logo

Arctic Wolf Observes Authentication Bypass Exploitation Attempts Targeting SonicWall Firewalls (CVE-2024-53704)

ID: d4bace34-4923-530b-b768-4102029c1ca8

STIX ID: report--d4bace34-4923-530b-b768-4102029c1ca8

Feed Name: Arctic Wolf

Threat Score
80/100

Date Published: 2025-02-13

Date Updated: 2026-07-26

Author: Andres Ramos

...
...

Arctic Wolf reports that public PoC code for CVE-2024-53704 — an authentication bypass in SonicOS SSLVPN — was published and exploitation attempts were observed; the flaw can bypass MFA, disclose sensitive information, and interrupt VPN sessions, and Arctic Wolf recommends immediate upgrade to the fixed SonicOS versions specified to mitigate abuse by ransomware actors such as Akira affiliates.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.