HomeCyber BalkansMajor security flaw in SonicWall remains exploited in ongoing ransomware campaigns

Major security flaw in SonicWall remains exploited in ongoing ransomware campaigns

Published on

spot_img

SonicWall has recently identified a vulnerability in its SonicOS operating system, affecting versions 5.9.2.14-12o and older, 6.5.4.14-109n and older, and 7.0.1-5035 and older. The company has since released patches to address these security issues, with fixed versions including 5.9.2.14-13o, 6.5.4.15.116n, and 7.0.1-5072.

Both SonicWall and Arctic Wolf are urging affected users to upgrade to the latest supported SonicOS firmware versions as soon as possible. It is also recommended that all users of Gen5 and Gen6 devices update their passwords to prevent unauthorized access. In addition to applying the patch, SonicWall also suggests disabling the affected services as a temporary workaround to mitigate the risk.

“To minimize potential impact, SonicWall recommends restricting firewall management to trusted sources or disabling firewall WAN management from Internet access,” the company stated in a recent advisory. “Similarly, for SSLVPN, please ensure that access is limited to trusted sources, or disable SSLVPN access from the Internet.”

By taking these precautionary measures, users can better protect their systems from potential security threats. It is crucial for organizations to stay vigilant and proactive in addressing vulnerabilities to safeguard their sensitive data and information. SonicWall’s prompt response to this issue highlights the importance of timely updates and proactive security measures in today’s rapidly evolving threat landscape.

Source link

Latest articles

MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors

 The Iranian threat actor known as MuddyWater has been attributed to a spear-phishing campaign targeting...

Meta denies viral claims about data breach affecting 17.5 million Instagram users, but change your password anyway

 Millions of Instagram users panicked over sudden password reset emails and claims that...

E-commerce platform breach exposes nearly 34 million customers’ data

 South Korea's largest online retailer, Coupang, has apologised for a massive data breach...

Fortinet Warns of Active Exploitation of FortiOS SSL VPN 2FA Bypass Vulnerability

 Fortinet on Wednesday said it observed "recent abuse" of a five-year-old security flaw in FortiOS...

More like this

MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors

 The Iranian threat actor known as MuddyWater has been attributed to a spear-phishing campaign targeting...

Meta denies viral claims about data breach affecting 17.5 million Instagram users, but change your password anyway

 Millions of Instagram users panicked over sudden password reset emails and claims that...

E-commerce platform breach exposes nearly 34 million customers’ data

 South Korea's largest online retailer, Coupang, has apologised for a massive data breach...