By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: SonicWall Confirms State-Sponsored Hackers Behind September Cloud Backup Breach
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Computing > SonicWall Confirms State-Sponsored Hackers Behind September Cloud Backup Breach
Computing

SonicWall Confirms State-Sponsored Hackers Behind September Cloud Backup Breach

News Room
Last updated: 2025/11/06 at 1:03 AM
News Room Published 6 November 2025
Share
SonicWall Confirms State-Sponsored Hackers Behind September Cloud Backup Breach
SHARE

Nov 06, 2025Ravie LakshmananIncident Response / Cloud Security

SonicWall has formally implicated state-sponsored threat actors as behind the September security breach that led to the unauthorized exposure of firewall configuration backup files.

“The malicious activity – carried out by a state-sponsored threat actor – was isolated to the unauthorized access of cloud backup files from a specific cloud environment using an API call,” the company said in a statement released this week. “The incident is unrelated to ongoing global Akira ransomware attacks on firewalls and other edge devices.”

The disclosure comes nearly a month after the company said an unauthorized party accessed firewall configuration backup files for all customers who have used the cloud backup service. In September, it claimed that the threat actors accessed the backup files stored in the cloud for less than 5% of its customers.

DFIR Retainer Services

SonicWall, which engaged the services of Google-owned Mandiant to investigate the breach, said it did not affect its products or firmware, or any of its other systems. It also said it has adopted various remedial actions recommended by Mandiant to harden its network and cloud infrastructure, and that it will continue to improve its security posture.

“As nation-state–backed threat actors increasingly target edge security providers, especially those serving SMB and distributed environments, SonicWall is committed to strengthening its position as a leader for partners and their SMB customers on the front lines of this escalation,” it added.

SonicWall customers are advised to log in to MySonicWall.com and check for their devices, and reset the credentials for impacted services, if any. The company has also released an Online Analysis Tool and Credentials Reset Tool to identify services that require remediation and perform credential-related security tasks, respectively.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Click 20% Right Off the Price of the Corsair Dark Core RG Pro Gaming Mouse Click 20% Right Off the Price of the Corsair Dark Core RG Pro Gaming Mouse
Next Article Blazpay, Algorand, and TRON: Exploring the Most Promising Crypto AI Opportunity of 2025 Blazpay, Algorand, and TRON: Exploring the Most Promising Crypto AI Opportunity of 2025
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

France probes ‘foreign interference’ after remote control malware found on passenger ferry
News
APT28 Targets Ukrainian UKR-net Users in Long-Running Credential Phishing Campaign
APT28 Targets Ukrainian UKR-net Users in Long-Running Credential Phishing Campaign
Computing
AWS Debuts “DevOps Agent” to Automate Incident Response and Improve System Reliability
AWS Debuts “DevOps Agent” to Automate Incident Response and Improve System Reliability
News
Li Auto says it will push for “major overseas growth” this year · TechNode
Li Auto says it will push for “major overseas growth” this year · TechNode
Computing

You Might also Like

APT28 Targets Ukrainian UKR-net Users in Long-Running Credential Phishing Campaign
Computing

APT28 Targets Ukrainian UKR-net Users in Long-Running Credential Phishing Campaign

3 Min Read
Li Auto says it will push for “major overseas growth” this year · TechNode
Computing

Li Auto says it will push for “major overseas growth” this year · TechNode

3 Min Read
NE2NE’s PDFFlex Eliminates Data Paralysis by Automating PDF Extraction   | HackerNoon
Computing

NE2NE’s PDFFlex Eliminates Data Paralysis by Automating PDF Extraction | HackerNoon

0 Min Read
Intel Compute Runtime 25.48.36300.8 Brings More Performance Optimizations & Xe3 Fixes
Computing

Intel Compute Runtime 25.48.36300.8 Brings More Performance Optimizations & Xe3 Fixes

2 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?