In December 2020, the U.S. National Security Agency (NSA) disclosed a critical vulnerability in SolarWinds Orion network management software. This "zero-day" flaw could be exploited by an attacker to gain full control of an affected system. The NSA released a security advisory with mitigation recommendations. SolarWinds has also released a security update to address the vulnerability.

SolarWinds is a leading provider of IT management software. Recently, the company was in the news for a zeroday vulnerability that was exploited by the NSA. This article will provide an overview of the SolarWinds zeroday and what it means for IT security.

In December 2020, the United States National Security Agency (NSA) released a report detailing a previously undiscovered security vulnerability in the SolarWinds Orion product. This “zero-day” vulnerability allowed attackers to gain access to and manipulate SolarWinds’ network management software, which is used by hundreds of thousands of organizations around the world.

