
SAS was one of the companies affected by the extensive hacker attack against the American IT company Solarwinds last year, writes Dagens Næringsliv. However, no information has been stolen, the security manager assures.
SAS first received information about the incident on December 13 last year, according to the airline's head of security, Thomas Widén.
The company had installed a malicious version of the Orion software, developed by the American IT company Solarwinds. The hackers thus gained access to a so-called backdoor into SAS's systems that allowed the attackers to steal large amounts of information.
However, the airline has no information that the back door has been used.
”"The backdoor we found after the Solarwinds attack is closed. But we continue to look for other backdoors. This time the hackers tried to get in through Solarwinds, next time it will be through someone else. We just have to keep looking. And hopefully we won't find anything," Thomas Widén tells Dagens Næringsliv.
Last December, US authorities confirmed that a large-scale hacker attack was underway against large companies and organizations. The hackers are believed to have exploited malicious code in connection with an automatic update of Solarwind's Orion platform. In connection with this, the Swedish Civil Contingencies Agency, MSB, urged Swedish companies that used the platform to take immediate action to close the security gap.
The attack is believed to have been ongoing since March last year when the software was updated. Construction giant Skanska was warned when the company downloaded the malware and escaped serious intervention.
Previously, SVT Nyheter reported that AB Volvo and the state-owned Swedish Space Agency downloaded the current update without any data being stolen. The Norwegian Petroleum Fund has also been affected, writes Dagens Næringsliv.
Source: di.se







