www.bitdefender.com Ransomware Group Targets SonicWall Gen 7 Firewalls via CVE-2024-40766
Article Content
- •SonicWall Gen 7 firewalls are being targeted via CVE-2024-40766, leading to unauthorized access.
- •Attackers are deploying Akira ransomware after gaining access through SSL VPNs.
- •Organizations are advised to reset passwords and update firmware to enhance security.
In June 2026, a surge in attacks targeting SonicWall Gen 7 firewalls has been reported, exploiting CVE-2024-40766, an improper access control flaw. This vulnerability allows threat actors to gain unauthorized access, particularly during migrations from Gen 6 to Gen 7 firewalls where passwords were not reset. The Akira ransomware has been deployed in these incidents, with attackers leveraging SSL VPNs to breach internal networks and move laterally. SonicWall has confirmed that the threat is not linked to a zero-day vulnerability but is associated with this known CVE. Security firms, including Huntress and Bitdefender, are advising organizations to reset local user passwords and update firmware to mitigate risks. The ongoing campaign has seen rapid exploitation, with attackers often pivoting to domain controllers within hours of initial compromise. Organizations using SonicWall devices are urged to remain vigilant and apply recommended security measures.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Akira, UNC6148 and Overstep in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Chinese Smishing Gang Targets Ireland and Four Other EU Countries Ireland is identified as one of five EU countries targeted by the Chinese text-scam group known as Smishing Triad, as reported by the EU cyber security agency Enisa. This group conducts large-scale smishing operations, which involve sending fraudulent text messages that impersonate legitimate organizations to steal…
Network Segmentation Failures Heighten Cyberattack Risks in 2026 Forescout's analysis of 47,700 network segments across 209 organizations reveals significant network segmentation failures, particularly involving IT, OT, IoT, and IoMT devices. The study found that 62% of segments contained only one device category, while 29% had two and 9% had three or more. Notably, only 13% of…