TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Bleeping Computer

Palo Alto Networks warns of firewall RCE zero-day exploited in attacks

Sergiu Gatlan · 13 hours ago · Read original ↗

ATT&CK techniques detected

4 predictions
T1190Exploit Public-Facing Application
92%
“palo alto networks warns of firewall rce zero - day exploited in attacks palo alto networks warned customers today that a critical - severity unpatched vulnerability in the pan - os user - id authentication portal is being exploited in attacks. also known as the captive portal, t…”
T1588.006Vulnerabilities
63%
“pan - os vm - series firewalls exposed online, most of them in asia ( 2, 466 ) and north america ( 1, 998 ). the company has also flagged the vulnerability as the highest possible severity and says that admins can quickly check whether their firewalls are configured to use the vu…”
T1190Exploit Public-Facing Application
52%
“pan - os vm - series firewalls exposed online, most of them in asia ( 2, 466 ) and north america ( 1, 998 ). the company has also flagged the vulnerability as the highest possible severity and says that admins can quickly check whether their firewalls are configured to use the vu…”
T1588.006Vulnerabilities
48%
“days. one month later, palo alto networks warned that hackers were exploiting another pan - os dos flaw to target pa - series, vm - series, and cn - series firewalls, forcing them to reboot and disable firewall protections. soon after, in february, attackers switched to abusing t…”

Summary

Palo Alto Networks warned customers today that a critical-severity unpatched vulnerability in the PAN-OS User-ID Authentication Portal is being exploited in attacks. [...]