CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Firewall Lockouts: Play Ransomware and SonicWall Exploits

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 2051

As cited

Copy frozen at (site build).

ransomware

Firewall Lockouts: Play Ransomware and SonicWall Exploits

Ransomware groups including Play, Akira, and Qilin are exploiting SonicWall firewalls to gain such complete control that victims are forced to perform hard resets and physically disconnect network equipment. These attacks leverage compromised firewall access to establish persistent footholds and lock defenders out of their own infrastructure.

Why it matters: Organizations using SonicWall firewalls face the risk of complete network compromise and operational disruption; practitioners should review firewall access logs, apply available patches, and verify remote management security settings immediately.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ransomware

Firewall Lockouts: Play Ransomware and SonicWall Exploits

Ransomware groups including Play, Akira, and Qilin are exploiting SonicWall firewalls to gain such complete control that victims are forced to perform hard resets and physically disconnect network equipment. These attacks leverage compromised firewall access to establish persistent footholds and lock defenders out of their own infrastructure.

Why it matters: Organizations using SonicWall firewalls face the risk of complete network compromise and operational disruption; practitioners should review firewall access logs, apply available patches, and verify remote management security settings immediately.

VendorsSonicWall
Actorsakiraplayqilin
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary