<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #SonicWall</title><description>Cybersecurity articles tagged #SonicWall on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>SonicWall SMA 1000 Zero-Days: Unauthenticated RCE Explained</title><link>https://runtimerebel.com/blog/sonicwall-sma-1000-zero-days-unauthenticated-rce-explained</link><guid isPermaLink="true">https://runtimerebel.com/blog/sonicwall-sma-1000-zero-days-unauthenticated-rce-explained</guid><description>Zero-day vulnerabilities in SonicWall SMA 1000 series appliances enable unauthenticated remote code execution, posing critical risks to organizations.</description><pubDate>Sat, 05 Sep 2026 11:31:26 GMT</pubDate><category>SonicWall</category><category>SMA1000</category><category>Zero-Day</category><category>RCE</category><category>Unauthenticated Rce</category></item><item><title>CVE-2026-83548: SonicWall SMA1000 SSRF Under Active Exploitation</title><link>https://runtimerebel.com/blog/cve-2026-83548-sonicwall-sma1000-ssrf-under-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-83548-sonicwall-sma1000-ssrf-under-active-exploitation</guid><description>A critical server-side request forgery (SSRF) vulnerability, CVE-2026-83548, in SonicWall SMA1000 Appliances is under active exploitation.</description><pubDate>Wed, 02 Sep 2026 19:13:21 GMT</pubDate><category>SonicWall</category><category>SMA1000</category><category>SSRF</category><category>Vulnerability</category><category>CISA KEV</category></item><item><title>Chrome Security Update and SonicWall Targeted in AI-Driven Campaigns</title><link>https://runtimerebel.com/blog/chrome-security-update-and-sonicwall-targeted-in-ai-driven-campaigns</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-security-update-and-sonicwall-targeted-in-ai-driven-campaigns</guid><description>Analysis of 370 Chrome vulnerabilities and active SonicWall targeting, highlighting the rise of AI-powered phishing and automated DNS hijacking threats.</description><pubDate>Thu, 30 Jul 2026 17:29:33 GMT</pubDate><category>Google Chrome</category><category>SonicWall</category><category>AI Powered Hacking</category><category>DNS Hijacking</category><category>Phishing</category></item><item><title>SonicWall Zero-Days CVE-2026-15409 &amp; CVE-2026-15410 Under Active Exploit</title><link>https://runtimerebel.com/blog/sonicwall-zero-days-cve-2026-15409-cve-2026-15410-under-active-exploit</link><guid isPermaLink="true">https://runtimerebel.com/blog/sonicwall-zero-days-cve-2026-15409-cve-2026-15410-under-active-exploit</guid><description>Volexity&apos;s UTA0533 exploited SonicWall zero-days (CVE-2026-15409, CVE-2026-15410) for weeks, deploying custom malware. Urgent patching required.</description><pubDate>Mon, 20 Jul 2026 18:07:00 GMT</pubDate><category>SonicWall</category><category>CVE-2026-15409</category><category>CVE-2026-15410</category><category>Zero-Day</category><category>UTA0533</category><category>Malware</category></item><item><title>WordPress RCE and SonicWall Zero-Days: Weekly Threat Intel Update</title><link>https://runtimerebel.com/blog/wordpress-rce-and-sonicwall-zero-days-weekly-threat-intel-update</link><guid isPermaLink="true">https://runtimerebel.com/blog/wordpress-rce-and-sonicwall-zero-days-weekly-threat-intel-update</guid><description>Active exploitation of WordPress RCE and SonicWall zero-day vulnerabilities highlights critical risks for internet-facing systems. Learn how to mitigate.</description><pubDate>Mon, 20 Jul 2026 14:11:23 GMT</pubDate><category>WordPress</category><category>SonicWall</category><category>SharePoint</category><category>RCE</category><category>Zero-Day</category></item><item><title>SonicWall SMA 1000 Zero-Day Exploitation: Analysis of UTA0533 TTPs</title><link>https://runtimerebel.com/blog/sonicwall-sma-1000-zero-day-exploitation-analysis-of-uta0533-ttps</link><guid isPermaLink="true">https://runtimerebel.com/blog/sonicwall-sma-1000-zero-day-exploitation-analysis-of-uta0533-ttps</guid><description>A technical analysis of zero-day exploitation against SonicWall SMA 1000 series appliances by threat actor UTA0533 to gain root access and persistence.</description><pubDate>Sun, 19 Jul 2026 17:00:28 GMT</pubDate><category>SonicWall</category><category>SMA1000</category><category>UTA0533</category><category>VPN Exploit</category><category>Zero-Day</category></item><item><title>SonicWall SMA 1000 Series Zero-Days CVE-2026-15409 - Mitigation Guide</title><link>https://runtimerebel.com/blog/sonicwall-sma-1000-series-zero-days-cve-2026-15409-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/sonicwall-sma-1000-series-zero-days-cve-2026-15409-mitigation-guide</guid><description>SonicWall warns of active exploitation of two zero-day vulnerabilities in SMA 1000 series appliances, including a critical CVSS 10.0 SSRF (CVE-2026-15409).</description><pubDate>Wed, 15 Jul 2026 10:05:11 GMT</pubDate><category>SonicWall</category><category>SMA1000</category><category>CVE-2026-15409</category><category>Zero-Day</category><category>SSRF</category><category>Remote Command Execution</category></item><item><title>SonicWall SMA1000 Series RCE via CVE-2026-15409 — Mitigation Guide</title><link>https://runtimerebel.com/blog/sonicwall-sma1000-series-rce-via-cve-2026-15409-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/sonicwall-sma1000-series-rce-via-cve-2026-15409-mitigation-guide</guid><description>SonicWall warns of two critical zero-day vulnerabilities in SMA1000 series appliances (CVE-2026-15409, CVE-2026-15410) allowing remote code execution.</description><pubDate>Wed, 15 Jul 2026 06:16:04 GMT</pubDate><category>SonicWall</category><category>SMA1000</category><category>CVE-2026-15409</category><category>CVE-2026-15410</category><category>RCE</category><category>Zero-Day</category></item><item><title>CVE-2026-15409: SonicWall SMA 1000 Zero-Day Patch Guide</title><link>https://runtimerebel.com/blog/cve-2026-15409-sonicwall-sma-1000-zero-day-patch-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-15409-sonicwall-sma-1000-zero-day-patch-guide</guid><description>SonicWall warns of active zero-day exploitation for CVE-2026-15409 and CVE-2026-15410 in SMA 1000 appliances. Apply firmware updates immediately to prevent RCE.</description><pubDate>Wed, 15 Jul 2026 02:34:51 GMT</pubDate><category>SonicWall</category><category>SMA1000</category><category>CVE-2026-15409</category><category>CVE-2026-15410</category><category>Zero-Day</category></item><item><title>CVE-2024-40766: SonicWall SonicOS Patch and Configuration Guide</title><link>https://runtimerebel.com/blog/cve-2024-40766-sonicwall-sonicos-patch-and-configuration-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-40766-sonicwall-sonicos-patch-and-configuration-guide</guid><description>Analysis of CVE-2024-40766, a critical improper access control flaw in SonicWall SonicOS exploited by ransomware groups. Learn how to secure management interfaces.</description><pubDate>Tue, 23 Jun 2026 09:28:45 GMT</pubDate><category>CVE-2024-40766</category><category>SonicWall</category><category>SonicOS</category><category>Akira Ransomware</category><category>Firewall Security</category></item><item><title>SonicWall Gen6 SSL-VPN MFA Bypass: Incomplete Patching Leads to Compromise</title><link>https://runtimerebel.com/blog/sonicwall-gen6-ssl-vpn-mfa-bypass-incomplete-patching-leads-to-compromise</link><guid isPermaLink="true">https://runtimerebel.com/blog/sonicwall-gen6-ssl-vpn-mfa-bypass-incomplete-patching-leads-to-compromise</guid><description>Hackers are bypassing MFA on SonicWall Gen6 SSL-VPN appliances via brute-force due to incomplete patching, enabling ransomware tool deployment.</description><pubDate>Thu, 21 May 2026 00:58:49 GMT</pubDate><category>SonicWall</category><category>MFA Bypass</category><category>VPN</category><category>Brute Force</category><category>Ransomware</category></item><item><title>CVE-2024-40766: Patch SonicWall SonicOS Improper Access Control</title><link>https://runtimerebel.com/blog/cve-2024-40766-patch-sonicwall-sonicos-improper-access-control</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-40766-patch-sonicwall-sonicos-improper-access-control</guid><description>SonicWall urges immediate patching of CVE-2024-40766, a critical access control flaw in SonicOS affecting Gen 5, 6, and 7 firewalls.</description><pubDate>Thu, 30 Apr 2026 16:38:18 GMT</pubDate><category>CVE-2024-40766</category><category>SonicWall</category><category>SonicOS</category><category>Firewall</category><category>Access Control</category></item><item><title>Microsoft Defender Zero-Day and 17-Year-Old Excel RCE Exploitation</title><link>https://runtimerebel.com/blog/microsoft-defender-zero-day-and-17-year-old-excel-rce-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/microsoft-defender-zero-day-and-17-year-old-excel-rce-exploitation</guid><description>Analysis of recent threats including a Microsoft Defender zero-day, SonicWall brute-force campaigns, and critical RCE in legacy Microsoft Excel components.</description><pubDate>Thu, 16 Apr 2026 16:38:11 GMT</pubDate><category>Microsoft Defender</category><category>SonicWall</category><category>Excel</category><category>Zero-Day</category><category>RCE</category></item><item><title>Palo Alto Networks &amp; SonicWall High-Severity Privilege Escalation Patches</title><link>https://runtimerebel.com/blog/palo-alto-networks-sonicwall-high-severity-privilege-escalation-patches</link><guid isPermaLink="true">https://runtimerebel.com/blog/palo-alto-networks-sonicwall-high-severity-privilege-escalation-patches</guid><description>Palo Alto Networks and SonicWall have issued patches for high-severity vulnerabilities allowing privilege escalation to administrator. Immediate patching is advised.</description><pubDate>Thu, 09 Apr 2026 12:47:56 GMT</pubDate><category>Palo Alto Networks</category><category>SonicWall</category><category>Privilege Escalation</category><category>Vulnerability</category><category>Network Security</category></item><item><title>FinTech Breach: SonicWall Lawsuit &amp; Vendor Liability</title><link>https://runtimerebel.com/blog/fintech-breach-sonicwall-lawsuit-vendor-liability</link><guid isPermaLink="true">https://runtimerebel.com/blog/fintech-breach-sonicwall-lawsuit-vendor-liability</guid><description>A FinTech company&apos;s lawsuit against SonicWall raises critical questions about responsibility when a data breach occurs via a third-party security vendor&apos;s product.</description><pubDate>Fri, 27 Feb 2026 00:35:49 GMT</pubDate><category>SonicWall</category><category>Marquis</category><category>Third Party Risk</category><category>Vendor Liability</category><category>Data Breach</category><category>Cybersecurity Lawsuit</category></item><item><title>Marquis Sues SonicWall Over Ransomware Breach Impacting 74 Banks</title><link>https://runtimerebel.com/blog/marquis-sues-sonicwall-over-ransomware-breach-impacting-74-banks</link><guid isPermaLink="true">https://runtimerebel.com/blog/marquis-sues-sonicwall-over-ransomware-breach-impacting-74-banks</guid><description>Marquis Software Solutions alleges SonicWall&apos;s gross negligence in securing cloud backups led to a ransomware attack affecting 74 U.S. financial institutions.</description><pubDate>Wed, 25 Feb 2026 16:32:21 GMT</pubDate><category>SonicWall</category><category>Marquis Software Solutions</category><category>Ransomware</category><category>Third Party Risk</category><category>Financial Sector</category><category>Cloud Security</category></item></channel></rss>