News
NPCC

NPCC Security Bulletin

Security Bulletin

NPCC is publishing this compliance bulletin to engage and inform NPCC entities on aspects of Bulk Power System security, reliability, and compliance

SolarWinds Security Advisory

On December 14, 2020 SolarWinds Issued a Security Advisory concerning some of their products. Entities that have deployed SolarWinds products in their environments should:

  1. Review DHS CISA Emergency Directive 21-01.
  2. Assess their SolarWinds systems to see if the vulnerability is applicable.
  3. Assess and deploy patches per the entity patching procedure.
  4. Review logs to see if the vulnerability was exploited and report if necessary.

Currently, known victims of this supply chain attack are the US Treasury, Commerce Department, US NTIA, and FireEye.

View attachmentView attachment
Previous Article
Next Article

NPCC is dedicated to the continued reliability of the bulk power system in Northeastern North America