logo

SonicWall pins firewall attack spree on year-old vulnerability

ID: 85c8a2d3-b332-5846-84b3-e1525c599e8c

STIX ID: report--85c8a2d3-b332-5846-84b3-e1525c599e8c

Feed Name: CyberScoop

Threat Score
72/100

Date Published: 2025-08-11

Date Updated: 2026-04-21

Author: Matt Kapko

...
...

SonicWall reported a series of ransomware attacks against Gen 7 firewalls that it attributes to CVE-2024-40766 (an improper access control flaw in SonicOS) rather than a new zero-day. Outside researchers and vendors (Arctic Wolf, Huntress, GuidePoint) observed Akira ransomware activity exploiting SonicWall SSL VPNs and noted some incidents involved recent Gen 6→Gen 7 migrations with unchanged configurations; SonicWall advises changing credentials and upgrading to SonicOS 7.3.0 to mitigate the issue.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.