"Palo Alto Networks Issues Urgent Fixes for Exploited Zero-Day Vulnerabilities"

1 min read
Source: The Hacker News
"Palo Alto Networks Issues Urgent Fixes for Exploited Zero-Day Vulnerabilities"
Photo: The Hacker News
TL;DR Summary

Palo Alto Networks has released urgent hotfixes to address a critical vulnerability (CVE-2024-3400) in its PAN-OS software, which is being actively exploited in the wild. The flaw, impacting GlobalProtect feature, could allow unauthenticated attackers to execute arbitrary code with root privileges on the firewall. Fixes are available for specific PAN-OS versions, with patches for other releases expected soon. The threat actor exploiting the flaw is tracked as Operation MidnightEclipse, with evidence of potential reconnaissance activity and deployment of a Python-based backdoor called UPSTYLE. Customers are advised to apply the hotfixes immediately to mitigate the risk.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

1 min

vs 2 min read

Condensed

73%

34995 words

Want the full story? Read the original article

Read on The Hacker News