Palo Alto Networks

Palo Alto Networks Issues AI Red Alert
SANTA CLARA, Calif. — With great promise comes potential peril. And while artificial intelligence (AI) is looked upon as a panacea for enterprises, it also poses an existential security threat. “We stand ...
Security Boulevard
CISA and FBI Issue Alert on OS Command Injection Vulnerabilities
Rohan Timalsina | | CISA Advisory, CISA Threat Update, Cisco Vulnerabilities, command injection, Command Injection Vulnerability, FBI alert, FBI warning, Ivanti Vulnerabilities, Linux & Open Source News, MITRE ATTACK, OS command injection, OS command injection prevention, OS command injection vulnerabilities, Palo Alto Networks, secure by design, Secure by Design Alert
CISA and FBI issued a critical advisory on July 10, 2024, urging software companies to review their products and eliminate OS command injection vulnerabilities at the source. This urgent call comes in ...
Alert: Palo Alto Networks Prey to RedTail Malware Exploits
Wajahat Raja | | Advanced Evasion Techniques, Akamai Security, cryptocurrency mining, Cryptojacking, CVE-2024-3400, Cyber Threats, Cybersecurity Alert, Cybersecurity News, enterprise cybersecurity, Firewall Exploit, Malware Detection, Nation-State Cyber Attacks, Network Security, Palo Alto Networks, PAN-OS Vulnerability, Private Mining Pools, RedTail Malware, security updates, Supply chain cyberattacks, threat actors, XMRig miner
In a recent development, threat actors behind the RedTail cryptojacking mining malware have expanded their arsenal by exploiting a newly disclosed IT infrastructure security flaw in Palo Alto Networks firewall exploit. This ...

Zero-Day Nightmare: Palo Alto, Cisco, and MITRE Under Attack
Joe Ariganello | | Blog, government, MITRE ATT&CK, national cybersecurity, National Cybersecurity Strategy, Palo Alto Network, Palo Alto Networks, Zero Day Attacks, zero-day, zero-day attack, Zero-day threats
Zero-day threats continue to wreak havoc on organizations worldwide, with recent attacks targeting corporate and government networks. In the last few weeks, government-sponsored threat actors have targeted Palo Alto Networks and Cisco ...
Palo Alto Networks PAN-OS Command Injection Vulnerability (CVE-2024-3400)
NSFOCUS | | Blog, Command Injection Vulnerability, CVE-2024-3400, Emergency Response, Palo Alto Networks, PAN-OS
Overview Recently, NSFOCUS CERT detected that Palo Alto Networks issued a security announcement and fixed the command injection vulnerability (CVE-2024-3400) in PAN-OS. Since GlobalProtect gateway or portal configured in PAN-OS does not ...

GKE Case Highlights Risks of Attackers Chaining Vulnerabilities
Palo Alto Network’s cybersecurity recently outlined two vulnerabilities it found in Google Kubernetes Engine (GKE) that, individually, don’t represent much of a threat. However, if a threat actor who already had access ...
Security Boulevard

Palo Alto Networks SOC Update Extends Machine Learning Reach
Palo Alto Networks updated its SOC platform that enables cybersecurity teams to build their own ML models ...
Security Boulevard

Palo Alto Networks Adds Cloud Management Service
Palo Alto Networks' Strata Cloud Manager thwarts cyberattacks, configures platforms and predicts cybersecurity issues ...
Security Boulevard

Palo Alto Networks Extends Scope of CNAPP Reach
Via a Darwin update, Palo Alto Networks this week added six capabilities to its cloud-native application protection platform (CNAPP) ...
Security Boulevard
Beware: WinRAR Vulnerability PoC Exposed
Wajahat Raja | | Cybersecurity Best Practices, Cybersecurity News, cybersecurity threats, Deceptive PoCs, Fake PoC Exploit, GitHub, Malicious Exploits, Malware Detection, Palo Alto Networks, threat actor, VenomRAT Malware, WinRAR Vulnerability, zero-day vulnerabilities
A hacker recently posted a fake proof-of-concept (PoC) exploit for a previously patched WinRAR vulnerability, which is a concerning revelation. The goal of this malevolent operation was to infect unsuspecting downloaders with ...