Dossier
Landon Rice
Coverage of Landon Rice in the Nexus archive.
Cybersecurity and Infrastructure Security Agencyorganization2SonicWallorganization1CVE-2026-15409topic1CVE-2026-15410topic1Rapid7organization1Seth Lazarusperson1VulnCheckorganization1Ben Harrisperson1WatchTowrorganization1Bret Fitzgeraldperson1SMA1000 appliancestopic1Ciscoorganization1CVE-2026-20245topic1Mandiantorganization1Cisco Catalyst SD-WAN Managertopic1CVE-2026-20182topic1CVE-2026-20127topic1
- SonicWall customers under threat as attackers exploit 2 zero-days
SonicWall disclosed two zero-day vulnerabilities (CVE-2026-15409 and CVE-2026-15410) being exploited to compromise SMA1000 appliances, with attackers likely targeting ransomware. The vulnerabilities, chained for full system access, were first exploited on June 22, and SonicWall has released patches and mitigation tools.
- Cisco customers encounter another SD-WAN zero-day under attack
Cisco customers are facing another actively exploited zero-day vulnerability (CVE-2026-20245) in its SD-WAN management software, marking the seventh such exploit this year. The flaw allows authenticated attackers to execute commands as root, but Cisco warns no patch or workaround is currently available, and exploitation requires existing credentials or prior vulnerabilities.