Physical Address

304 North Cardinal St.
Dorchester Center, MA 02124

Palo Alto networks warns another firewall sensitivity based on hackers attack


US CyberSecurity giant Palo Alto networks warned that hackers have exploited another weakness in the fire extinguisher.

The attackers, Pan-OS, Palo Alto Networks firewalls operating system, California-based company company confirmed Tuesday.

Cyber ​​firm assetnot obvious Weakness followed as CVE-2025-0108Earlier this month this month was previously used in the attacks when analyzing Palo Alto Alto firewall weakness.

Palo Alto Networks, a consultation and customers on the same day wanted to patch against the latest error. Company Updated his advice Tuesday, to warn that sensitivity is under active attack.

The company said that malicious aggressors were previously disclosed – CVE-2024-9474 and CVE-2025-011 and CVE-2025-011 and CVE-2025-0111 and CVE-2025-011 and CVE-2025-0111 and CVE-2025-011 and CVE-2025-0111 and CVE-2025-011 and CVE-2025-0111 and CVE-2025-0111 and unsecured pan-OS web management interfaces. CVE-2024-9474 Has been exploited in attacks since November 2024We had previously reported.

Palo Alto networks, three weaknesses were chained by hackers, but the complexity of the attack was “low.”

The scale of exploitation is not yet known, but threatening exploration starting Greenoise said in a blog post On Tuesday, on February 13, the two IP addresses, which offered an uptika in the operation of the IP address and operation, followed the 25 IP addresses. The exploitation attempts are marked by Greynoise as “harmful”, “harmful” shows that threatening actors are more maintenance than security researchers.

“This high violence defects allows unbalanced aggressors to perform potential PHP scripts for unauthorized access to sensitive systems,” he said.

Greenoise said he observed the highest level of attack traffic in the United States, Germany and the Netherlands.

It is unknown whom or sensitive information behind these attacks is stolen from customer networks. Palo Alto networks did not respond to Techcrunch’s questions immediately.

The US government’s CyberCurity agency has added the most recent Palo Alto Bug clearly recognized exploited weaknesses (KEV) catalog specified Tuesday.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *