CVE Tools

State of SonicWall Exposure: Firmware Decryption Unlocks New Insights

Bishop FoxBy Bishop Fox Researchers16 min read

ResearchSonicOSSSL VPN
Read at Bishop Fox

Below is the opening; the full story is at Bishop Fox.

From Bishop Fox

This is part two of a three-part series on SonicWall firewalls. See part one for a deep dive into breaking the encryption protecting SWI-formatted firmware. In this second part, we survey the current state of SonicWall appliances on the public internet.

Justification

At Bishop Fox, we pride ourselves on keeping our customers one step ahead of malicious adversaries. Part of what we do to stay on the cutting edge is invest in research that helps us better understand the threat landscape our customers face. The fact is, when it comes to gaining a foothold in a network, edge security devices, and specifically VPN appliances, continue to be an easy target for attackers. In 2024 alone, we’ve seen targeted attacks against appliances from Check Point, Cisco, Ivanti, Fortinet, Palo Alto, Juniper, and SonicWall (just to name a few).…

Continue at Bishop Fox

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store