• Skip to main content
  • Skip to secondary menu
  • Skip to footer

Cybersecurity Market

Cybersecurity Technologies & Markets

  • Cybersecurity Events 2025-2026
  • Cybersecurity Jobs
  • Sponsored Post
    • Make a Contribution
  • Market Reports
  • About
    • GDPR
  • Contact

SolarWinds Releases Updates to Address Vulnerability Related to SUPERNOVA Malware

December 24, 2020 By admin

SolarWinds (NYSE:SWI), a leading provider of powerful and affordable IT management software, today announced it released updates in response to the SUPERNOVA malware for all supported versions of SolarWinds® Orion® Platform products and a fix for customers on unsupported versions of these products.

Third parties and the media have publicly reported on a malware, now referred to as SUPERNOVA. Based on SolarWinds’ investigation, this malware could be deployed through an exploitation of a vulnerability in the Orion Platform. Like other software companies, SolarWinds seeks to responsibly disclose vulnerabilities in its products to customers, while also mitigating the risk that bad actors seek to exploit those vulnerabilities, by releasing updates to their products before the company discloses the vulnerabilities.

SolarWinds provided two hotfix updates on December 14 and 15, 2020, that contained security enhancements, including those designed to prevent certain versions of the Orion Platform products from being exploited in a SUPERNOVA attack.

The company also released similar updates for all other supported versions of the Orion Platform products and a fix for customers on unsupported versions of these products.

SolarWinds recommends that all active maintenance customers of Orion Platform products, except those customers already on Orion Platform versions 2019.4 HF6 or 2020.2.1 HF2, apply the latest updates related to the version of the product they have deployed, as soon as possible. Customers can visit the SolarWinds Security Advisory page for instructions for and access to these updates.

These updates include versions:

2019.4 HF 6 (released on Dec 14, 2020)
2020.2.1 HF 2 (released on Dec 15, 2020)
2019.2 Security Patch (released on Dec 23, 2020)
2018.4 Security Patch (released on Dec 23, 2020)
2018.2 Security Patch (released on Dec 23, 2020)

If customers are unable to upgrade at this time, or are running a version prior to 2018.2, SolarWinds is providing a script that customers can quickly install to help protect their environment. The script is available on the Security Advisory page.

SolarWinds encourages customers to refer to the security best practices that are available on the SolarWinds Security Advisory page at www.solarwinds.com/securityadvisory and FAQ at www.solarwinds.com/securityadvisory/faq.

SolarWinds’ focus has been on helping customers protect the security of their environments. The company’s commitment to customers remains high, and they are introducing a new program designed to address the issues that customers face.

SolarWinds has developed a program to provide professional consulting resources experienced with the Orion Platform and products to assist customers who need guidance on or support upgrading to the latest hotfix updates. These consulting services will be provided at no charge to active maintenance Orion Platform product customers. The company wants to make sure that customers working to secure their environments have the help and assistance they need from knowledgeable resources.

The company intends to provide more information and details regarding this program next week on the Security Advisory page.

The company continues to work with leading security experts in our investigations to help further secure our products and internal systems.

About SolarWinds
SolarWinds (NYSE:SWI) is a leading provider of powerful and affordable IT management software. Our products give organizations worldwide—regardless of type, size, or complexity—the power to monitor and manage their IT services, infrastructures, and applications; whether on-premises, in the cloud, or via hybrid models. We continuously engage with technology professionals—IT service and operations professionals, DevOps professionals, and managed services providers (MSPs)—to understand the challenges they face in maintaining high-performing and highly available IT infrastructures and applications. The insights we gain from them, in places like our THWACK community, allow us to solve well-understood IT management challenges in the ways technology professionals want them solved. Our focus on the user and commitment to excellence in end-to-end hybrid IT management has established SolarWinds as a worldwide leader in solutions for network and IT service management, application performance, and managed services. Learn more today at www.solarwinds.com.

Filed Under: Cybersecurity Market

Footer

Recent Posts

  • Doppel Secures $35M in Series B Funding, Accelerating AI-Driven Social Engineering Defense
  • CHAOS Industries Secures $275 Million to Advance Next-Generation Defense Systems
  • University of California, Irvine Triumphs at 2025 National Collegiate Cyber Defense Championship
  • Terra Security Wins AWS, CrowdStrike, and NVIDIA Cybersecurity Startup Accelerator 2025
  • Link11 brings three brands together on one platform with new branding
  • SecAI Debuts at RSA 2025, Redefining Threat Investigation with AI
  • Veza Secures $108 Million in Series D Funding to Redefine Identity Security
  • Forescout and NVIDIA Integrate to Enhance Cybersecurity in Complex OT and IoT Environments
  • Court Dismisses Criminal Charges Against VPN Executive, Affirms No-Log Policy
  • Cybersecurity Luminary Phil Venables Joins Ballistic Ventures as Venture Partner

Media Partners

  • Technology Conferences
  • Technologies
  • Event Sharing Network
  • GameTech Market
  • OSINT
  • Event Calendar
  • Calendarial
  • Media Presser
  • 3V

Media Partners

  • App Coding
  • API Coding
  • Blockchaining
  • S3H
  • Press Club
  • VPNW
  • Opinion
  • Media Press Release
  • Defense Market

Copyright © 2022 CybersecurityMarket.com

Technologies, Market Analysis & Market Research