A critical authentication bypass vulnerability, CVE-2024-53704, in SonicWall firewalls is being actively exploited. Following the release of proof-of-concept code, attackers can remotely hijack VPN sessions by sending crafted cookies, bypassing MFA and exposing internal resources. Organizations are urged to patch their devices immediately, as over 4,500 unpatched servers remain vulnerable, risking potential ransomware attacks and network compromise.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,