Critical SonicWall SonicOS Vulnerability Actively Being Exploited

February 19, 2025

Critical SonicWall Vulnerability (CVE-2024-53704)

A newly disclosed zero-day vulnerability (CVE-2024-53704) in SonicWall’s SonicOS is actively being exploited in the wild, allowing attackers to hijack SSL VPN sessions without credentials. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added this vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, mandating federal agencies to patch by March 11, 2025.


Read the Technical Analysis HERE.

Why This Matters

  • Unauthenticated Access: Attackers can bypass authentication and gain full control over VPN sessions.
  • High-Risk Target: Organizations using SonicWall firewalls, especially those in critical sectors like healthcare and finance, are at increased risk.
  • Potential Ransomware Connection: Previous SonicWall vulnerabilities have been exploited to deliver ransomware, and similar tactics are being observed here.


Immediate Actions to Take

 

✅ Apply Vendor Patches – Update to the latest SonicOS versions immediately.

✅ Enforce Multi-Factor Authentication (MFA) – Prevent unauthorized access to VPN sessions.

✅ Restrict SSL VPN Access – Allow connections only from trusted IP ranges.

✅ Reset Credentials & Strengthen Password Policies – Secure locally managed SSLVPN accounts.

✅ Monitor VPN Activity – Watch for unusual login behavior and unauthorized access attempts.


How ABT Solutions Helps
 

ABT Solutions provides 24/7 security monitoring, Enterprise Grade Endpoint and Email Security, real-time threat intelligence, and compliance-driven vulnerability management to protect your network from active exploits. Our solutions include:


  • Managed Detection & Response (MDR) – Continuous monitoring to detect and mitigate threats in real-time.
  • Endpoint/Network Security - Enterprise grade multi-tier endpoint and network security solution built to keep organizations secure.
  • Email Security - Multi-stage email security solution designed with keeping organizations secure.
  • Vulnerability Management – Identifying and patching vulnerabilities before they can be exploited.
  • SIEM & Log Management – Ensuring all security events are captured and analyzed to prevent breaches.
  • Compliance Guidance – Helping your organization stay compliant with industry regulations and cybersecurity best practices.
  • So much More! - Click the "Vulnerability Risk Assessment" button to get started learning how we can secure your organization.


For assistance securing your organization, contact ABT Solutions, LLC today.

 


Dedicated to Your Security,


Braden A. Lampe - CEO @ ABT Solutions, LLC


Share by: