SonicWall has warned customers that attackers are actively exploiting two SonicWall SMA1000 zero-days in a chain that can enable remote code execution on vulnerable appliances. The company urges organisations to install the latest hotfix immediately and investigate any signs of compromise. Two flaws allow command execution The attack chain includes CVE-2026-83548, a maximum-severity command injection…
Two SonicWall SMA1000 flaws were exploited as zero-days for weeks before public disclosure, allowing attackers to compromise vulnerable VPN appliances and install custom malware. The vulnerabilities affect SonicWall SMA1000 6210, 7210, and 8200v appliances. SonicWall issued patches last week and confirmed that threat actors had actively exploited the flaws in attacks. Incident response firm Volexity,…
Two SonicWall SMA1000 flaws are being actively exploited in zero-day attacks. SonicWall has released emergency security updates and is urging customers to install them immediately. The vulnerabilities affect several SMA1000 models and can allow attackers to redirect server requests or run operating system commands. Critical SSRF Flaw Receives Maximum Severity Score The first vulnerability, tracked as CVE-2026-15409, affects…
Hackers bypassed SonicWall VPN MFA protections after organizations applied incomplete fixes for a known vulnerability affecting SonicWall Gen6 SSL-VPN appliances. Researchers said attackers successfully accessed networks even though some affected systems already had updated firmware installed. The incidents show how incomplete remediation can leave critical infrastructure exposed despite patch deployment. Security experts warn that organizations…
SonicWall confirmed that attackers stole every firewall backup stored in its MySonicWall cloud. The company first claimed fewer than 5% of backups were affected but later admitted the breach reached all customers using the cloud backup feature. Full Scope of the Attack Hackers breached the MySonicWall portal and stole every firewall backup file in the…
The SonicWall firewall cloud backup breach has exposed sensitive configuration files belonging to a portion of its customers. Hackers targeted the MySonicWall portal, gaining access to firewall backup data that contained rules, VPN setups, and encrypted credentials. Although SonicWall stated that fewer than 5% of its firewall customers were affected, the breach poses real risks.…