
Pulse of the Public
Imaginary ImageSonicWall has issued an emergency alert after discovering active zero-day attacks exploiting two critical vulnerabilities in its Secure Mobile Access 1000 series VPN appliances. Cybersecurity experts urge enterprise administrators to apply available hotfixes immediately to prevent unauthenticated remote code execution.
The US Department of Justice and FBI have seized key internet domains used by Chinese state-sponsored group QTFY to target sensitive U.S. infrastructure and government agencies. The operation rendered two major cyber-espionage platforms, QScan and QTRouter, completely inoperable.
Cybersecurity vendor SonicWall has issued urgent security updates after confirming that threat actors are actively exploiting two zero-day vulnerabilities in its enterprise Secure Mobile Access 1000 series VPN appliances.
Cybersecurity monitoring groups have warned that nearly 22,000 Microsoft Exchange servers exposed to the internet remain unpatched against a high-severity authentication bypass vulnerability. Authorities report that exploit code is active online, enabling unauthorized actors to hijack corporate mailboxes and access sensitive communications.