logo

Follow-Up: SonicWall Updates Advisories for Actively Exploited Vulnerabilities

ID: 38ae6b4c-fdfd-53a1-8363-93dc16674d5c

STIX ID: report--38ae6b4c-fdfd-53a1-8363-93dc16674d5c

Feed Name: Arctic Wolf Blog

Threat Score
75/100

Date Published: 2025-04-30

Date Updated: 2026-04-27

...
...

**Executive summary:** Arctic Wolf warns of active credential-access activity targeting SonicWall SMA devices tied to CVE-2023-44221 and CVE-2024-38475, noting CISA KEV catalog additions and public PoC/exploit details that could drive increased exploitation; the bulletin urges patching to fixed firmware, enabling MFA, resetting and hardening local accounts, limiting VPN access, removing unused accounts, and enabling syslog monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.