Fog and Akira ransomware operators are exploiting a critical flaw in SonicWall VPN, identified as CVE-2024-40766, to breach corporate networks. The flaw may allow unauthorized resource access and can cause firewalls to crash. SonicWall advised its users to apply patches as soon as possible and restrict or disable certain accesses to minimize potential risks. Arctic Wolf researchers have detected over 30 ransomware intrusions leveraging unpatched SonicWall SSL VPNs since August 2024.

WordPress Admins Beware! Fake Cache Plugin that Steals Admin Logins
A sophisticated malware campaign is targeting WordPress administrators, using a deceptive caching plugin to steal login details and compromise website security. The malware, which poses