Thousands of Palo Alto Devices Breached via Recent Vulnerabilities

TL;DR Summary
Over 2,000 Palo Alto Networks devices have been compromised in a cyber attack exploiting newly disclosed vulnerabilities, CVE-2024-0012 and CVE-2024-9474, which allow authentication bypass and privilege escalation. The majority of infections are in the U.S. and India. Palo Alto Networks warns of escalating attacks and advises users to apply fixes and secure management interfaces. The company notes that the actual number of affected devices is smaller than reported, as most customers follow best practices.
- Warning: Over 2,000 Palo Alto Networks Devices Hacked in Ongoing Attack Campaign The Hacker News
- Threat Brief: Operation Lunar Peek, Activity Related to CVE-2024-0012 and CVE-2024-9474 (Updated Nov. 21) Unit 42
- Over 2,000 Palo Alto firewalls hacked using recently patched bugs BleepingComputer
- 2,000 Palo Alto Networks devices compromised in latest attacks Help Net Security
- Pots and Pans, AKA an SSLVPN - Palo Alto PAN-OS CVE-2024-0012 and CVE-2024-9474 watchTowr Labs
Reading Insights
Total Reads
0
Unique Readers
1
Time Saved
2 min
vs 3 min read
Condensed
83%
423 → 74 words
Want the full story? Read the original article
Read on The Hacker News