:

SONICWALL ALERTS TO ACTIVELY EXPLOITED ZERO-DAYS

SECURITY DESK1 MIN READ
WED, SEP 2, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

SonicWall has warned customers of two new zero-day vulnerabilities in its SMA1000 appliances being chained together in active remote code execution attacks.

The vulnerabilities allow threat actors to gain unauthorized access and execute arbitrary code on affected systems. SonicWall did not disclose specific technical details to prevent wider exploitation before patches are available. The SMA1000 is a secure mobile access appliance used by enterprises for remote connectivity. The chained exploit demonstrates attackers are actively targeting critical infrastructure and corporate networks. Affected customers should immediately implement workarounds provided by SonicWall and monitor systems for signs of compromise. The vendor is preparing patches and will release details as updates become available. This marks another significant security incident for SonicWall, which has faced multiple vulnerability disclosures in recent years. Organizations using SMA1000 appliances should prioritize applying security updates once released and review access logs for suspicious activity.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

The FBI is investigating a newly launched dark web service called Nexus that claims to possess digital scans of over 153 million driver's licenses from US and Canadian residents. The service is actively selling the stolen identification data.

JUST NOWAI Desk

International law enforcement agencies and private sector partners have seized infrastructure belonging to the Sality malware botnet, a peer-to-peer network used for unauthorized computer access and data theft.

1H AGOIndustry Desk

A newly launched dark web marketplace is selling digital scans of over 153 million driver's licenses from U.S. and Canadian residents. The FBI's New Orleans field office has opened an investigation into the breach, which appears to originate from a Louisiana-based identity verification company.

10H AGOSecurity Desk

Five Venezuelan nationals have pleaded guilty to conducting ATM jackpotting attacks across the United States, using malware to extract cash from automated teller machines.

11H AGOIndustry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.