Threat actors have successfully compromised SonicWall Gen6 SSL-VPN appliances by brute-forcing VPN credentials and defeating multi-factor authentication (MFA) to implant ransomware deployment tools, potentially affecting multiple organizations using these devices.