SonicWall pins firewall attack spree on year-old vulnerability
ID: 85c8a2d3-b332-5846-84b3-e1525c599e8c
STIX ID: report--85c8a2d3-b332-5846-84b3-e1525c599e8c
Feed Name: CyberScoop
SonicWall reported a series of ransomware attacks against Gen 7 firewalls that it attributes to CVE-2024-40766 (an improper access control flaw in SonicOS) rather than a new zero-day. Outside researchers and vendors (Arctic Wolf, Huntress, GuidePoint) observed Akira ransomware activity exploiting SonicWall SSL VPNs and noted some incidents involved recent Gen 6→Gen 7 migrations with unchanged configurations; SonicWall advises changing credentials and upgrading to SonicOS 7.3.0 to mitigate the issue.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
