SonicWall Security Snafu: VPN Accounts Hacked in Mass Credential Heist!

SonicWall firewall files have been compromised, sparking a campaign targeting SonicWall SSL VPN accounts. Attackers log in using valid credentials, affecting over 100 accounts. While no direct link to the recent MySonicWall breach is confirmed, Huntress advises vigilance and enhanced security measures. Time to batten down the hatches, folks!

Pro Dashboard

Hot Take:

Looks like someone’s been hitting the “Sonic” button a bit too hard – and it’s not for a high-speed run! Cyber bandits are treating SonicWall SSL VPN accounts like an all-you-can-break buffet, logging in with what seems to be legitimate credentials. Who knew hackers had a penchant for Sonic too? Better buckle up, IT folks, because this is one ride you don’t want to be on!

Key Points:

  • Huntress has detected an extensive campaign targeting SonicWall SSL VPN accounts.
  • Attackers are using valid credentials to access these accounts, not brute-forcing.
  • The campaign involves multiple businesses and over 100 compromised accounts.
  • Evidence shows network scanning and attempts to access local Windows accounts.
  • Recommendations include restricting remote access and enforcing multi-factor authentication.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?