Cyber Resilience

Record WatchRecord

SonicWall broke into the most-exploited vendors of the last 90 days

23 July 2026 · Timeframe: Trailing 90 days vs the preceding 90

13Microsoft5Cisco3SimpleHelp 3Langflow3Oracle3Ubiquiti2Linux2Palo Alto Networks2Ivanti2BerriAI2Adobe2LiteSpeed2Check Point2SonicWall2Fortinet
Most-exploited vendors by KEV, last 90 days (top 15) · security-resilience.ai

SonicWall is now among the top 15 vendors by CISA-KEV listings over the last 90 days, after not making that list in the preceding 90. A vendor rising quarter-over-quarter means its exploited footprint is growing right now, not decades ago.

Why it matters

A trailing-90-day view of the most-exploited vendors is the timely version of this signal: it surfaces what attackers are actively working, not a legacy all-time average dominated by long-since-patched software.

What to do

Our take

A vendor climbing the recent exploited list is a leading indicator worth acting on before it is your incident. The timely list is the one whose changes matter.

The data behind this

More records like this: Vendors breaking into the most-exploited list →