Skip to main content
What Caused the SonicWall Cloud Backup Breach? - KH2367

Häufig gestellte Fragen

What Caused the SonicWall Cloud Backup Breach?
 

The SonicWall cloud backup breach occurred after attackers gained unauthorized access to SonicWall’s optional cloud backup service. This service stores firewall configuration data for customer devices, including VPN settings and pre-shared keys (PSKs). As a result, backup files containing sensitive VPN credentials were exposed, potentially enabling attackers to reproduce VPN connections and reach internal networks.

SonicWall confirmed that all customers using the cloud backup feature were affected. To reduce risk, admins should immediately rotate PSKs, reissue user credentials, and audit access to ensure that no shared keys are reused across connections. Even organizations that did not enable cloud backup should review VPN configurations and strengthen credential hygiene as a precaution.

For a clear, step-by-step plan to secure affected environments and roll out updated credentials to teams, follow the SonicWall leak recovery guide.

Privacy Settings / Datenschutz-Einstellungen