Get a Pentest and security assessment of your IT network.

News

Critical SonicWall VPN Portal Bug Allows DoS, Worming RCE

A critical security bug in the SonicWall VPN portal can be used to crash the device and prevent users from connecting to corporate resources. The flaw (CVE-2020-5135) is a stack-based buffer overflow in the NSA. An unskilled attacker could trigger a persistent denial-of-service condition using an unauthenticated HTTP request involving a custom protocol handler. An attacker can simply send crafted requests to the SonicWALL HTTP(S) service and trigger memory corruption. A Shodan search indicated 795,357 vulnerable hosts as of Tuesday.

Source: https://threatpost.com/critical-sonicwall-vpn-bug/160108/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

IntelCrawler profiled Syrian Electronic Army group

News

Wikileaks Vault 7 Imperial projects revealed the 3 hacking tools Achilles, SeaPea and Aeris