Akira ransomware campaigns are a ransomware operation that SonicWall attributes to a state actor.
Akira ransomware campaigns are a ransomware operation that SonicWall attributes to a state actor. The campaigns exhibit standard ransomware behavior—initial access, rapid encryption, and data exfiltration with double extortion—making them noteworthy due to potential state sponsorship and the geopolitical risk they imply for cybersecurity.
SonicWall has issued a security advisory regarding a critical vulnerability in its SonicOS operating system, identified as CVE-2025-40601. This high-severity flaw affects Gen7 and Gen8 hardware and virtual appliances,…
SonicWall reported that a state-sponsored threat actor conducted a brute-force attack on its MySonicWall cloud backup service, compromising firewall configuration files of all affected customers. An investigation by…
SonicWall reported a security incident involving unauthorized access to backup firewall configuration files stored in a cloud environment. The company attributed the breach to a state-backed threat actor and engaged…
SonicWall reported unauthorized access to backup firewall configuration files in September 2025, attributed to a state-backed threat actor. The company engaged Mandiant for an investigation and communicated with…
SonicWall has disclosed a critical vulnerability in its SonicOS SSLVPN service, tracked as CVE-2025-40601, which allows remote, unauthenticated attackers to crash Gen7 and Gen8 firewalls. The flaw, caused by a…