Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
SonicWall Confirms State-Sponsored Hackers Behind the Massive Firewall Backup Breach

SonicWall Confirms State-Sponsored Hackers Behind the Massive Firewall Backup Breach

Posted on November 6, 2025November 6, 2025 By CWS

SonicWall, a worldwide cybersecurity firm, confirmed that state-sponsored hackers have been behind a current incident involving unauthorized entry to firewall backup recordsdata.

The breach started in early September, when the corporate detected suspicious exercise involving the obtain of backup firewall configuration recordsdata saved in a cloud setting.

Upon discovery, SonicWall shortly activated its incident response plan, known as in Mandiant, a widely known cybersecurity response agency, and notified companions and clients immediately.

The corporate maintained frequent and clear communication, internet hosting dwell Q&A periods and offering instruments and steerage to assist companions reply successfully.

SonicWall additionally provided business concessions to assist companions as they labored by means of remediation steps.

Mandiant Investigation Reveals Cloud-Remoted Assault

Mandiant’s thorough investigation has now concluded. The outcomes present that the attackers, linked to a state-sponsored risk group, used an API name to entry cloud backup recordsdata saved in a selected cloud setting.

In line with the findings, this incident didn’t relate to the current world Akira ransomware assaults concentrating on firewalls and edge gadgets.

Importantly, SonicWall confirmed that its merchandise, firmware, and different programs, like supply code and buyer networks, weren’t impacted or compromised.

All remediation actions really helpful by Mandiant have been applied, and SonicWall continues to work carefully with safety consultants to strengthen its cloud and community infrastructure additional.

The corporate emphasised that its long-standing deal with safety excellence and associate assist stays agency. Earlier within the 12 months, SonicWall launched a Safe by Design modernization initiative.

This included updates to product structure, cloud operations, inside cybersecurity practices, and the appointment of a brand new Chief Data Officer.

The corporate additionally continues to put money into superior response groups and cutting-edge safety instruments. SonicWall’s dedication to remain forward is underscored by exterior validation.

Whilst nation-state risk actors more and more goal safety distributors, SonicWall is dedicated to transparency, sturdy partnerships, and relentless enchancment to safeguard its clients and companions worldwide.

Observe us on Google Information, LinkedIn, and X for every day cybersecurity updates. Contact us to function your tales.

Cyber Security News Tags:Backup, Breach, Confirms, Firewall, Hackers, Massive, SonicWall, StateSponsored

Post navigation

Previous Post: Follow Pragmatic Interventions to Keep Agentic AI in Check
Next Post: Truffle Security Raises $25 Million for Secret Scanning Engine

Related Posts

Kimwolf Android Botnet Hijacked 1.8 Million Android Devices Worldwide Kimwolf Android Botnet Hijacked 1.8 Million Android Devices Worldwide Cyber Security News
DarkCloud Stealer Attacking Financial Companies With Weaponized RAR Attachments DarkCloud Stealer Attacking Financial Companies With Weaponized RAR Attachments Cyber Security News
INE Highlights Enterprise Shift Toward Hands-On Training as Skills Gaps Widen INE Highlights Enterprise Shift Toward Hands-On Training as Skills Gaps Widen Cyber Security News
New EDR-Freeze Tool That Puts EDRs And Antivirus Into A Coma State New EDR-Freeze Tool That Puts EDRs And Antivirus Into A Coma State Cyber Security News
Zloader Malware Repurposed to Act as Entry Point Into Corporate Environments to Deploy Ransomware Zloader Malware Repurposed to Act as Entry Point Into Corporate Environments to Deploy Ransomware Cyber Security News
Citrix NetScaler Targeted by Sophisticated Scanning Campaign Citrix NetScaler Targeted by Sophisticated Scanning Campaign Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Critical TP-Link Vulnerabilities Demand Immediate Firmware Updates
  • CISA Alerts on VMware ESXi Vulnerability in Ransomware
  • Cybercriminals Exploit Cloud Services for Phishing
  • Addressing SOC False Negatives with Interactive Analysis
  • Interlock Ransomware Utilizes Zero-Day to Evade Security

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Critical TP-Link Vulnerabilities Demand Immediate Firmware Updates
  • CISA Alerts on VMware ESXi Vulnerability in Ransomware
  • Cybercriminals Exploit Cloud Services for Phishing
  • Addressing SOC False Negatives with Interactive Analysis
  • Interlock Ransomware Utilizes Zero-Day to Evade Security

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark