Sonicwall News Articles

Recent news articles refferecing the vendors vulnerabilities.

SonicWall Confirms Exploitation of New SMA Zero-Day

SonicWall has confirmed that an SMA 1000 zero-day tracked as CVE-2025-23006 has been exploited in the wild.

1 week ago

5,000+ SonicWall firewalls still open to attack (CVE-2024-53704) - Help Net Security

5,000+ SonicWall firewalls are still vulnerable to attack via a vulnerability (CVE-2024-53704) that's "at imminent risk of exploitation".

1 week ago

CISA Warns of SonicWall 0-day RCE Vulnerability Exploited in Wild

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning regarding a critical vulnerability, CVE-2025-23006, affecting SonicWall’s Secure Mobile Access (SMA) 1000 series appliances.

1 week ago

Week in review: 48k Fortinet firewalls open to attack, attackers "vishing" orgs via Microsoft Teams - Help Net Security

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 48,000+ internet-facing Fortinet firewalls still open to

2 weeks ago

SonicWall warns of a critical CVE-2025-23006 zero-day likely exploited in the wild

SonicWall warns customers of a critical zero-day vulnerability in SMA 1000 Series appliances, likely exploited in the wild.

2 weeks ago

SonicWall 0-day Vulnerability Exploited In Attacks Execute Arbitrary OS Commands 

A critical security vulnerability, tracked as CVE-2025-23006, has been identified in SonicWall's SMA1000 Appliance Management Console

2 weeks ago

SonicWall warns of SMA1000 RCE flaw exploited in zero-day attacks

SonicWall is warning about a pre-authentication deserialization vulnerability in SonicWall SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), with reports that it has been exploited as a zero-day in attacks.

2 weeks ago

Zero-day vulnerability in SonicWall SMA series under attack | Tech...

Infosec experts urged enterprises to patch a SonicWall vulnerability that could allow an attacker to compromise the operating system.

2 weeks ago

SonicWall Urges Immediate Patch for Critical CVE-2025-23006 Flaw Amid Likely Exploitation

Critical SonicWall zero-day (CVE-2025-23006) in SMA 1000 appliances fixed. Rated 9.8 CVSS; patch now to prevent active exploitation.

2 weeks ago

SonicWall SMA appliances exploited in zero-day attacks (CVE-2025-23006) - Help Net Security

A zero-day vulnerability (CVE-2025-23006) affecting SonicWall Secure Mobile Access (SMA) 1000 Series appliances is being exploited.

2 weeks ago

SonicWall Learns From Microsoft About Potentially Exploited Zero-Day

SonicWall credited Microsoft for reporting CVE-2025-23006, a critical remote command execution vulnerability possibly exploited in the wild.

2 weeks ago

Multiple Sonicwall VPN Vulnerabilities Let Attackers Bypass Authentication

A new security advisory has been released regarding several vulnerabilities in SonicWall's SonicOS software, bypass authentication mechanisms.

1 month ago

Major IT Vulnerabilities Reported In Fortinet, SonicWall, Grafana

Cyble's report reveals critical vulnerabilities in Fortinet, SonicWall, and Grafana Labs impacting over 1 million assets.

3 months ago

Fog and Akira ransomware attacks exploit SonicWall VPN flaw

Fog and Akira ransomware operators are exploiting SonicWall VPN flaw CVE-2024-40766 to breach enterprise networks.

3 months ago

Fog ransomware targets SonicWall VPNs to breach corporate networks

Fog and Akira ransomware operators have increased their exploitation efforts of CVE-2024-40766, a critical access control flaw that allows unauthorized access to resources on the SSL VPN feature of SonicWall SonicOS firewalls.

3 months ago

CISA says SonicWall bug being exploited as experts warn of ransomware gang use

Federal cybersecurity experts are warning that a vulnerability affecting products from SonicWall is being exploited, and ordered all federal civilian agencies to implement a patch for the bug by the end of the month.

4 months ago

CISA confirms that SonicWall vulnerability is getting exploited (CVE-2024-40766) - Help Net Security

CISA has added CVE-2024-40766 to its KEV catalog, thus confirming it is being actively exploited by attackers.

5 months ago

SonicWall Urges Users to Patch Critical Firewall Flaw Amid Possible Exploitation

Critical SonicWall firewall flaw CVE-2024-40766 may be exploited. Patch now to secure your systems.

5 months ago

CISA KEV Update Part II – September 2024.

The US CISA added below vulnerabilities to the Known Exploited Vulnerability Catalog based on the evidence of active exploitation CVE-2024-40766  SonicWall SonicOS contains an improper access control vulnerability that could lead to unauthorized resource access and, under certain conditions, may cau...

5 months ago

Critical SonicWall Vulnerability Possibly Exploited in Ransomware Attacks

A recently patched SonicWall vulnerability tracked as CVE-2024-40766 may have been exploited in ransomware attacks.

5 months ago

Akira Ransomware Actors Exploit SonicWall Bug for RCE

CISA has added CE-2024-40766 to its known exploited vulnerabilities catalog.

5 months ago

SonicWall SSLVPN access control flaw is now exploited in attacks

SonicWall is warning that a recently fixed access control flaw tracked as CVE-2024-40766 in SonicOS is now

5 months ago

SonicWall patches critical flaw affecting its firewalls (CVE-2024-40766) - Help Net Security

SonicWall patched a flaw (CVE-2024-40766) in its next-gen firewalls that may allow attackers to access resources and crash the appliances.

5 months ago

Recent SonicWall Firewall Vulnerability Potentially Exploited in the Wild

SonicWall is warning customers that the recently patched critical vulnerability CVE-2024-40766 may be exploited in the wild.

5 months ago

Week in review: SonicWall critical firewalls flaw fixed, APT exploits WPS Office for Windows RCE - Help Net Security

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: SonicWall patches critical flaw affecting its firewalls

5 months ago

TT-CSIRT – 424 17.01.24: Patch SonicWall Firewall Still Vulnerable to CVE-2023-0656 & CVE-2022-22274

TT-CSIRT – 424 17.01.24: Patch SonicWall Firewall Still Vulnerable to CVE-2023-0656 and CVE-2022-22274 Severity: Critical Overview: SonicWall Firewalls CVE-2022-22274 and CVE-2023-0656 have...

1 year ago

More than 178,000 SonicWall firewalls vulnerable to simple DoS attack

More than 178,000 SonicWall firewalls are vulnerable to Denial of Service (DoS) and Remote Code Execution (RCE) attacks due to two vulnerabilities. The

1 year ago

178K+ SonicWall Firewalls Vulnerable to DoS, RCE Attacks

Two flaws discovered a year apart are ostensibly the same with slightly different exploit paths, exposing corporate networks to risk and potential intrusion.

1 year ago

178,000+ Publicly Exposed Sonicwall Firewalls Vulnerable to RCE Attacks

Due to Sonicwall Firewalls' widespread usage in organizations, hackers find them to be appealing targets when looking to breach networks.

1 year ago

Over 178K SonicWall firewalls vulnerable to DoS, potential RCE attacks

Security researchers have found over 178,000 SonicWall next-generation firewalls (NGFW) with the management interface exposed online are vulnerable to denial-of-service (DoS) and potential remote code execution (RCE) attacks.

1 year ago