"Palo Alto Networks Issues Urgent Warning on Firewall Vulnerabilities"

TL;DR Summary
Palo Alto Networks warns of an actively exploited critical command injection vulnerability, tracked as CVE-2024-3400, in its PAN-OS firewall software, affecting specific versions and feature configurations. The company plans to release fixes by April 14, 2024, and has provided mitigation measures for impacted users. Threat researcher Yutaka Sejiyama reports 82,000 exposed devices online, with 40% in the United States. CISA has added CVE-2024-3400 to its Known Exploited Vulnerabilities catalog, setting the patching deadline for federal agencies to April 19, 2024.
- Palo Alto Networks warns of PAN-OS firewall zero-day used in attacks BleepingComputer
- Palo Alto Networks firewalls under attack, hotfixes incoming! (CVE-2024-3400) Help Net Security
- Palo Alto Networks Warns of Exploited Firewall Vulnerability SecurityWeek
- Palo Alto patches, CISA's Sisense warning, GitHub repos gamed CISO Series
- Multiple Palo Alto Networks Firewall Flaws Let Attackers Cause Disruption CybersecurityNews
Reading Insights
Total Reads
0
Unique Readers
1
Time Saved
2 min
vs 3 min read
Condensed
81%
429 → 80 words
Want the full story? Read the original article
Read on BleepingComputer