Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Important unpaid SharePoint Zero-Day will be actively utilized and violated global organizations over the age of 75

Malware injected into 6 npm package after maintainer token was stolen in a phishing attack

Hackers exploit critical CrushFTP flaws to gain admin access on unearned servers

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Palo Alto Networks warn of another firewall vulnerability under hacker attacks
Startups

Palo Alto Networks warn of another firewall vulnerability under hacker attacks

userBy userFebruary 19, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

The Palo Alto Network, a US cybersecurity giant, warns that hackers are leveraging another vulnerability in their firewall software to infiltrate unpublished customer networks.

The attackers are leveraging a recently disclosed vulnerability in Pan-OS, the operating system that runs the Palo Alto Networks firewall, the California-based company confirmed Tuesday.

Cybersecurity company AssetNote first discovered a vulnerability tracked as CVE-2025-0108 earlier this month, analysing vulnerabilities in two previous Palo Alto Firewalls that were used in previous attacks.

Palo Alto Networks released an advisory on the same day, urging customers to urgently patch the latest bug. The company updated its advisors on Tuesday to warn that the vulnerability is under aggressive attack.

The company said malicious attackers are checking vulnerabilities in two previously disclosed defects: CVE-2024-9474 and CVE-2025-0111. CVE-2024-9474 has been exploited in attacks since November 2024, we previously reported.

Palo Alto Networks does not explain how the three vulnerabilities are chained by hackers, but noted that the attacks are “low” complexity.

The scale of exploitation is still unknown, but in a blog post on Tuesday, threat intelligence startup Greynoise said it was a 25-year-old that actively exploited PAN-OS vulnerabilities from two IP addresses on February 13. He said he observed that IP addresses are being used actively, suggesting an increase. Exploitation activities. The attempts to exploit were flagged as “malicious” by Greynoise, suggesting that threat actors are behind the exploitation, not security researchers.

“This high-deficiency flaw allows rogue attackers to run certain PHP scripts, which could lead to unauthorized access to vulnerable systems,” says Greynoise.

Greynoise says he has observed the highest levels of attack traffic in the US, Germany and the Netherlands.

It is unclear whether sensitive data has been stolen from the person behind these attacks or the customer’s network. Palo Alto Networks did not respond immediately to TechCrunch questions.

CISA, the US government’s cybersecurity agency, added the latest Palo Alto bug to its known known exploit vulnerabilities (KEV) catalog released Tuesday.


Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleChallenges when adopting hydrogen fuel in public transport
Next Article APPG of events to host the first event in Congress
user
  • Website

Related Posts

Astronomer CEO resigns following Cold Play Concert Scandal

July 19, 2025

David Sacks and a blurred line of government services

July 19, 2025

Windsurf CEO opens about a “very dark” mood before recognition

July 19, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Important unpaid SharePoint Zero-Day will be actively utilized and violated global organizations over the age of 75

Malware injected into 6 npm package after maintainer token was stolen in a phishing attack

Hackers exploit critical CrushFTP flaws to gain admin access on unearned servers

Astronomer CEO resigns following Cold Play Concert Scandal

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Next-Gen Digital Identity: How TwinH and Avatars Are Redefining Creation

BREAKING: TwinH Set to Revolutionize Legal Processes – Presented Today at ICEX Forum 2025

Building AGI: Zuckerberg Commits Billions to Meta’s Superintelligence Data Center Expansion

ICEX Forum 2025 Opens: FySelf’s TwinH Showcases AI Innovation

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.