1000s of Palo Alto Networks firewalls hijacked as miscreants exploit critical hole

November 22, 2024 at 04:31PM Attackers exploited two recently patched vulnerabilities in Palo Alto Networks firewalls, compromising around 2,000 devices initially but down to 800 later. They deployed backdoors, malware, and cryptocurrency miners. The vulnerabilities enabled remote code execution, and the vendor continues to reference only a “limited number” of affected systems. ### Meeting Takeaways: … Read more

Palo Alto Networks Patches Vulnerabilities Allowing Firewall Disruption

April 11, 2024 at 06:12AM Palo Alto Networks’ recent updates for PAN-OS operating system patch multiple high-severity vulnerabilities, including flaws that can lead to firewall disruptions. The vulnerabilities, like CVE-2024-3385, can be exploited for denial-of-service (DoS) attacks, impacting specific models and configuration settings. The company has also addressed medium-severity issues in various products, including Panorama … Read more

Zyxel Patches Remote Code Execution Bug in Firewall Products

February 26, 2024 at 12:09PM Zyxel, a Taiwanese networking company, has issued patches for security vulnerabilities in its firewall and access point products. The defects could lead to remote code execution attacks. The company documented four specific vulnerabilities and urged urgent application of patches and hotfixes. Zyxel has acknowledged its products being exploited in DDoS-capable … Read more

Over 178,000 SonicWall firewalls vulnerable to RCE, DoS attacks

January 15, 2024 at 01:34PM Security researchers discovered that more than 178,000 SonicWall firewalls with exposed online management interfaces are vulnerable to denial-of-service and remote code execution attacks. These vulnerabilities affect a large number of appliances and can lead to serious security risks. Users are advised to take measures to protect their devices from these … Read more