{"id":62802,"date":"2021-01-26T09:20:21","date_gmt":"2021-01-26T17:20:21","guid":{"rendered":"https:\/\/forescoutstage.wpengine.com\/?p=62802"},"modified":"2021-02-10T07:29:04","modified_gmt":"2021-02-10T15:29:04","slug":"forescouts-commitment-to-cybersecurity-update-on-solarwinds","status":"publish","type":"post","link":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/","title":{"rendered":"Forescout&#8217;s Commitment to CyberSecurity: Update on SolarWinds"},"content":{"rendered":"<p><strong><em>Updates:<\/em><\/strong><br \/><a href=\"#jan-26-update\"><em>January 26, 2021: Forescout has found no evidence of compromise by SuperNova or Raindrop<\/em><\/a><\/p>\n<p><a href=\"#jan-6-update\"><em>January 6, 2021: Forescout re-enables additional product downloads following thorough precautionary security review<\/em><\/a><\/p>\n<p><a href=\"#dec-24-update\"><em>December 24, 2020: Forescout re-enables product downloads following thorough precautionary security review<\/em><\/a><\/p>\n<p><a href=\"#dec-22-update\"><em>December 22, 2020: Updates available for Forescout&nbsp;eyeSight&nbsp;and&nbsp;eyeInspect&nbsp;to detect vulnerable&nbsp;software versions and SUNBURST malware.&nbsp;Additional mitigation best practices&nbsp;leveraging&nbsp;eyeSegment.<\/em><\/a><\/p>\n<p><a href=\"#dec-19-update\"><em>December 19, 2020: Forescout&nbsp;has&nbsp;temporarily disabled&nbsp;product downloads&nbsp;as a precautionary measure.<\/em><\/a><\/p>\n<p><strong class=\"red-text\">JANUARY 26 UPDATE<\/strong><\/p>\n<p>In light of recent public disclosures by <a href=\"https:\/\/symantec-enterprise-blogs.security.com\/blogs\/threat-intelligence\/solarwinds-raindrop-malware\" target=\"_blank\" rel=\"noopener\">Symantec<\/a> and other security agencies, we have conducted further investigations in this fluid and ongoing situation.<\/p>\n<p>Forescout has reviewed the recent disclosures around the additional vulnerabilities found in context of SolarWinds, named Raindrop and SuperNova. As previously stated, Forescout does not currently run any versions of SolarWinds Orion software.<\/p>\n<p>Prior to the SolarWinds revelations, Forescout previously ran SolarWinds version 2018.2 and 2016.1.5300, which may be vulnerable according to the SolarWinds security advisory. We conducted further investigations and analyzed our logs, backups and the potentially vulnerable SolarWinds files and found no evidence that Forescout has been compromised by SuperNova or Raindrop.<\/p>\n<p>We will continue to provide updates as the situation dictates.<\/p>\n<p><strong class=\"red-text\">JANUARY 6 UPDATE<\/strong><\/p>\n<p>Forescout recently disabled product downloads for Per-Appliance Licensing (PAL) customers from the Product Updates Portal in order to conduct a precautionary security review following the SolarWinds incident. Following the review and validation of our software delivery systems, Forescout is now re-enabling product downloads for PAL customers through the Forescout Customer Support Portal.<\/p>\n<p>PAL customers will have access to all product downloads starting from platform version 8.0 (CounterACT). Downloads for CounterACT version 7.0 are currently unavailable from the site. If you need to access these downloads, contact Forescout Customer Care.<\/p>\n<p>Our security teams continue to conduct precautionary security reviews in order to protect our customers. These reviews are being taken in an abundance of caution as Forescout does not currently use SolarWinds software\u202fand has never used the known affected versions of the SolarWinds products within our environment.<\/p>\n<p><strong class=\"red-text\">DECEMBER 24 UPDATE<\/strong><\/p>\n<p>After an extensive validation of the integrity of our product binaries and review of our software delivery chain, we are re-enabling product downloads from our Flexx customer entitlement portal. Other product download mechanisms will be enabled at a later phase.<\/p>\n<p id=\"jan-6-update\">\n<p>While we do not currently use SolarWinds software and have never used the affected versions in our environments, we felt this was a precautionary step we could take to validate our systems and protect our customers. We will continue to provide additional updates on this blog.<\/p>\n<p><strong class=\"red-text\">DECEMBER 22&nbsp;UPDATE<\/strong>&nbsp;<\/p>\n<p>Forescout&nbsp;has released&nbsp;updated policy templates and scripts&nbsp;to help customers detect&nbsp;vulnerable software versions and presence of SUNBURST malware.&nbsp;<\/p>\n<p><strong>eyeSight&nbsp;Security Policy Template&nbsp;for Vulnerability Detection<\/strong>&nbsp;<\/p>\n<p>Customers can&nbsp;now&nbsp;leverage&nbsp;a new&nbsp;Security Policy Template&nbsp;(SPT)&nbsp;dedicated to this issue, that&nbsp;evaluates&nbsp;Windows endpoints to&nbsp;identify&nbsp;vulnerable systems.&nbsp;To deploy this policy,&nbsp;customers can download SPT&nbsp;Module version 20.0.13&nbsp;<a href=\"https:\/\/forescout.my.salesforce.com\/sfc\/p\/i0000000XnVY\/a\/0H0000001Jlo\/VxhSuhvFipeBhzRfR8Tg0xAJDuHSnByz0Ft6vTXjt_o\">here<\/a>, the Help File&nbsp;<a href=\"https:\/\/forescout.my.salesforce.com\/sfc\/p\/i0000000XnVY\/a\/0H0000001Jlt\/XG9zfW_BgtaURXW2_Z2PXpA994H3HkbWGoKkXIYBzdg\">here<\/a>,&nbsp;and the Release Notes&nbsp;<a href=\"https:\/\/forescout.my.salesforce.com\/sfc\/p\/i0000000XnVY\/a\/0H0000001Jly\/9kO6_F1G3qm_fs17OibBR3bz0CbM8MdKJQdwkXZg_zg\">here<\/a>.&nbsp;<\/p>\n<p>This policy uses passive and\/or active inspection methods to evaluate endpoints.&nbsp;Vulnerability&nbsp;detection&nbsp;is&nbsp;based on the presence of &ldquo;SUNBURST&rdquo; malware and other suspicious SolarWinds applications and services, related open ports and other factors.&nbsp;This vulnerability is tracked as FireEye UNC2452. The&nbsp;SPT&nbsp;also detects CVE 2019-9546.&nbsp;See&nbsp;<a href=\"https:\/\/www.solarwindsmsp.com\/solarwinds-orion-security-advisory\">the full advisory here<\/a>.&nbsp;&nbsp;<\/p>\n<p>Recommendations&nbsp;for policy deployment:&nbsp;<\/p>\n<ul>\n<li>To allow detailed inspection of SolarWinds servers,&nbsp;we&nbsp;strongly recommend&nbsp;ensuring&nbsp;they&nbsp;can be&nbsp;managed&nbsp;using&nbsp;Remote Inspection&nbsp;or&nbsp;SecureConnector&nbsp;to&nbsp;run\u202fin-depth inspection<\/li>\n<li>As information about this exploit develops, modify&nbsp;your policies&nbsp;to search for other application installation locations.&nbsp;<\/li>\n<\/ul>\n<p>Endpoints evaluated as\u202f<em>Vulnerable<\/em>\u202for\u202f<em>Potentially Vulnerable<\/em>\u202fare labeled and assigned to\u202f<em>Malware<\/em><em>&nbsp;<\/em>sub-groups for further&nbsp;policy actions. In addition,&nbsp;the policy populates&nbsp;a set of&nbsp;new&nbsp;Inventory views:&nbsp;<\/p>\n<table width=\"627\">\n<tbody>\n<tr>\n<td width=\"274\">\n<p><strong>Vulnerable devices&nbsp;(SUNBURST<\/strong><strong>)<\/strong>&nbsp;<\/p>\n<\/td>\n<td width=\"352\">\n<p>Known&nbsp;SUNBURST&nbsp;malware components detected.&nbsp;<\/p>\n<\/td>\n<\/tr>\n<tr>\n<td width=\"274\">\n<p><strong>Vulnerable devices (other)<\/strong>&nbsp;<\/p>\n<\/td>\n<td width=\"352\">\n<p>Evidence of compromised SolarWinds components.&nbsp;<\/p>\n<\/td>\n<\/tr>\n<tr>\n<td width=\"274\">\n<p><strong>End of\u202fLife<\/strong>&nbsp;<\/p>\n<\/td>\n<td width=\"352\">\n<p>SolarWinds applications that are no longer supported were detected.\u202fThese builds are still vulnerable but may not be patched.&nbsp;<\/p>\n<\/td>\n<\/tr>\n<tr>\n<td width=\"274\">\n<p><strong>Potentially Vulnerable devices (by version)<\/strong>&nbsp;<\/p>\n<\/td>\n<td width=\"352\">\n<p>Vulnerable SolarWinds application builds detected.&nbsp;<\/p>\n<\/td>\n<\/tr>\n<tr>\n<td width=\"274\">\n<p><strong>Not Vulnerable<\/strong>&nbsp;<\/p>\n<\/td>\n<td width=\"352\">\n<p>Windows environment and\/or SolarWinds applications that are not vulnerable.&nbsp;<\/p>\n<p>Non-Windows endpoints are cleared to this group.&nbsp;<\/p>\n<\/td>\n<\/tr>\n<tr>\n<td width=\"274\">\n<p><strong>Potentially Vulnerable devices (high certainty)<\/strong>&nbsp;<\/p>\n<\/td>\n<td rowspan=\"2\" width=\"352\">\n<p>Open communication ports and\/or SolarWinds services associated with this exploit were detected.&nbsp;<\/p>\n<\/td>\n<\/tr>\n<tr>\n<td width=\"274\">\n<p><strong>Potentially Vulnerable devices (medium certainty)<\/strong>&nbsp;<\/p>\n<\/td>\n<\/tr>\n<tr>\n<td width=\"274\">\n<p><strong>Offline<\/strong>&nbsp;<\/p>\n<\/td>\n<td width=\"352\">\n<p>Endpoint not available for evaluation.&nbsp;<\/p>\n<\/td>\n<\/tr>\n<tr>\n<td width=\"274\">\n<p><strong>Other<\/strong>&nbsp;<\/p>\n<\/td>\n<td width=\"352\">\n<p>Endpoint could not be assigned to other groups, or vulnerability could not be evaluated.&nbsp;&nbsp;<\/p>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>Recommended&nbsp;remediation&nbsp;and risk mitigation&nbsp;actions:&nbsp;<\/p>\n<ul>\n<li>On endpoints with SolarWinds applications, install patches or hotfixes provided by SolarWinds and\/or upgrade to protected builds.&nbsp;<\/li>\n<li>Review endpoints with SolarWinds services or open ports associated with this exploit to see if these artifacts are legitimately present.&nbsp;<\/li>\n<li>Optional Virtual Firewall actions in the policy template can be enabled to provide an initial response upon detection.&nbsp;<\/li>\n<li>Customize&nbsp;your response with other&nbsp;eyeControl&nbsp;actions and&nbsp;eyeSegment&nbsp;policies.&nbsp;<\/li>\n<\/ul>\n<p><strong>Segmenting Vulnerable&nbsp;Assets with&nbsp;eyeSegment<\/strong>&nbsp;<\/p>\n<p>Segmentation&nbsp;can&nbsp;limit the risk&nbsp;of&nbsp;remote&nbsp;code&nbsp;execution,&nbsp;denial of&nbsp;service attacks, and exposure of sensitive information from this vulnerability.&nbsp;Forescout&nbsp;eyeSegment&nbsp;can visualize how the&nbsp;groups created in&nbsp;Forescout&nbsp;eyeSight&nbsp;(such as&nbsp;DB Admin, IP Camera, SolarWinds Orion)&nbsp;are communicating with each other.&nbsp;&nbsp;&nbsp;<\/p>\n<p>Administrators can then create policies&nbsp;by pivoting off&nbsp;production&nbsp;flows&nbsp;or following segmentation best practices&nbsp;such as:&nbsp;<\/p>\n<ul>\n<li>DB Admin can leverage SSH to connect to DB servers but not to other workstations&nbsp;<\/li>\n<li>IP Cameras can only communicate&nbsp;with&nbsp;an NVR and nothing else&nbsp;<\/li>\n<li>SolarWinds Orion can leverage RDP to workstations, but not to critical services&nbsp;<\/li>\n<\/ul>\n<p>eyeSegment&nbsp;example&nbsp;showing&nbsp;SolarWinds&nbsp;Orion communications with Active Directory:&nbsp;<\/p>\n<p>\n    <img decoding=\"async\" src=\"\/wp-content\/uploads\/2020\/12\/SolarWinds-Orion-communications-with-Active-Directory.png\" alt=\"SolarWinds Orion Communications With Active Directory\" \/>\n\n<p>Once&nbsp;eyeSegment&nbsp;policies&nbsp;are&nbsp;in place,&nbsp;they can be run in simulation\/monitoring mode&nbsp;to alert on violations, or&nbsp;enforcement&nbsp;mode&nbsp;by hardening ACLs,&nbsp;firewall rules, SGTs, etc.&nbsp;<\/p>\n<p><strong>Detecting SUNBURST Malware in OT Networks&nbsp;with&nbsp;eyeInspect&nbsp;(formerly&nbsp;SilentDefense)<\/strong>&nbsp;<\/p>\n<p>Forescout&nbsp;has released an&nbsp;eyeInspect&nbsp;script that detects the presence of the&nbsp;SUNBURST&nbsp;malware&nbsp;by&nbsp;monitoring&nbsp;network traffic.&nbsp;We&nbsp;recommend&nbsp;installing this&nbsp;on your sensors&nbsp;for improved malware detection.&nbsp;Capabilities include:&nbsp;&nbsp;<\/p>\n<ul>\n<li>Detection of the SUNBURST backdoor communications related to the SolarWinds supply chain cyberattack&nbsp;<\/li>\n<li>Detection of the Cobalt Strike Beacon communications related to the SolarWinds supply chain cyberattack&nbsp;<\/li>\n<\/ul>\n<p>Additionally, as part of&nbsp;regular and on-going updates&nbsp;to our Indicators of Compromise (IOC) database,&nbsp;we will&nbsp;be&nbsp;adding\u202fIOCs&nbsp;in our next update&nbsp;to detect SUNBURST threats scrutinizing multiple sources of information for maximum coverage.\u202feyeInspect&nbsp;can also automatically scan historical network logs to look for new SUNBURST&nbsp;IOCs&nbsp;utilizing the Forensic Time Machine function. This is recommended as looking at past logs can, in some cases,&nbsp;identify an attacker&rsquo;s post compromise activity to evade detection.<a name=\"dec-24-update\"><\/a><\/p>\n<p>To get the latest detection scripts, documentation&nbsp;and&nbsp;product&nbsp;updates, please contact&nbsp;<a href=\"https:\/\/www.forescout.com\/support\/get-support\/\">Forescout Customer Care<\/a>.&nbsp;&nbsp;<\/p>\n<p><strong class=\"red-text\">DECEMBER 19&nbsp;UPDATE<\/strong><\/p>\n<p>Given the widespread nature of the SolarWinds breach and complex software supply chains, Forescout is temporarily disabling product downloads from our customer portals. This action is being taken in an abundance of caution as Forescout does not currently use SolarWinds software\u202fand has never used the known affected versions of the SolarWinds products within our environment. Customers who need to urgently download product binaries should contact&nbsp;<a href=\"https:\/\/www.forescout.com\/support\/\">Forescout Customer Care<\/a>.<\/p>\n<p>On December 12, 2020, <a href=\"https:\/\/www.fireeye.com\/blog\/threat-research\/2020\/12\/evasive-attacker-leverages-solarwinds-supply-chain-compromises-with-sunburst-backdoor.html\" target=\"_blank\" rel=\"noopener noreferrer\">FireEye<\/a>&nbsp;detailed a sophisticated supply chain attack that used SolarWinds Orion business software (versions 2019.4 to 2020.2 HF1) released between March and June 2020 to compromise networks. Since then, the Department of Homeland Security has issued\u202f<a href=\"https:\/\/cyber.dhs.gov\/ed\/21-01\/\" target=\"_blank\" rel=\"noopener noreferrer\"> Emergency Directive 21-01<\/a>, informing agencies to take immediate action to mitigate this risk.<\/p>\n<p class=\"uncentered\"><strong>Our Commitment to Security<\/strong><\/p>\n<p>The event highlights the importance of our mission to help customers secure their most critical assets. A significant part of that is ensuring the highest level of cyber resilience and security for our products, corporate systems and customer data.<\/p>\n<p>Our Information Technology team has completed a thorough review of all Forescout systems. <strong>Forescout <\/strong><strong>does not currently use any SolarWinds software&nbsp;and has never used the known affected versions of the SolarWinds products within our environment.<\/strong><\/p>\n<p>Forescout\u2019s Security Incident Response Team (SIRT) is taking additional actions including, but not limited to:<\/p>\n<ul>\n<li>Verifying system hygiene to include patching for all 17 CVEs noted in the FireEye <a href=\"https:\/\/www.fireeye.com\/blog\/threat-research\/2020\/12\/evasive-attacker-leverages-solarwinds-supply-chain-compromises-with-sunburst-backdoor.html\" target=\"_blank\" rel=\"noopener noreferrer\">report<\/a><\/li>\n<li>Configuring our Information Security tools to scan for all Indicators of Compromise (IOCs) for this attack and investigating any possible IOCs<\/li>\n<li>Performing a gap analysis comparing new malware, tools and tactics against existing countermeasures and applying mitigation to gaps found<\/li>\n<li>Reviewing historical log data to look for any indicators based on new IOCs<\/li>\n<li>Performing an in-depth review of our\u202f<a href=\"\/company\/resources\/forescout-value-chain-overview\/\"> supply chain<\/a><\/li>\n<\/ul>\n<p>Forescout is continually testing, updating and monitoring our own networks to maximize our security posture. We employ Forescout products as part of this effort to gain the same real-time visibility and control of all connected things on our networks as our customers.<\/p>\n<p class=\"uncentered\"><strong>Protecting Your Network <\/strong><\/p>\n<p>While information about this attack is still emerging, Forescout customers can immediately begin to identify and address vulnerable versions of the SolarWinds software inside their environment.<\/p>\n<p>Forescout eyeSight discovers and classifies every device on your network and can help identify vulnerable, misbehaving and unauthorized devices. This includes identifying the known affected SolarWinds systems within your environment. Using Forescout, you can then isolate or contain the devices and apply immediate risk mitigation actions to limit your exposure.<\/p>\n<p>Existing Forescout customers can learn more about about how to use Forescout policies to identify at-risk SolarWinds systems via our <a href=\"\/support\/get-support\/\">customer support portal<\/a>.<a name=\"dec-19-update\"><\/a><\/p>\n<p class=\"uncentered\"><strong>Looking Ahead<\/strong><\/p>\n<p>Our IT security and threat research teams are continuing to monitor the situation closely. We will provide updates as the situation evolves and teams are available to answer any questions you might have.<a name=\"dec-22-update\"><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Updates:January 26, 2021: Forescout has found no evidence of compromise by SuperNova or Raindrop January 6, 2021: Forescout re-enables additional product downloads following thorough precautionary security review December 24, 2020: Forescout re-enables product downloads following thorough precautionary security review December 22, 2020: Updates available for Forescout&nbsp;eyeSight&nbsp;and&nbsp;eyeInspect&nbsp;to detect vulnerable&nbsp;software versions and SUNBURST malware.&nbsp;Additional mitigation best practices&nbsp;leveraging&nbsp;eyeSegment. [&hellip;]<\/p>\n","protected":false},"author":140,"featured_media":62843,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"ep_exclude_from_search":false,"footnotes":"","_links_to":"","_links_to_target":""},"categories":[562,540],"tags":[],"coauthors":[642],"class_list":["post-62802","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-views","category-research-and-cyber-alerts"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v25.8 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Forescout&#039;s Commitment to CyberSecurity: Update on SolarWinds - Forescout<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Forescout&#039;s Commitment to CyberSecurity: Update on SolarWinds - Forescout\" \/>\n<meta property=\"og:description\" content=\"Updates:January 26, 2021: Forescout has found no evidence of compromise by SuperNova or Raindrop January 6, 2021: Forescout re-enables additional product downloads following thorough precautionary security review December 24, 2020: Forescout re-enables product downloads following thorough precautionary security review December 22, 2020: Updates available for Forescout&nbsp;eyeSight&nbsp;and&nbsp;eyeInspect&nbsp;to detect vulnerable&nbsp;software versions and SUNBURST malware.&nbsp;Additional mitigation best practices&nbsp;leveraging&nbsp;eyeSegment. [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/\" \/>\n<meta property=\"og:site_name\" content=\"Forescout\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/ForescoutTechnologies\" \/>\n<meta property=\"article:published_time\" content=\"2021-01-26T17:20:21+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-02-10T15:29:04+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"561\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Azeem Nizam\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Forescout\" \/>\n<meta name=\"twitter:site\" content=\"@Forescout\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"9 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/\"},\"author\":{\"name\":\"Azeem Nizam\",\"@id\":\"https:\/\/www.forescout.com\/#\/schema\/person\/63ff7fd8c5cc2182c3258d80d3e59ac5\"},\"headline\":\"Forescout&#8217;s Commitment to CyberSecurity: Update on SolarWinds\",\"datePublished\":\"2021-01-26T17:20:21+00:00\",\"dateModified\":\"2021-02-10T15:29:04+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/\"},\"wordCount\":1775,\"publisher\":{\"@id\":\"https:\/\/www.forescout.com\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png\",\"articleSection\":[\"News &amp; Views\",\"Research &amp; Cyber Alerts\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/\",\"url\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/\",\"name\":\"Forescout's Commitment to CyberSecurity: Update on SolarWinds - Forescout\",\"isPartOf\":{\"@id\":\"https:\/\/www.forescout.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png\",\"datePublished\":\"2021-01-26T17:20:21+00:00\",\"dateModified\":\"2021-02-10T15:29:04+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#primaryimage\",\"url\":\"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png\",\"contentUrl\":\"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png\",\"width\":1024,\"height\":561,\"caption\":\"SolarWinds Blog\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.forescout.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Forescout&#8217;s Commitment to CyberSecurity: Update on SolarWinds\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.forescout.com\/#website\",\"url\":\"https:\/\/www.forescout.com\/\",\"name\":\"Forescout\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/www.forescout.com\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.forescout.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.forescout.com\/#organization\",\"name\":\"Forescout Technologies, Inc.\",\"url\":\"https:\/\/www.forescout.com\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.forescout.com\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.forescout.com\/wp-content\/uploads\/2019\/01\/forescout-logo.svg\",\"contentUrl\":\"https:\/\/www.forescout.com\/wp-content\/uploads\/2019\/01\/forescout-logo.svg\",\"width\":1,\"height\":1,\"caption\":\"Forescout Technologies, Inc.\"},\"image\":{\"@id\":\"https:\/\/www.forescout.com\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/ForescoutTechnologies\",\"https:\/\/x.com\/Forescout\",\"https:\/\/www.instagram.com\/forescouttechnologies\/\",\"https:\/\/www.linkedin.com\/company\/forescout-technologies\",\"https:\/\/www.youtube.com\/user\/forescout1\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.forescout.com\/#\/schema\/person\/63ff7fd8c5cc2182c3258d80d3e59ac5\",\"name\":\"Azeem Nizam\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.forescout.com\/#\/schema\/person\/image\/8cfdd2a87b2345b1a8ed302cf9bd68b1\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/3a888d3c48c8437c61aac8f1aa9172fc696cd7921e9ff124e966616d12358704?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/3a888d3c48c8437c61aac8f1aa9172fc696cd7921e9ff124e966616d12358704?s=96&d=mm&r=g\",\"caption\":\"Azeem Nizam\"},\"sameAs\":[\"https:\/\/www.forescout.com\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Forescout's Commitment to CyberSecurity: Update on SolarWinds - Forescout","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/","og_locale":"en_US","og_type":"article","og_title":"Forescout's Commitment to CyberSecurity: Update on SolarWinds - Forescout","og_description":"Updates:January 26, 2021: Forescout has found no evidence of compromise by SuperNova or Raindrop January 6, 2021: Forescout re-enables additional product downloads following thorough precautionary security review December 24, 2020: Forescout re-enables product downloads following thorough precautionary security review December 22, 2020: Updates available for Forescout&nbsp;eyeSight&nbsp;and&nbsp;eyeInspect&nbsp;to detect vulnerable&nbsp;software versions and SUNBURST malware.&nbsp;Additional mitigation best practices&nbsp;leveraging&nbsp;eyeSegment. [&hellip;]","og_url":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/","og_site_name":"Forescout","article_publisher":"https:\/\/www.facebook.com\/ForescoutTechnologies","article_published_time":"2021-01-26T17:20:21+00:00","article_modified_time":"2021-02-10T15:29:04+00:00","og_image":[{"width":1024,"height":561,"url":"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png","type":"image\/png"}],"author":"Azeem Nizam","twitter_card":"summary_large_image","twitter_creator":"@Forescout","twitter_site":"@Forescout","twitter_misc":{"Est. reading time":"9 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#article","isPartOf":{"@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/"},"author":{"name":"Azeem Nizam","@id":"https:\/\/www.forescout.com\/#\/schema\/person\/63ff7fd8c5cc2182c3258d80d3e59ac5"},"headline":"Forescout&#8217;s Commitment to CyberSecurity: Update on SolarWinds","datePublished":"2021-01-26T17:20:21+00:00","dateModified":"2021-02-10T15:29:04+00:00","mainEntityOfPage":{"@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/"},"wordCount":1775,"publisher":{"@id":"https:\/\/www.forescout.com\/#organization"},"image":{"@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#primaryimage"},"thumbnailUrl":"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png","articleSection":["News &amp; Views","Research &amp; Cyber Alerts"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/","url":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/","name":"Forescout's Commitment to CyberSecurity: Update on SolarWinds - Forescout","isPartOf":{"@id":"https:\/\/www.forescout.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#primaryimage"},"image":{"@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#primaryimage"},"thumbnailUrl":"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png","datePublished":"2021-01-26T17:20:21+00:00","dateModified":"2021-02-10T15:29:04+00:00","breadcrumb":{"@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#primaryimage","url":"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png","contentUrl":"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png","width":1024,"height":561,"caption":"SolarWinds Blog"},{"@type":"BreadcrumbList","@id":"https:\/\/www.forescout.com\/blog\/forescouts-commitment-to-cybersecurity-update-on-solarwinds\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.forescout.com\/"},{"@type":"ListItem","position":2,"name":"Forescout&#8217;s Commitment to CyberSecurity: Update on SolarWinds"}]},{"@type":"WebSite","@id":"https:\/\/www.forescout.com\/#website","url":"https:\/\/www.forescout.com\/","name":"Forescout","description":"","publisher":{"@id":"https:\/\/www.forescout.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.forescout.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.forescout.com\/#organization","name":"Forescout Technologies, Inc.","url":"https:\/\/www.forescout.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.forescout.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.forescout.com\/wp-content\/uploads\/2019\/01\/forescout-logo.svg","contentUrl":"https:\/\/www.forescout.com\/wp-content\/uploads\/2019\/01\/forescout-logo.svg","width":1,"height":1,"caption":"Forescout Technologies, Inc."},"image":{"@id":"https:\/\/www.forescout.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/ForescoutTechnologies","https:\/\/x.com\/Forescout","https:\/\/www.instagram.com\/forescouttechnologies\/","https:\/\/www.linkedin.com\/company\/forescout-technologies","https:\/\/www.youtube.com\/user\/forescout1"]},{"@type":"Person","@id":"https:\/\/www.forescout.com\/#\/schema\/person\/63ff7fd8c5cc2182c3258d80d3e59ac5","name":"Azeem Nizam","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.forescout.com\/#\/schema\/person\/image\/8cfdd2a87b2345b1a8ed302cf9bd68b1","url":"https:\/\/secure.gravatar.com\/avatar\/3a888d3c48c8437c61aac8f1aa9172fc696cd7921e9ff124e966616d12358704?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/3a888d3c48c8437c61aac8f1aa9172fc696cd7921e9ff124e966616d12358704?s=96&d=mm&r=g","caption":"Azeem Nizam"},"sameAs":["https:\/\/www.forescout.com"]}]}},"featured_media_url":"https:\/\/www.forescout.com\/wp-content\/uploads\/2020\/12\/SolarWinds-Blog.png","is_file":false,"excerpt_manually_set":false,"_links":{"self":[{"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/posts\/62802","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/users\/140"}],"replies":[{"embeddable":true,"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/comments?post=62802"}],"version-history":[{"count":0,"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/posts\/62802\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/media\/62843"}],"wp:attachment":[{"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/media?parent=62802"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/categories?post=62802"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/tags?post=62802"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/www.forescout.com\/wp-json\/wp\/v2\/coauthors?post=62802"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}