Sangoma is aware of reports of unauthorized activity affecting certain Switchvox Prem systems running builds earlier than version 8.4.0.2. The activity is associated with third-party malware targeting a vulnerability that was addressed in Switchvox version 8.4.0.2.
Customers who have not updated yet should update to Switchvox version 8.4.0.2 as soon as possible. While this release addresses the underlying vulnerability, systems that were compromised prior to the update may still require additional review and remediation.
Sangoma Support is working diligently with partners to evaluate impacted systems, guide restoration efforts, and provide recommended steps to help customers return their systems to a secure and operational state.
Customers and partners who believe their system may have been affected should contact Sangoma Support via our online webform or their authorized partner for assistance with review and remediation. When using the webform, please enter the keyword "Prem Compromised" in the "Subject - Brief Summary" field for prioritized assistance.