tech π‘οΈ Ransomware gangs exploiting SonicWall SMA1000 flaws
CISA has confirmed that ransomware gangs are actively exploiting two recently patched SonicWall SMA1000 vulnerabilities, including a severe SSRF flaw. This issue affects the enterprise-grade secure remote access gateway used by many large corporations and government agencies. The vulnerabilities, CVE-2026-15409 and CVE-2026-15410, were patched in mid-July, but attacks began as early as June 22 by a threat actor. CISA added these flaws to its KEV Catalog on July 14, mandating patches for FCEB agencies. Companies are urged to upgrade immediately to mitigate the significant risks posed by these active exploits. π‘οΈ