Microsoft: We’ve open-sourced this tool we used to hunt for code by SolarWinds hackers>

Microsoft is open-sourcing the CodeQL queries that it used to investigate the impact of Sunburst or Solarigate malware planted in the SolarWinds Orion software updates, enabling other organizations to use the queries to perform a similar analysis. Mike Hanley, CSO of GitHub, says CodeQL provides, “key guardrails that help developers avoid incidents and shipping vulnerabilities”.LinuxSecurity – Security ArticlesRead More