HomeCyber BalkansMajor security flaw in SonicWall remains exploited in ongoing ransomware campaigns

Major security flaw in SonicWall remains exploited in ongoing ransomware campaigns

Published on

spot_img

SonicWall has recently identified a vulnerability in its SonicOS operating system, affecting versions 5.9.2.14-12o and older, 6.5.4.14-109n and older, and 7.0.1-5035 and older. The company has since released patches to address these security issues, with fixed versions including 5.9.2.14-13o, 6.5.4.15.116n, and 7.0.1-5072.

Both SonicWall and Arctic Wolf are urging affected users to upgrade to the latest supported SonicOS firmware versions as soon as possible. It is also recommended that all users of Gen5 and Gen6 devices update their passwords to prevent unauthorized access. In addition to applying the patch, SonicWall also suggests disabling the affected services as a temporary workaround to mitigate the risk.

“To minimize potential impact, SonicWall recommends restricting firewall management to trusted sources or disabling firewall WAN management from Internet access,” the company stated in a recent advisory. “Similarly, for SSLVPN, please ensure that access is limited to trusted sources, or disable SSLVPN access from the Internet.”

By taking these precautionary measures, users can better protect their systems from potential security threats. It is crucial for organizations to stay vigilant and proactive in addressing vulnerabilities to safeguard their sensitive data and information. SonicWall’s prompt response to this issue highlights the importance of timely updates and proactive security measures in today’s rapidly evolving threat landscape.

Source link

Latest articles

GraphWorm Malware Utilizes OneDrive for Command and Control

New Threat Emerges: Webworm Utilizes Microsoft's OneDrive for Malicious Activities A rapidly evolving cyber threat...

Hackers Exploit F5 BIG-IP for SSH Access and Lateral Movement into Linux Networks

Cybersecurity Concerns Rise as Threat Actors Exploit F5 BIG-IP Appliances Recent reports reveal a significant...

TAX#TRIDENT Campaign Distributes Windows Malware

Beware of a New Malware Campaign Targeting Windows Users: TAX#TRIDENT A concerning new malware campaign...

Hackers Exploit SEO Poisoning to Create Fake Gemini CLI and Claude Installers

Financial Threat Actors Target AI Developers with Sophisticated Infostealer Campaign In a concerning turn of...

More like this

GraphWorm Malware Utilizes OneDrive for Command and Control

New Threat Emerges: Webworm Utilizes Microsoft's OneDrive for Malicious Activities A rapidly evolving cyber threat...

Hackers Exploit F5 BIG-IP for SSH Access and Lateral Movement into Linux Networks

Cybersecurity Concerns Rise as Threat Actors Exploit F5 BIG-IP Appliances Recent reports reveal a significant...

TAX#TRIDENT Campaign Distributes Windows Malware

Beware of a New Malware Campaign Targeting Windows Users: TAX#TRIDENT A concerning new malware campaign...