{"id":101792,"date":"2021-01-27T14:00:00","date_gmt":"2021-01-27T14:00:00","guid":{"rendered":"https:\/\/icrowdnewswire.com\/?p=2819320"},"modified":"2021-01-27T14:00:00","modified_gmt":"2021-01-27T14:00:00","slug":"breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability","status":"publish","type":"post","link":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/","title":{"rendered":"Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability"},"content":{"rendered":"<p><strong>iCrowdNewswire <\/strong><span class=\"date\">&nbsp;&nbsp;Jan 27, 2021&nbsp;&nbsp;9:00 AM ET<\/span><\/p>\n<p>In an urgent notice released on the evening of January 22nd, network security company SonicWall divulged a breach in their NetExtender VPN client and SMB-oriented SMA (Secure Mobile Access) 100 product.<\/p>\n<p>This is a product typically employed by users who need to access internal resources safely from satellite locations. It\u2019s important to note that this attack did not affect other SonicWall products \u2014 in particular, the similar Secure Mobile Access 1000 series.<\/p>\n<h2>What Happened?<\/h2>\n<p>According to industry experts who followed the story closely, it was initially hard to discern exactly what had occurred. Though SonicWall was adamant about being \u201ctransparent,\u201d Paul Bush, Principal Consultant at <a href=\"https:\/\/www.onesourcetechnology.com\/\">OneSource Technology, Inc.<\/a>, said they first learned of the issue \u201con a Facebook post that was shared by someone in the industry [and linked] to a vague article by SonicWall \u2026 The initial details were a little vague \u2026 We chose to disable SSL-VPN remote access for all of our clients that use it.\u201d<\/p>\n<p>Basically, what happened was a breach of the company\u2019s internal networks by what SonicWall called \u201chighly sophisticated threat actors\u201d who exploited a zero-day vulnerability.<\/p>\n<p>SonicWall themselves had actually learned of the breach from a contact at SC Media, who had received an anonymous tip of the incident.<\/p>\n<p>If you\u2019re unfamiliar with zero-day vulnerabilities, these are essentially flaws in security software that don\u2019t have a fix because the vendor doesn\u2019t know they exist.<\/p>\n<h2>What Does This Mean for Businesses Using SonicWall?<\/h2>\n<p>We spoke to several industry experts about the breach. SonicWall is doing everything they can to fix the issue and repair any collateral damage for themselves and their clients. However, a hack like this is naturally alarming for businesses everywhere who put their faith in network security companies like SonicWall.<\/p>\n<p>Nick Allo at <a href=\"https:\/\/www.semtechit.com\/\">SemTech IT Solutions<\/a> noted the lack of multiple layers of authentication with SonicWall: \u201cFor reasons like this, we continue to advise our clients to add multiple layers of authentication and minimize risk on a zero-trust basis. We require a 2FA also to access VPN connections and with Sophos the agent on the device talks to the firewall. Unfortunately, [this is] something that SonicWall does not have.\u201d<\/p>\n<p>Don Baham, President at <a href=\"https:\/\/www.kraftgrp.com\/\">Kraft Technology Group, LLC<\/a>, noted two significant flaws in the way SonicWall was engineered and used: First, the lack of 2FA\/MFA enforcement, and \u201csecond, it appears IT administrators have configured SonicWALL VPN appliances to allow administration over the public Internet, again with only a username and password protecting the session.\u201d<\/p>\n<p>Ilan Sredni of <a href=\"https:\/\/www.pciicp.com\/\">Palindrome Consulting, Inc.<\/a> was not surprised by the attack: \u201cOnce again, another security product provider gets hacked. It seems like we are discussing the inevitable and therefore lets us know that all of these tools, no matter how much they are tested, are vulnerable \u2026 Because of situations like these, it is imperative that multiple layers of security end notifications are implemented in any environment, and that no one solution can be trusted.\u201d<\/p>\n<p>Michael Anderson, President &amp; CEO at <a href=\"https:\/\/www.365tech.ca\/\">365 Technologies Inc<\/a>. had a similar takeaway: \u201cThe recent exploits at SonicWall and Solar Winds demonstrate that even that approach may not be enough as these tools are also vulnerable. They are also proof that even large, sophisticated, and well-resourced firms can be compromised \u2026 MSPs will need to ensure they have a layered defense in place across their clients to protect against single control failures.\u201d<\/p>\n<h2>What\u2019s Being Done<\/h2>\n<p>SonicWall has been updating their initial Friday night notice frequently.<\/p>\n<p>According to Guy Baroan, President of <a href=\"https:\/\/www.baroan.com\/\">Baroan Technologies<\/a>, \u201cSonicwall has updated their information [and have] confirmed that at this time, NO ACTION IS REQUIRED FOR THE FOLLOWING:<\/p>\n<ul>\n<li>All generations of SonicWall firewalls, not affected.<\/li>\n<li>NetExtender 10.x, not affected.<\/li>\n<li>SMA 1000 Series, not affected.<\/li>\n<li>SonicWave Access Points, not affected.<\/li>\n<\/ul>\n<p>What is STILL under investigation is SMA 100 Series devices. SonicWall has stated that NetExtender use for remote access is ALSO NOT affected and can be continued. SonicWall is advising administrators of these units to disable HTTPS administrative access from the Internet and to disable Virtual Office access as well until they have completed their investigation.\u201d<\/p>\n<h2>Moving Forward to Secure Your Business<\/h2>\n<p>All of these developments are alarming, and according to Ian Hansen of Philantech3, it\u2019s evidence that the notion a VPN is the answer for all companies, no matter what, should be questioned:<\/p>\n<p>\u201cThis incident \u2026 highlights the importance of determining whether a VPN, which essentially extends a connection to a remote location, is the most secure way for companies to allow remote access into their company data. Companies should look carefully at whether a VPN best suits their security needs because if remote endpoints are not secured but are connected to a corporate network through a VPN, then essentially that company is vulnerable to the weakness on that remote user\u2019s end.\u201d<\/p>\n<p><em>For more information on the breach at SonicWall, check their&nbsp;<a href=\"https:\/\/www.sonicwall.com\/support\/product-notification\/urgent-security-notice-probable-sma-100-series-vulnerability-updated-jan-25-2021\/210122173415410\/\">Product Notifications page<\/a>.<\/em><\/p>\n<div id=\"related_posts_wrap\">\n<h4>Also Read:<\/h4>\n<\/p>\n<\/div>\n<p><h3> Contact Information: <\/h3>\n<\/p>\n<p>Rick Crawford<br \/>MSP Tech News <\/p>\n<hr>\n<div class=\"viacrowd viaimg\"> <a href=\"https:\/\/icrowdnewswire.com\"><img decoding=\"async\" src=\"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png\" alt=\"iCrowdNewswire\"><\/a> <\/div>\n<p> <!-- Now display keyword(tags) if any, and Categories combined --> <\/p>\n<p><span id=\"keywords_post_single\"> <strong> Keywords:<\/strong>&nbsp;&nbsp;&nbsp;&nbsp;SonicWALL, SonicWALL Security, SonicWALL Firewalls, Cybersecurity, IT Security, Network Security<\/span><\/p>\n<p> <!--<\/p>\n\n\n\n\n\n\n\n<p>\n\n\n\n<div class=\"btn btn-primary\"> <a href=\"\" target=\"_blank\" id=\"related_posts_url\" rel=\"noopener noreferrer\">View Related Posts<\/a> <\/div>\n\n\n\n--> <\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/heymuse.com\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/\">Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/heymuse.com\">Financial Market Brief<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>iCrowdNewswire &nbsp;&nbsp;Jan 27, 2021&nbsp;&nbsp;9:00 AM ET In an urgent notice released on the evening of January 22nd, network security company SonicWall divulged a breach in their NetExtender VPN client and SMB-oriented SMA (Secure Mobile Access) 100 product. This is a product typically employed by users who need to access internal resources safely from satellite locations. [&hellip;]<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/heymuse.com\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/\">Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/heymuse.com\/\">Financial Market Brief<\/a>.<\/p>\n<p> <a href=\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/\" class=\"more-link\">Continue Reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":291,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[],"class_list":["post-101792","post","type-post","status-publish","format-standard","hentry","category-press-release"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v24.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability - Business<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability - Business\" \/>\n<meta property=\"og:description\" content=\"iCrowdNewswire &nbsp;&nbsp;Jan 27, 2021&nbsp;&nbsp;9:00 AM ET In an urgent notice released on the evening of January 22nd, network security company SonicWall divulged a breach in their NetExtender VPN client and SMB-oriented SMA (Secure Mobile Access) 100 product. This is a product typically employed by users who need to access internal resources safely from satellite locations. [&hellip;] The post Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability appeared first on Financial Market Brief. Continue Reading &rarr;\" \/>\n<meta property=\"og:url\" content=\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/\" \/>\n<meta property=\"og:site_name\" content=\"Business\" \/>\n<meta property=\"article:published_time\" content=\"2021-01-27T14:00:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png\" \/>\n<meta name=\"author\" content=\"iCrowdNewswire\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"iCrowdNewswire\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/\",\"url\":\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/\",\"name\":\"Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability - Business\",\"isPartOf\":{\"@id\":\"https:\/\/ipsnews.net\/business\/#website\"},\"primaryImageOfPage\":{\"@id\":\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#primaryimage\"},\"image\":{\"@id\":\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png\",\"datePublished\":\"2021-01-27T14:00:00+00:00\",\"author\":{\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/bde271d5882ffdcb71d1a2a961b51fee\"},\"breadcrumb\":{\"@id\":\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#primaryimage\",\"url\":\"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png\",\"contentUrl\":\"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/ipsnews.net\/business\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/ipsnews.net\/business\/#website\",\"url\":\"https:\/\/ipsnews.net\/business\/\",\"name\":\"Business\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/ipsnews.net\/business\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/bde271d5882ffdcb71d1a2a961b51fee\",\"name\":\"iCrowdNewswire\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/aa079ec4d87ad6117c9db7a1a2cde1607ee2f869010252c2d0af346f0047b325?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/aa079ec4d87ad6117c9db7a1a2cde1607ee2f869010252c2d0af346f0047b325?s=96&d=mm&r=g\",\"caption\":\"iCrowdNewswire\"},\"sameAs\":[\"https:\/\/heymuse.com\/ips\"],\"url\":\"http:\/\/ipsnews.net\/business\/author\/icrowdnewswire\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability - Business","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/","og_locale":"en_US","og_type":"article","og_title":"Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability - Business","og_description":"iCrowdNewswire &nbsp;&nbsp;Jan 27, 2021&nbsp;&nbsp;9:00 AM ET In an urgent notice released on the evening of January 22nd, network security company SonicWall divulged a breach in their NetExtender VPN client and SMB-oriented SMA (Secure Mobile Access) 100 product. This is a product typically employed by users who need to access internal resources safely from satellite locations. [&hellip;] The post Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability appeared first on Financial Market Brief. Continue Reading &rarr;","og_url":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/","og_site_name":"Business","article_published_time":"2021-01-27T14:00:00+00:00","og_image":[{"url":"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png","type":"","width":"","height":""}],"author":"iCrowdNewswire","twitter_card":"summary_large_image","twitter_misc":{"Written by":"iCrowdNewswire","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/","url":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/","name":"Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability - Business","isPartOf":{"@id":"https:\/\/ipsnews.net\/business\/#website"},"primaryImageOfPage":{"@id":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#primaryimage"},"image":{"@id":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#primaryimage"},"thumbnailUrl":"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png","datePublished":"2021-01-27T14:00:00+00:00","author":{"@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/bde271d5882ffdcb71d1a2a961b51fee"},"breadcrumb":{"@id":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#primaryimage","url":"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png","contentUrl":"https:\/\/icrowdnewswire.com\/wp-content\/themes\/icrowdnewswire\/images\/post_via_image.png"},{"@type":"BreadcrumbList","@id":"http:\/\/ipsnews.net\/business\/2021\/01\/27\/breaking-sonicwall-vpn-products-hacked-using-zero-day-vulnerability\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/ipsnews.net\/business\/"},{"@type":"ListItem","position":2,"name":"Breaking: SonicWall VPN Products Hacked Using Zero-Day Vulnerability"}]},{"@type":"WebSite","@id":"https:\/\/ipsnews.net\/business\/#website","url":"https:\/\/ipsnews.net\/business\/","name":"Business","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/ipsnews.net\/business\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/bde271d5882ffdcb71d1a2a961b51fee","name":"iCrowdNewswire","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/aa079ec4d87ad6117c9db7a1a2cde1607ee2f869010252c2d0af346f0047b325?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/aa079ec4d87ad6117c9db7a1a2cde1607ee2f869010252c2d0af346f0047b325?s=96&d=mm&r=g","caption":"iCrowdNewswire"},"sameAs":["https:\/\/heymuse.com\/ips"],"url":"http:\/\/ipsnews.net\/business\/author\/icrowdnewswire\/"}]}},"amp_enabled":true,"_links":{"self":[{"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/101792","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/users\/291"}],"replies":[{"embeddable":true,"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/comments?post=101792"}],"version-history":[{"count":1,"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/101792\/revisions"}],"predecessor-version":[{"id":101793,"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/101792\/revisions\/101793"}],"wp:attachment":[{"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/media?parent=101792"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/categories?post=101792"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/tags?post=101792"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}