Security · 16h ago
SonicWall SMA Zero-Days Exploited Before Disclosure
A threat actor tracked as UTA0533 exploited zero-day vulnerabilities in SonicWall SMA 1000 series VPN appliances since June 22, 2026, before they were publicly disclosed. Cybersecurity firm Volexity discovered the activity during an incident response investigation. The exploits allowed attackers to gain root access to affected devices.
Meridian48 take
The pre-disclosure exploitation underscores the critical gap between vulnerability discovery and patch deployment, especially for widely used VPN appliances.
Read the full reporting
SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access →
The Hacker News
sonicwallzero-day