Follow-Up: SonicWall Updates Advisories for Actively Exploited Vulnerabilities
ID: 38ae6b4c-fdfd-53a1-8363-93dc16674d5c
STIX ID: report--38ae6b4c-fdfd-53a1-8363-93dc16674d5c
Feed Name: Arctic Wolf Blog
Threat Score
**Executive summary:** Arctic Wolf warns of active credential-access activity targeting SonicWall SMA devices tied to CVE-2023-44221 and CVE-2024-38475, noting CISA KEV catalog additions and public PoC/exploit details that could drive increased exploitation; the bulletin urges patching to fixed firmware, enabling MFA, resetting and hardening local accounts, limiting VPN access, removing unused accounts, and enabling syslog monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
