CVE Tools
Back to feed
Research SonicOS network-edge SSL VPN SonicWall

State of SonicWall Exposure: Firmware Decryption Unlocks New Insights

Bishop Fox·By Bishop Fox Researchers··16 min read

This is part two of a three-part series on SonicWall firewalls. See part one for a deep dive into breaking the encryption protecting SWI-formatted firmware. In this second part, we survey the current state of SonicWall appliances on the public internet.

Justification

At Bishop Fox, we pride ourselves on keeping our customers one step ahead of malicious adversaries. Part of what we do to stay on the cutting edge is invest in research that helps us better understand the threat landscape our customers face. The fact is, when it comes to gaining a foothold in a network, edge security devices, and specifically VPN appliances, continue to be an easy target for attackers. In 2024 alone, we’ve seen targeted attacks against appliances from Check Point, Cisco, Ivanti, Fortinet, Palo Alto, Juniper, and SonicWall (just to name a few).…

Continue reading on Bishop Fox