SonicWall Security Snafu: VPN Accounts Hacked in Mass Credential Heist!
SonicWall firewall files have been compromised, sparking a campaign targeting SonicWall SSL VPN accounts. Attackers log in using valid credentials, affecting over 100 accounts. While no direct link to the recent MySonicWall breach is confirmed, Huntress advises vigilance and enhanced security measures. Time to batten down the hatches, folks!

Hot Take:
Looks like someone’s been hitting the “Sonic” button a bit too hard – and it’s not for a high-speed run! Cyber bandits are treating SonicWall SSL VPN accounts like an all-you-can-break buffet, logging in with what seems to be legitimate credentials. Who knew hackers had a penchant for Sonic too? Better buckle up, IT folks, because this is one ride you don’t want to be on!
Key Points:
- Huntress has detected an extensive campaign targeting SonicWall SSL VPN accounts.
- Attackers are using valid credentials to access these accounts, not brute-forcing.
- The campaign involves multiple businesses and over 100 compromised accounts.
- Evidence shows network scanning and attempts to access local Windows accounts.
- Recommendations include restricting remote access and enforcing multi-factor authentication.
Already a member? Log in here
