SonicWall confirms attackers are chaining two new SMA 1000 zero-days into remote code execution and urges immediate hotfixes.
The INC ransomware gang is the most active user of two exploited SonicWall SMA1000 flaws, adding victims across five countries…
Attackers used CVE-2026-15409 and CVE-2026-15410 to compromise SonicWall SMA 1000 appliances via SSRF and code injection starting June 22.
Two chained vulnerabilities give attackers full remote code execution on unpatched SMA 1000 appliances.
Three SonicOS vulnerabilities including an access control bypass (CVE-2026-0204) threaten Gen 6, 7, and 8 firewalls, with attackers able to…