SonicWall Dispels Zero-Day Fears, Ties Ransomware Surge to Unpatched 2024 SSLVPN Flaw
SonicWall's investigation reveals recent Akira ransomware attacks exploit an older SSLVPN vulnerability (CVE-2024-40766) rather than a new zero-day. The breach vector stems from customers failing to reset local passwords during Gen 6 to Gen 7 firewall migrations. Despite the vendor's assurances, administrators report contradictory evidence, fueling industry skepticism.