Microsoft
Disclosed Dec 31, 20205 years agoConfirmed
SolarWinds attackers view Microsoft source code repositories
Microsoft found malicious SolarWinds Orion code in its environment and later said the actor viewed files in some source code repositories and downloaded component code for small subsets of Azure, Intune and Exchange, with no access to production services or customer data found.
What is known
| People affected | Not stated in the sources we have |
|---|---|
| Disclosed | Dec 31, 2020 |
| Attack | Supply chain |
| Data exposed | Source code |
| Sector | Tech · US |
| Status | Confirmed |
| Part of | Solarwinds (2020) |
Sources
| Source | |
|---|---|
| Important steps for customers to protect themselves from recent nation-state cyberattacksblogs.microsoft.com · The organization | The organization |
| Microsoft Internal Solorigate Investigation Updateweb.archive.org · The organization | The organization |
| Microsoft Internal Solorigate Investigation: Final Updateweb.archive.org · The organization | The organization |
Notices filed
| Where | Filed | People |
|---|---|---|
| Researchtotal | Dec 31, 2020 |
Same campaign
Other breaches at Microsoft
History of this record
- 2026-09-25 · added · seed source
First seen 2026-09-25 (Research), confirmed by Research. Record counts are as reported. Not legal advice.