SonicWall SMA1000 vulnerabilities (CVE-2026-83548, CVE-2026-83549) in active exploitation

2026-09-04T08:51:32Z4336d83dcc386af5a28a2f30c67833481b03686c78e4cda310ea251dbbfa01f2
CVE-2026-83548CVE-2026-83549AI impersonationClickFixDenoGOLD SHERWOODNetNTLMv1SonicWall SMA1000active exploitationinfostealerransomwarevulnerability intelligence

What happened

Sophos reports that SonicWall SMA1000 vulnerabilities CVE-2026-83548 and CVE-2026-83549 are being actively exploited. The feed also covers ransomware operations, AI-brand impersonation, ClickFix malware delivery, NetNTLMv1 abuse, and broader vulnerability trends.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sophos_news
Record identifier
4336d83dcc386af5a28a2f30c67833481b03686c78e4cda310ea251dbbfa01f2
Enrichment time
2026-09-04T08:51:32Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.