Why ‘Firewall’ Your Core Servers? Zero Trust and Defense in Depth in Action

Posted on by Dean Lombardo

Zero trust principles shouldn’t only be applied to the untrusted internet and traffic from the web. The security perimeter—no matter how dynamic—isn’t foolproof and can be breached and bad actors can get inside in a number of ways. Be able to stop a threat that has already penetrated your core by filtering east-to-west traffic and […]

Lessons (and Defenses) Learned From the SolarWinds ‘Sunburst/Dark Halo’ Hack)

Posted on by Casey Priester

The widely reported December 2020 hack of the SolarWinds Orion network performance monitoring system employed a sophisticated series of takeover steps that included backdoors, expired domains, the use of Orion itself as a vector, compromised credentials, and malware implants, all to steal data and compromise systems. The attack, referred to as Sunburst, Sunburst Backdoor, and […]