CVE-2024-40766. SonicWall published a security advisory regarding a critical improper access control vulnerability in several SonicWall Firewall models. Find Arctic Wolf's recommendations.| Arctic Wolf
Attacks appear to be "linked to legacy credential use during migrations from Gen 6 to Gen 7 firewalls"| The Stack
In recent threat activity observed by Arctic Wolf, Akira ransomware affiliates carried out ransomware attacks with an initial access vector involving the compromise of SSLVPN user accounts on SonicWall devices.| Arctic Wolf