
Still, most major remote access vendors have taken their turn with a compromised product at least once, Ivanti, Fortinet, Citrix, and Cisco among them. “The internet-facing VPN appliance is the Achilles’ heel of the perimeter,” he noted. “Swapping vendors swaps one heel for another.”
Customers should ask SonicWall whether the current vulnerabilities are new bugs, or just incomplete fixes for previous issues, he advised. “Then patch, verify the build, and ask why the same door keeps opening.”
AI agents will replicate the attack
Shipley also pointed out that, because two of the highest-severity vulnerabilities were discovered by Anthropic researchers, “you can bet a whole host of AIs will replicate this attack now that it’s public.”
