Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
SonicWall Confirms State-Sponsored Hackers Behind September Cloud Backup Breach

SonicWall Confirms State-Sponsored Hackers Behind September Cloud Backup Breach

Posted on November 6, 2025November 6, 2025 By CWS

Nov 06, 2025Ravie LakshmananIncident Response / Cloud Safety
SonicWall has formally implicated state-sponsored menace actors as behind the September safety breach that led to the unauthorized publicity of firewall configuration backup recordsdata.
“The malicious exercise – carried out by a state-sponsored menace actor – was remoted to the unauthorized entry of cloud backup recordsdata from a selected cloud surroundings utilizing an API name,” the corporate mentioned in an announcement launched this week. “The incident is unrelated to ongoing world Akira ransomware assaults on firewalls and different edge gadgets.”
The disclosure comes almost a month after the corporate mentioned an unauthorized get together accessed firewall configuration backup recordsdata for all prospects who’ve used the cloud backup service. In September, it claimed that the menace actors accessed the backup recordsdata saved within the cloud for lower than 5% of its prospects.

SonicWall, which engaged the companies of Google-owned Mandiant to research the breach, mentioned it didn’t have an effect on its merchandise or firmware, or any of its different programs. It additionally mentioned it has adopted varied remedial actions really helpful by Mandiant to harden its community and cloud infrastructure, and that it’ll proceed to enhance its safety posture.
“As nation-state–backed menace actors more and more goal edge safety suppliers, particularly these serving SMB and distributed environments, SonicWall is dedicated to strengthening its place as a pacesetter for companions and their SMB prospects on the entrance traces of this escalation,” it added.
SonicWall prospects are suggested to log in to MySonicWall.com and verify for his or her gadgets, and reset the credentials for impacted companies, if any. The corporate has additionally launched an On-line Evaluation Instrument and Credentials Reset Instrument to determine companies that require remediation and carry out credential-related safety duties, respectively.

The Hacker News Tags:Backup, Breach, Cloud, Confirms, Hackers, September, SonicWall, StateSponsored

Post navigation

Previous Post: APT-C-60 Attacking Job Seekers to Download Weaponized VHDX File from Google Drive to Steal Sensitive Data
Next Post: Hackers Weaponize Windows Hyper-V to Hide Linux VM and Evade EDR Detection

Related Posts

Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF Files Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF Files The Hacker News
Italy Fines Apple €98.6 Million Over ATT Rules Limiting App Store Competition Italy Fines Apple €98.6 Million Over ATT Rules Limiting App Store Competition The Hacker News
AI Is Transforming Cybersecurity Adversarial Testing AI Is Transforming Cybersecurity Adversarial Testing The Hacker News
Lazarus Hits Web3, Intel/AMD TEEs Cracked, Dark Web Leak Tool & More Lazarus Hits Web3, Intel/AMD TEEs Cracked, Dark Web Leak Tool & More The Hacker News
North Korea-linked Actors Exploit React2Shell to Deploy New EtherRAT Malware North Korea-linked Actors Exploit React2Shell to Deploy New EtherRAT Malware The Hacker News
Security Patches Released by Over 60 Software Vendors Security Patches Released by Over 60 Software Vendors The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News