868,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/i.guim.co.uk\\\/img\\\/media\\\/6b10407283f30c519b2eabc04b1cf37a77814622\\\/0_116_3500_2101\\\/master\\\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de\",\"keywords\":[\"headline,hacker,government,microsoft,usa,data loss,cyberwar\"],\"articleSection\":[\"CyberSecurity Blogs\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/\",\"name\":\"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/i.guim.co.uk\\\/img\\\/media\\\/6b10407283f30c519b2eabc04b1cf37a77814622\\\/0_116_3500_2101\\\/master\\\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de\",\"datePublished\":\"2021-02-24T14:30:55+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/#primaryimage\",\"url\":\"https:\\\/\\\/i.guim.co.uk\\\/img\\\/media\\\/6b10407283f30c519b2eabc04b1cf37a77814622\\\/0_116_3500_2101\\\/master\\\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de\",\"contentUrl\":\"https:\\\/\\\/i.guim.co.uk\\\/img\\\/media\\\/6b10407283f30c519b2eabc04b1cf37a77814622\\\/0_116_3500_2101\\\/master\\\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,hacker,government,microsoft,usa,data loss,cyberwar\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlinehackergovernmentmicrosoftusadata-losscyberwar\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/","og_locale":"en_US","og_type":"article","og_title":"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2021-02-24T14:30:55+00:00","og_image":[{"url":"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate","datePublished":"2021-02-24T14:30:55+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/"},"wordCount":868,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/#primaryimage"},"thumbnailUrl":"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de","keywords":["headline,hacker,government,microsoft,usa,data loss,cyberwar"],"articleSection":["CyberSecurity Blogs"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/","url":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/","name":"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/#primaryimage"},"thumbnailUrl":"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de","datePublished":"2021-02-24T14:30:55+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/#primaryimage","url":"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de","contentUrl":"https:\/\/i.guim.co.uk\/img\/media\/6b10407283f30c519b2eabc04b1cf37a77814622\/0_116_3500_2101\/master\/3500.jpg?width=445&amp;quality=45&amp;auto=format&amp;fit=max&amp;dpr=2&amp;s=b8adcc5b3f37a20f0969e889ee86b1de"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/solarwinds-hack-was-the-work-of-at-least-1000-engineers-tech-execs-tell-senate\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,hacker,government,microsoft,usa,data loss,cyberwar","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlinehackergovernmentmicrosoftusadata-losscyberwar\/"},{"@type":"ListItem","position":3,"name":"SolarWinds Hack Was The Work Of At Least 1,000 Engineers, Tech Execs Tell Senate"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/39719","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=39719"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/39719\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=39719"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=39719"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=39719"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}