CISA Alerts to Active Exploitation of Critical Palo Alto Networks Vulnerability

November 8, 2024 at 12:51AM The U.S. CISA added a critical vulnerability in Palo Alto Networks Expedition (CVE-2024-5910) to its KEV catalog, allowing admin account takeovers. Affected versions are before 1.2.92. Two other flaws were noted, including a severe one in CyberPanel linked to PSAUX ransomware, urging federal agencies to remediate by November 28, 2024. … Read more

CyberPanel Vulnerabilities Exploited in Ransomware Attacks Shortly After Disclosure

October 31, 2024 at 06:14AM CyberPanel vulnerabilities have been exploited in ransomware attacks, impacting thousands of instances shortly after their disclosure. The article highlights the immediate ramifications of these security flaws. ### Meeting Takeaways: 1. **Vulnerability Overview**: CyberPanel vulnerabilities have been identified and exploited. 2. **Impact**: These vulnerabilities have led to the compromise of thousands … Read more

Massive PSAUX ransomware attack targets 22,000 CyberPanel instances

October 29, 2024 at 03:17PM Over 22,000 CyberPanel instances faced a critical vulnerability exploited in a PSAUX ransomware attack, taking most offline. Security flaws in versions 2.3.6 and possibly 2.3.7 were identified, including defective authentication and command injection. Users are urged to upgrade immediately to mitigate risks and access potential decryption aid. ### Meeting Takeaways: … Read more