Häufig gestellte Fragen
The SonicWALL VPN breach involved the theft of sensitive firewall configuration backups from SonicWALL’s cloud backup service. These backups may contain critical data such as VPN usernames, passwords, and pre-shared keys (PSKs) used to authenticate VPN connections. In some cases, this information could allow attackers to reestablish VPN tunnels or gain access to internal corporate networks without detection.
Because pre-shared keys and user credentials were stored in these configuration files, it is vital for all SonicWALL administrators to treat the incident as a serious security event. Immediate steps should include rotating all PSKs, resetting user passwords, auditing connected devices, and reviewing access logs for unauthorized activity. Even if your organization did not directly use the cloud backup service, shared credentials or overlapping access could still pose a risk.
To protect your network and safely update affected VPN configurations, follow the recommendations in the SonicWALL leak guide.
