---
title: "SonicWall VPN Zero-Day: To disrupt or not to disrupt?"
description: SonicWall Zero-Day SSL VPN and SMA vulnerability. For MSPs, the options are to disconnect SSL VPN, whitelist VPN users, turn on MFA, or wait for a patch.
image: https://blog.canauri.com/hubfs/SonicWall%20Corporate%20Office.jpg
---

- [319-383-0165](tel:+1.319-383-0165)

- [Free Tools](https://www.getcryptostopper.com/free-tools)
- [About](https://www.getcryptostopper.com/about)
- [Partners](https://www.getcryptostopper.com/partners)

[![CryptoStopper™](https://blog.canauri.com/hubfs/cryptostopper-logo.png)](https://www.getcryptostopper.com/)

- [CryptoStopper™](https://www.getcryptostopper.com/cryptostopper/)
- [For MSPs](https://www.getcryptostopper.com/cryptostopper-for-msps/)
- [Blog](https://blog.getcryptostopper.com/)

[Pricing](https://www.getcryptostopper.com/pricing)

# SonicWall VPN Zero-Day: To disrupt or not to disrupt?

 January 23, 2021 [Greg Edwards](https://blog.canauri.com/author/greg-edwards)

10:15 PM CST Friday 1/22/2021 SonicWall released information that they had been compromised by a zero-day SSL VPN and SMA vulnerability. For MSPs using SonicWall, the options are to disconnect SSL VPN, whitelist VPN users, turn on MFA, or wait for a patch. [SonicWall has released](https://www.sonicwall.com/blog/2021/01/sonicwall-identifies-coordinated-attack-on-netextender-vpn-client-version-10-and-sma-100-series/) little information regarding the vulnerability. SonicWall has said that their own San Jose corporate offices were compromised and that is how they discovered the vulnerability.   

---

**Please see IMPORTANT update below before taking action!**

---

![SonicWall Corporate Office](https://blog.canauri.com/hs-fs/hubfs/SonicWall%20Corporate%20Office.jpg?width=600&name=SonicWall%20Corporate%20Office.jpg)

**UPDATED 9:45 PM CST Saturday 1/23/2021**

SonicWall has [determined this Zero Day](https://www.sonicwall.com/blog/2021/01/sonicwall-identifies-coordinated-attack-on-netextender-vpn-client-version-10-and-sma-100-series/) does not affect 10.x NetExtender SSL VPN Client, but does affect the SMA series products. This is an unusual reversal from the previous day's critical alert calling for immediate action. This no doubt caused countless hours of MSP time determining and implementing steps to mitigate the risk of unauthorized attackers accessing systems.

Transparency and communication are critical from security vendors, so I encourage the community to take a breath before judging SonicWall's decision to sound the alarm bells. This isn't to say SonicWall doesn't need to re-evaluate their processes, tracking of threats and ability to monitor their solutions. Additional information should be communicated on the nature of the perceived zero-day and where any failures may have been in the diagnosis and forensic process.  

**Enabling MFA: While there is no longer a zero-day threat to drive MFA adoption, do not wait for the next incident. If you have not already implemented MFA, you need a plan to do so now. This demonstrates the critical need for using MFA everywhere possible, certainly with remote access.  **

**The questions are:**

Who has access to the zero-day?

Are my clients vulnerable?

Which option should I choose? Disconnect VPN, whitelist, turn on MFA or wait for the patch.

When will a patch be available?

 

**Who has access?**

It is likely a state actor, as this is a very sophisticated attack. BUT we don’t know. This zero-day could be available on the dark web for any cybercriminal to use. In all likelihood, the zero-day is in the hands of one state actor and not available on the dark web. Again, we don’t know and need to take action because of the unknown.

 

**Are my clients vulnerable?**

Yes, if your clients are using SonicWall SSL VPN 10.x (released 2020) and don’t have MFA enabled on SonicWall firewalls.

NO - updated information [from SonicWall](https://www.sonicwall.com/blog/2021/01/sonicwall-identifies-coordinated-attack-on-netextender-vpn-client-version-10-and-sma-100-series/) determined that the NetExtender client is not vulnerable to the Zero Day.

 

**Which option should I choose?**

Enabling MFA is the best option but is more complicated than simply clicking a button. It requires a third-party provider and lots of MSPs integrate to AD through a RADIUS server. This adds complication, time and cost to implement.

Disconnect. This is as simple as clicking a button and may be the quickest, safest way to protect your clients. The downside, of course, is we are in a pandemic and almost every client has users working from home.

Whitelist. This is time consuming and not as secure as any of us would like. You have to collect all of the IP addresses from the user’s home connection and create the whitelist on every firewall and then test to make sure the users can connect.

Wait for a patch. SonicWall is almost certainly working around the clock on a patch, and my guess is they will release a patch by late Sunday 1/24/2021. This is pure speculation based on previous critical patches and how quickly SonicWall has responded in the past. SonicWall no doubt is working fervently to test and release a patch, but it could be days or weeks.

**So, what to do?**

My recommendation would be to enable MFA if that is practical, or use a combination of disconnect, whitelist, and wait. You absolutely must come up with a plan and TALK to your clients. This is an all-hands-on-deck moment and your clients will appreciate that you have their best interests in mind and are protecting them.

### Share this:

- [Tweet](https://twitter.com/share)

[Previous Post How MSPs Can Neutralize the Biggest Cyber Threat](https://blog.canauri.com/how-msps-can-neutralize-the-biggest-cyber-threat) [Next Post The Five Most Frightening Forms of Ransomware](https://blog.canauri.com/the-five-most-frightening-forms-of-ransomware)

[![Entrepreneur Link](https://blog.canauri.com/hs-fs/hubfs/Watch_Point_Data_December2017_Theme/images/Feature-on-Entrepreneur.com_.png?width=300&height=300&name=Feature-on-Entrepreneur.com_.png)](https://www.entrepreneur.com/article/286698)

### Share

[![Share on Facebook](https://static.hubspot.com/final/img/common/icons/social/facebook-24x24.png)](http://www.facebook.com/share.php?u=https%3A%2F%2Fblog.canauri.com%2Fsonicwall-vpn-zero-day-to-disrupt-or-not-to-disrupt%3Futm_medium%3Dsocial%26utm_source%3Dfacebook) [![Share on LinkedIn](https://static.hubspot.com/final/img/common/icons/social/linkedin-24x24.png)](http://www.linkedin.com/shareArticle?mini=true&url=https%3A%2F%2Fblog.canauri.com%2Fsonicwall-vpn-zero-day-to-disrupt-or-not-to-disrupt%3Futm_medium%3Dsocial%26utm_source%3Dlinkedin) [![Share on Twitter](https://static.hubspot.com/final/img/common/icons/social/twitter-24x24.png)](https://twitter.com/intent/tweet?original_referer=https%3A%2F%2Fblog.canauri.com%2Fsonicwall-vpn-zero-day-to-disrupt-or-not-to-disrupt%3Futm_medium%3Dsocial%26utm_source%3Dtwitter&url=https%3A%2F%2Fblog.canauri.com%2Fsonicwall-vpn-zero-day-to-disrupt-or-not-to-disrupt%3Futm_medium%3Dsocial%26utm_source%3Dtwitter&source=tweetbutton&text=SonicWall%20VPN%20Zero-Day%3A%20To%20disrupt%20or%20not%20to%20disrupt%3F) [![Share on Pinterest](https://static.hubspot.com/final/img/common/icons/social/pinterest-24x24.png)](http://pinterest.com/pin/create/button/?url=https%3A%2F%2Fblog.canauri.com%2Fsonicwall-vpn-zero-day-to-disrupt-or-not-to-disrupt%3Futm_medium%3Dsocial%26utm_source%3Dpinterest&media=) [![Share on Email](https://static.hubspot.com/final/img/common/icons/social/email-24x24.png)](mailto:?subject=Check%20out%20https%3A%2F%2Fblog.canauri.com%2Fsonicwall-vpn-zero-day-to-disrupt-or-not-to-disrupt%3Futm_medium%3Dsocial%26utm_source%3Demail%20&body=Check%20out%20https%3A%2F%2Fblog.canauri.com%2Fsonicwall-vpn-zero-day-to-disrupt-or-not-to-disrupt%3Futm_medium%3Dsocial%26utm_source%3Demail)

### Subscribe to Email Updates

### Recent Posts

### Posts by Topic

- [Cyber Threats (164)](https://blog.canauri.com/topic/cyber-threats)
- [Ransomware (91)](https://blog.canauri.com/topic/ransomware)
- [Data Breach (68)](https://blog.canauri.com/topic/data-breach)
- [Business (49)](https://blog.canauri.com/topic/business)
- [Scams (19)](https://blog.canauri.com/topic/scams)
- [cybersecurity (14)](https://blog.canauri.com/topic/cybersecurity)
- [Cyber Attack (10)](https://blog.canauri.com/topic/cyber-attack)
- [Uncategorized (9)](https://blog.canauri.com/topic/uncategorized)
- [Breach (8)](https://blog.canauri.com/topic/breach)
- [Data (8)](https://blog.canauri.com/topic/data)
- [Phishing (7)](https://blog.canauri.com/topic/phishing)
- [cyber (5)](https://blog.canauri.com/topic/cyber)
- [decrypters (5)](https://blog.canauri.com/topic/decrypters)
- [security (5)](https://blog.canauri.com/topic/security)
- [Insider (4)](https://blog.canauri.com/topic/insider)
- [Ransomware Decrypters (4)](https://blog.canauri.com/topic/ransomware-decrypters)
- [cybercrime (4)](https://blog.canauri.com/topic/cybercrime)
- [managed service providers (4)](https://blog.canauri.com/topic/managed-service-providers)
- [ransom (4)](https://blog.canauri.com/topic/ransom)
- [ransomware ransom (4)](https://blog.canauri.com/topic/ransomware-ransom)
- [Banking Trojans (3)](https://blog.canauri.com/topic/banking-trojans)
- [Firewalls (3)](https://blog.canauri.com/topic/firewalls)
- [Press Release (3)](https://blog.canauri.com/topic/press-release)
- [Ransomware as a Service (3)](https://blog.canauri.com/topic/ransomware-as-a-service)
- [WannaCry (3)](https://blog.canauri.com/topic/wannacry)
- [Zero Day Vulnerability (3)](https://blog.canauri.com/topic/zero-day-vulnerability)
- [business email compromise (3)](https://blog.canauri.com/topic/business-email-compromise)
- [cyber security (3)](https://blog.canauri.com/topic/cyber-security)
- [decryptors (3)](https://blog.canauri.com/topic/decryptors)
- [ransomware attack (3)](https://blog.canauri.com/topic/ransomware-attack)
- [BlueKeep (2)](https://blog.canauri.com/topic/bluekeep)
- [CEO fraud (2)](https://blog.canauri.com/topic/ceo-fraud)
- [COVID-19 (2)](https://blog.canauri.com/topic/covid-19)
- [COVID-19 cybersecurity (2)](https://blog.canauri.com/topic/covid-19-cybersecurity)
- [Cyberattack (2)](https://blog.canauri.com/topic/cyberattack)
- [Fileless (2)](https://blog.canauri.com/topic/fileless)
- [Fileless Malware (2)](https://blog.canauri.com/topic/fileless-malware)
- [Fileless Ransomare (2)](https://blog.canauri.com/topic/fileless-ransomare)
- [Fortnite vulnerability (2)](https://blog.canauri.com/topic/fortnite-vulnerability)
- [MSPs (2)](https://blog.canauri.com/topic/msps)
- [Patch (2)](https://blog.canauri.com/topic/patch)
- [Small and Medium Enterprises Cybersecurity (2)](https://blog.canauri.com/topic/small-and-medium-enterprises-cybersecurity)
- [Spear Phishing (2)](https://blog.canauri.com/topic/spear-phishing)
- [WFH (2)](https://blog.canauri.com/topic/wfh)
- [Wi-Fi Connections (2)](https://blog.canauri.com/topic/wi-fi-connections)
- [Zero Day (2)](https://blog.canauri.com/topic/zero-day)
- [Zero Day Attacks (2)](https://blog.canauri.com/topic/zero-day-attacks)
- [bitcoin (2)](https://blog.canauri.com/topic/bitcoin)
- [bitcoins (2)](https://blog.canauri.com/topic/bitcoins)
- [cryptocurrency (2)](https://blog.canauri.com/topic/cryptocurrency)
- [cryptocurrency mining (2)](https://blog.canauri.com/topic/cryptocurrency-mining)
- [cryptojacking (2)](https://blog.canauri.com/topic/cryptojacking)
- [cyber attacks on hospitals (2)](https://blog.canauri.com/topic/cyber-attacks-on-hospitals)
- [cybersecurity jobs (2)](https://blog.canauri.com/topic/cybersecurity-jobs)
- [defray (2)](https://blog.canauri.com/topic/defray)
- [defray ransomware (2)](https://blog.canauri.com/topic/defray-ransomware)
- [fortnite (2)](https://blog.canauri.com/topic/fortnite)
- [gandcrab ransomware (2)](https://blog.canauri.com/topic/gandcrab-ransomware)
- [hacking (2)](https://blog.canauri.com/topic/hacking)
- [health (2)](https://blog.canauri.com/topic/health)
- [healthcare (2)](https://blog.canauri.com/topic/healthcare)
- [hospital cybersecurity (2)](https://blog.canauri.com/topic/hospital-cybersecurity)
- [mac malware (2)](https://blog.canauri.com/topic/mac-malware)
- [municipalities cyberattack (2)](https://blog.canauri.com/topic/municipalities-cyberattack)
- [municipalities ransomware (2)](https://blog.canauri.com/topic/municipalities-ransomware)
- [passwords (2)](https://blog.canauri.com/topic/passwords)
- [ransomware attacks (2)](https://blog.canauri.com/topic/ransomware-attacks)
- [ransomware normal (2)](https://blog.canauri.com/topic/ransomware-normal)
- [scareware (2)](https://blog.canauri.com/topic/scareware)
- [two-factor authentication (2)](https://blog.canauri.com/topic/two-factor-authentication)
- [2018 cybersecurity (1)](https://blog.canauri.com/topic/2018-cybersecurity)
- [2018 cybersecurity review (1)](https://blog.canauri.com/topic/2018-cybersecurity-review)
- [2019 cybersecurity predictions (1)](https://blog.canauri.com/topic/2019-cybersecurity-predictions)
- [2019 predictions (1)](https://blog.canauri.com/topic/2019-predictions)
- [2020 Cybersecurity Predictions (1)](https://blog.canauri.com/topic/2020-cybersecurity-predictions)
- [2FA (1)](https://blog.canauri.com/topic/2fa)
- [Arizona (1)](https://blog.canauri.com/topic/arizona)
- [Arizona beverages ransomware (1)](https://blog.canauri.com/topic/arizona-beverages-ransomware)
- [BEC (1)](https://blog.canauri.com/topic/bec)
- [BEC Attacks (1)](https://blog.canauri.com/topic/bec-attacks)
- [BitPaymer (1)](https://blog.canauri.com/topic/bitpaymer)
- [BlueKeep Exploit (1)](https://blog.canauri.com/topic/bluekeep-exploit)
- [BlueKeep Vulnerability (1)](https://blog.canauri.com/topic/bluekeep-vulnerability)
- [CISO (1)](https://blog.canauri.com/topic/ciso)
- [Chief Information Security Officer (1)](https://blog.canauri.com/topic/chief-information-security-officer)
- [Coronavirus (1)](https://blog.canauri.com/topic/coronavirus)
- [Coronavirus scams (1)](https://blog.canauri.com/topic/coronavirus-scams)
- [CryptoMix (1)](https://blog.canauri.com/topic/cryptomix)
- [Cyber Liability Insurance (1)](https://blog.canauri.com/topic/cyber-liability-insurance)
- [DLL (1)](https://blog.canauri.com/topic/dll)
- [DLL CryptoMix (1)](https://blog.canauri.com/topic/dll-cryptomix)
- [Data Leak (1)](https://blog.canauri.com/topic/data-leak)
- [Deepfakes (1)](https://blog.canauri.com/topic/deepfakes)
- [Dridex (1)](https://blog.canauri.com/topic/dridex)
- [ERP (1)](https://blog.canauri.com/topic/erp)
- [ERP Systems (1)](https://blog.canauri.com/topic/erp-systems)
- [Enterprise Resource Planning (1)](https://blog.canauri.com/topic/enterprise-resource-planning)
- [Exactis (1)](https://blog.canauri.com/topic/exactis)
- [FIFA (1)](https://blog.canauri.com/topic/fifa)
- [Fortnite ransomware (1)](https://blog.canauri.com/topic/fortnite-ransomware)
- [GandCrab (1)](https://blog.canauri.com/topic/gandcrab)
- [Google (1)](https://blog.canauri.com/topic/google)
- [Have I been pwned (1)](https://blog.canauri.com/topic/have-i-been-pwned)
- [Hospitals Ransomware (1)](https://blog.canauri.com/topic/hospitals-ransomware)
- [Kirk (1)](https://blog.canauri.com/topic/kirk)
- [Kirk Ransomware (1)](https://blog.canauri.com/topic/kirk-ransomware)
- [LockBit (1)](https://blog.canauri.com/topic/lockbit)
- [LockerGoga (1)](https://blog.canauri.com/topic/lockergoga)
- [LockerGoga Ransomware (1)](https://blog.canauri.com/topic/lockergoga-ransomware)
- [M&A (1)](https://blog.canauri.com/topic/ma)
- [Malware (1)](https://blog.canauri.com/topic/malware)
- [Marriott data breach (1)](https://blog.canauri.com/topic/marriott-data-breach)
- [NASA (1)](https://blog.canauri.com/topic/nasa)
- [NASA Data Breach (1)](https://blog.canauri.com/topic/nasa-data-breach)
- [NCSAM (1)](https://blog.canauri.com/topic/ncsam)
- [National Cyber Security Awareness Month (1)](https://blog.canauri.com/topic/national-cyber-security-awareness-month)
- [Norsk (1)](https://blog.canauri.com/topic/norsk)
- [Norsk Hydro (1)](https://blog.canauri.com/topic/norsk-hydro)
- [PGA (1)](https://blog.canauri.com/topic/pga)
- [Patch Tuesday (1)](https://blog.canauri.com/topic/patch-tuesday)
- [Petya (1)](https://blog.canauri.com/topic/petya)
- [Petya Ransomware (1)](https://blog.canauri.com/topic/petya-ransomware)
- [Quora data breach (1)](https://blog.canauri.com/topic/quora-data-breach)
- [RDP (1)](https://blog.canauri.com/topic/rdp)
- [Remote Desktop Protocol (1)](https://blog.canauri.com/topic/remote-desktop-protocol)
- [Remote workforce (1)](https://blog.canauri.com/topic/remote-workforce)
- [RobbinHood Ransomware (1)](https://blog.canauri.com/topic/robbinhood-ransomware)
- [Robbinhood (1)](https://blog.canauri.com/topic/robbinhood)
- [SEC (1)](https://blog.canauri.com/topic/sec)
- [SME (1)](https://blog.canauri.com/topic/sme)
- [SME Cybersecurity (1)](https://blog.canauri.com/topic/sme-cybersecurity)
- [SamSam (1)](https://blog.canauri.com/topic/samsam)
- [SamSam Ransomware (1)](https://blog.canauri.com/topic/samsam-ransomware)
- [Security Breach Notification Laws (1)](https://blog.canauri.com/topic/security-breach-notification-laws)
- [Small and Medium Enterprises (1)](https://blog.canauri.com/topic/small-and-medium-enterprises)
- [Sorebrect (1)](https://blog.canauri.com/topic/sorebrect)
- [Star Trek (1)](https://blog.canauri.com/topic/star-trek)
- [Syrk ransomware (1)](https://blog.canauri.com/topic/syrk-ransomware)
- [Target (1)](https://blog.canauri.com/topic/target)
- [Vidar (1)](https://blog.canauri.com/topic/vidar)
- [Vidar infostealer (1)](https://blog.canauri.com/topic/vidar-infostealer)
- [Vidar trojan (1)](https://blog.canauri.com/topic/vidar-trojan)
- [WCry (1)](https://blog.canauri.com/topic/wcry)
- [Wana Decryptor (1)](https://blog.canauri.com/topic/wana-decryptor)
- [WanaCry (1)](https://blog.canauri.com/topic/wanacry)
- [WanaDecryptor (1)](https://blog.canauri.com/topic/wanadecryptor)
- [WannaCry 2.0 (1)](https://blog.canauri.com/topic/wannacry-2-0)
- [World Cup (1)](https://blog.canauri.com/topic/world-cup)
- [Yahoo (1)](https://blog.canauri.com/topic/yahoo)
- [Yahoo Data Breach (1)](https://blog.canauri.com/topic/yahoo-data-breach)
- [anatova (1)](https://blog.canauri.com/topic/anatova)
- [anatova ransomware (1)](https://blog.canauri.com/topic/anatova-ransomware)
- [arizona beverages (1)](https://blog.canauri.com/topic/arizona-beverages)
- [atlanta (1)](https://blog.canauri.com/topic/atlanta)
- [automobile (1)](https://blog.canauri.com/topic/automobile)
- [automobile hacking (1)](https://blog.canauri.com/topic/automobile-hacking)
- [azorult trojan (1)](https://blog.canauri.com/topic/azorult-trojan)
- [banking trojan (1)](https://blog.canauri.com/topic/banking-trojan)
- [bentley (1)](https://blog.canauri.com/topic/bentley)
- [bitpaymer ransomware (1)](https://blog.canauri.com/topic/bitpaymer-ransomware)
- [blackmail (1)](https://blog.canauri.com/topic/blackmail)
- [budgeting (1)](https://blog.canauri.com/topic/budgeting)
- [capital one (1)](https://blog.canauri.com/topic/capital-one)
- [capital one data breach (1)](https://blog.canauri.com/topic/capital-one-data-breach)
- [car hacking (1)](https://blog.canauri.com/topic/car-hacking)
- [care (1)](https://blog.canauri.com/topic/care)
- [chicago tribune (1)](https://blog.canauri.com/topic/chicago-tribune)
- [collection (1)](https://blog.canauri.com/topic/collection)
- [collection 1 (1)](https://blog.canauri.com/topic/collection-1)
- [coronavirus cybersecurity (1)](https://blog.canauri.com/topic/coronavirus-cybersecurity)
- [coronavirus phishing (1)](https://blog.canauri.com/topic/coronavirus-phishing)
- [coronavirus ransomware (1)](https://blog.canauri.com/topic/coronavirus-ransomware)
- [crypto (1)](https://blog.canauri.com/topic/crypto)
- [crytocurrency hack (1)](https://blog.canauri.com/topic/crytocurrency-hack)
- [currency (1)](https://blog.canauri.com/topic/currency)
- [cyber insurance (1)](https://blog.canauri.com/topic/cyber-insurance)
- [cybersecurity budgeting (1)](https://blog.canauri.com/topic/cybersecurity-budgeting)
- [cybersecurity coronavirus (1)](https://blog.canauri.com/topic/cybersecurity-coronavirus)
- [cybersecurity predictions (1)](https://blog.canauri.com/topic/cybersecurity-predictions)
- [cybersecurity ventures (1)](https://blog.canauri.com/topic/cybersecurity-ventures)
- [cybersecurity working remotely (1)](https://blog.canauri.com/topic/cybersecurity-working-remotely)
- [dharma (1)](https://blog.canauri.com/topic/dharma)
- [dharma ransomware (1)](https://blog.canauri.com/topic/dharma-ransomware)
- [financial services (1)](https://blog.canauri.com/topic/financial-services)
- [financial services data breach (1)](https://blog.canauri.com/topic/financial-services-data-breach)
- [government cyberattack (1)](https://blog.canauri.com/topic/government-cyberattack)
- [holiday shopping (1)](https://blog.canauri.com/topic/holiday-shopping)
- [hospitals hit with ransomware (1)](https://blog.canauri.com/topic/hospitals-hit-with-ransomware)
- [iEncrypt (1)](https://blog.canauri.com/topic/iencrypt)
- [insider trading (1)](https://blog.canauri.com/topic/insider-trading)
- [insurance (1)](https://blog.canauri.com/topic/insurance)
- [laundering (1)](https://blog.canauri.com/topic/laundering)
- [leak (1)](https://blog.canauri.com/topic/leak)
- [los angeles times (1)](https://blog.canauri.com/topic/los-angeles-times)
- [man in the disk (1)](https://blog.canauri.com/topic/man-in-the-disk)
- [man in the disk attacks (1)](https://blog.canauri.com/topic/man-in-the-disk-attacks)
- [maritime cybersecurity (1)](https://blog.canauri.com/topic/maritime-cybersecurity)
- [maze ransomware (1)](https://blog.canauri.com/topic/maze-ransomware)
- [pensacola florida (1)](https://blog.canauri.com/topic/pensacola-florida)
- [phobos (1)](https://blog.canauri.com/topic/phobos)
- [phobos ransomware (1)](https://blog.canauri.com/topic/phobos-ransomware)
- [quarter 1 2019 ransomware (1)](https://blog.canauri.com/topic/quarter-1-2019-ransomware)
- [raccoon stealer (1)](https://blog.canauri.com/topic/raccoon-stealer)
- [ransomware data breaches (1)](https://blog.canauri.com/topic/ransomware-data-breaches)
- [ransomware defined (1)](https://blog.canauri.com/topic/ransomware-defined)
- [ransomware epidemic (1)](https://blog.canauri.com/topic/ransomware-epidemic)
- [ransomware hits municipalities (1)](https://blog.canauri.com/topic/ransomware-hits-municipalities)
- [ransomware statistics (1)](https://blog.canauri.com/topic/ransomware-statistics)
- [riviera beach ransomware attack (1)](https://blog.canauri.com/topic/riviera-beach-ransomware-attack)
- [ryuk (1)](https://blog.canauri.com/topic/ryuk)
- [ryuk ransomware (1)](https://blog.canauri.com/topic/ryuk-ransomware)
- [scammers (1)](https://blog.canauri.com/topic/scammers)
- [scams targeting holiday shoppers (1)](https://blog.canauri.com/topic/scams-targeting-holiday-shoppers)
- [securities and exchange commission (1)](https://blog.canauri.com/topic/securities-and-exchange-commission)
- [sextortion (1)](https://blog.canauri.com/topic/sextortion)
- [shipping industry (1)](https://blog.canauri.com/topic/shipping-industry)
- [snake ransomware (1)](https://blog.canauri.com/topic/snake-ransomware)
- [social engineering (1)](https://blog.canauri.com/topic/social-engineering)
- [southwire (1)](https://blog.canauri.com/topic/southwire)
- [stop paying the ransom (1)](https://blog.canauri.com/topic/stop-paying-the-ransom)
- [tips for working remotely (1)](https://blog.canauri.com/topic/tips-for-working-remotely)
- [tribune (1)](https://blog.canauri.com/topic/tribune)
- [ursnif (1)](https://blog.canauri.com/topic/ursnif)
- [wall street journal (1)](https://blog.canauri.com/topic/wall-street-journal)
- [what is ransomware (1)](https://blog.canauri.com/topic/what-is-ransomware)
- [working from home (1)](https://blog.canauri.com/topic/working-from-home)
- [working remotely (1)](https://blog.canauri.com/topic/working-remotely)

see all

##### Contact

[415 12th Ave SE, Suite 201 Cedar Rapids, IA 52401](https://www.google.com/maps/place/415+12th+Ave+SE+%23201,+Cedar+Rapids,+IA+52401/@41.9710436,-91.6582952,17z/data=!3m1!4b1!4m5!3m4!1s0x87e4f73f67891f6d:0x38f71e45a9fa7c1f!8m2!3d41.9710436!4d-91.6561065)

[319-383-0165](tel:319-383-0165)

[support@getcryptostopper.com](mailto:support@getcryptostopper.com)

<https://www.facebook.com/cryptostopper>

Facebook

<https://twitter.com/cryptostopper>

Twitter

<https://www.linkedin.com/company/cryptostopper>

Linkedin

<https://www.youtube.com/c/CryptoStopper>

YouTube

- Products 
    - [CryptoStopper™](https://www.getcryptostopper.com/cryptostopper/)
    - [Endpoint Security](https://www.getcryptostopper.com/tools/endpoint-security/)
- Free Tools 
    - [Ransomware Simulator](https://www.getcryptostopper.com/ransomware-simulator/)
    - [Network Tools](https://www.getcryptostopper.com/free-network-tools/)
    - [Ransomware Decryptors](https://www.getcryptostopper.com/ransomware-decryptors/)
- Company 
    - [About](https://www.getcryptostopper.com/about/)
    - [Careers](https://www.getcryptostopper.com/careers/)
    - [Contact](https://www.getcryptostopper.com/contact/)

© Copyright WatchPoint Data, All Rights Reserved   |   [Terms](https://www.getcryptostopper.com/terms)