CISA says SonicWall bug being exploited as experts warn of ransomware gang use
ID: 6b9b90d4-22f5-59a1-a98c-33585105f4c0
STIX ID: report--6b9b90d4-22f5-59a1-a98c-33585105f4c0
Feed Name: The Record from Recorded Future News
CISA and SonicWall warn that CVE-2024-40766 (CVSS 9.3) affecting SonicWall Gen5/Gen6 and Gen7 devices (SonicOS 7.0.1-5035 and older) is being actively exploited; SonicWall has released patches and federal agencies were ordered to apply them. Security firms observed the Akira ransomware group exploiting the flaw and using compromised local accounts (with MFA disabled) for initial access, leading to confirmed ransomware activity and urging restricted device exposure or immediate patching.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
