Critical Flaws Found in WatchGuard Firewalls — Patch Now
WatchGuard has issued patches for three critical security flaws found in the iked process of its Fireware OS, the software that runs on its Firebox firewall devices. These vulnerabilities could allow an attacker with no login credentials to remotely execute malicious code on affected systems, potentially giving them full control over the device.
Firewalls are a core part of a business's network defences, sitting at the edge of the network to filter and block malicious traffic. A compromised firewall can act as an open door for attackers, allowing them to intercept data, disable protections, or move further into a company's systems undetected. Because these flaws don't require authentication to exploit, they are considered especially serious and are likely to attract attention from opportunistic attackers scanning the internet for vulnerable devices.
Australian businesses using WatchGuard Firebox appliances should check their firmware version and apply the latest updates as soon as possible. Given the critical nature of these vulnerabilities, delaying patching increases the risk of compromise, especially as technical details become more widely known and attackers develop exploit tools.