SonicWall Report Finds Misconfigurations Driving Surging Cyberattacks in 2025

Simple errors like default passwords and exposed admin panels fueled widespread attacks in 2025

MILPITAS, Calif. — September 16, 2025 — SonicWall today released a new threat brief, revealing that misconfigurations have fueled more than 9.5 million cyberattacks in the first half of the year. The report highlights how basic errors such as directory access misconfigurations, accidental data exposure and authentication failures continue to drive breaches despite the widespread availability of security tools.

According to the report, nearly 70% of organizations faced at least one authentication bypass attempt between January and June. Many incidents were linked to long-standing vulnerabilities like Fortra GoAnywhere MFT, which attackers continue to exploit years after its initial discovery. Consulting services firms were disproportionately impacted, accounting for 46% of all misconfiguration-related detections.

“While the cybersecurity industry often focuses on zero-day exploits and advanced persistent threats, attackers are still finding success through simple missteps,” said Doug McKee, Executive Director of Threat Research at SonicWall. “The fact that misconfigurations remain one of the leading causes of breaches shows that organizations need better visibility, consistent processes and operational support to avoid repeating the same mistakes.”

The threat brief notes that approximately 88% of misconfigurations fall into three categories:

  • Directory access misconfigurations (45%)
  • Accidental data exposure (24%)
  • Authentication failures (19%)

Gartner projects that 99% of cloud security failures will be customer-side misconfigurations by year-end, further underscoring the urgency for organizations to address configuration drift and operational discipline.

SonicWall solutions, such as its Managed Protection Security Suite (MPSS) and SonicSentry MXDR, provide 24/7 monitoring, configuration management, and rapid response for organizations that lack internal bandwidth. Combined with tools like Network Security Manager (NSM), SonicWall AI Monitoring and Insights (SAMI), and Cloud Secure Edge (CSE), customers gain unified control and Zero Trust capabilities across endpoints, networks and identity systems.

“Misconfigurations are not obscure technical flaws; they are operational challenges that persist because they are difficult to manage at scale,” continued McKee. “SonicWall is committed to helping organizations overcome these challenges with a combination of technology, people and processes that reduce complexity and strengthen protection.”

The full September 2025 Threat Brief is available here: https://www.sonicwall.com/resources/brief/sonicwall-threat-brief-2025-the-misconfiguration-epidemic

About SonicWall
SonicWall
is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company. With the ability to build, scale and manage security across the cloud, hybrid and traditional environments in real-time, SonicWall provides seamless protection against the most evasive cyberattacks across endless exposure points for increasingly remote, mobile and cloud-enabled users. With its own threat research center, SonicWall can quickly and economically provide purpose-built security solutions to enable any organization—enterprise, government agencies and SMBs—around the world. For more information, visit www.sonicwall.com or follow us on Twitter, LinkedIn, Facebook and Instagram

latest stories

  • SonicWall、MSPやMSSP向けプラットフォームとしての地位を固めるため、次世代ファイアウォールの刷新、統合管理、組み込みZTNAによってサイバーセキュリティソリューションを強化
    SonicWallの最新のリリースは、組み込みゼロトラスト、組み込み型保証、共同管理サービスを特徴としており、パートナーが拡張性の高いスマートなセキュリティを簡単かつ確実に提供できるように支援 カリフォルニア州ミルピタス — 2025年8月13日 — SonicWallは本日、Generation 8ポートフォリオの一部として9種類の新しいファイアウォールを...
    Read More
  • SonicWallがサイバーセキュリティを再定義し、MSP向けに構築された次世代ネットワークセキュリティソリューションによって新たな基準を確立
    SonicWallは多層セキュリティ、共同管理サービス、統合管理プラットフォームによって安心感を提供し、パートナーが次世代ファイアウォールを活用した継続的なイノベーションを通じてサービスの収益性を高めることを支援しますカリフォルニア州ミルピタス — 2025年05月05日 — SonicWallは本日、エンドツーエンドのサイバー保護と収益性の高いサービス拡大によるマネージドサービスプロバ...
    Read More
  • SonicWallがサイバー攻撃全体の急激な増加について詳細なレポートを発表、企業の潜在的な収益リスクを明らかに
    組織の年間収益の6%以上にサイバー脅威のリスクあり センサーが検知した攻撃時間は125% – 1日(8時間業務)に10回の攻撃を検知 企業は880時間の業務時間の間に平均で1,104時間のクリティカルな攻撃に耐え、46日間のダウンタイムの可能性を回避 マルウェアは5月だけで92%の急増を見せ、前年比30%の増加傾向 ランサムウェアが北米で急増(+15%)、中南米で爆発的増加(...
    Read More