Ongoing exploitation of SonicWall Secure Mobile Access appliances shows how a single remote-access gateway can become a root-level foothold, a persistence layer, and a bridge into the internal network.
A reported zero-day chain against SonicWall SMA 1000 appliances shows how a remote-access gateway can shift from identity checkpoint to high-value intrusion point.
Two recently disclosed flaws in SonicWall SMA1000 appliances were reportedly used as zero-days for weeks, a reminder that the most sensitive target in many networks is the device sitting at the perimeter.
Volexity’s incident response work points to zero-day abuse of SonicWall SMA 1000 appliances, showing how edge devices can turn from access brokers into high-value intrusion points.
Two newly disclosed zero-days in the SMA1000 line combine SSRF and code injection into a chain that can lead to root-level command execution, pushing defenders toward forensic triage, not just patching.
Two actively exploited vulnerabilities in SonicWall’s SMA1000 remote access appliances put the focus on a familiar weak point: the device that stands between the internet and internal services.