Palo Alto Networks

Zscaler Tightens AI Security With New Tools
Jon Swartz | | AI agent security, AI network security, ChatGPT, generative AI, Palo Alto Networks, Zscaler
LAS VEGAS — Zscaler Inc. on Tuesday announced advanced artificial intelligence (AI) security capabilities to tackle the complexities in deploying advanced AI tools in large, distributed environments at its developers conference here ...
Security Boulevard

Palo Alto Networks to Acquire Protect AI, Launches AI Security Platform
Jon Swartz | | 2025 RSA Conference, acquisition, AI agents, generative AI, machine learning, Palo Alto Networks, Protect AI
Palo Alto Networks Inc. has agreed to acquire cybersecurity startup Protect AI, and it launched a new AI security platform ...
Security Boulevard

PAN-PAN-PAN-OS: Palo Alto Firewalls Under Attack (Again)
Richi Jennings | | attack chain, Attack Chains, authentication bypass, Authentication bypass flaw, CVE-2024-9474, CVE-2025-0108, CVE-2025-0111, firewall, Firewall Exploit, firewall security, Palo Alto Networks, Palo Alto Networks PAN-OS, PAN-OS, PAN-OS Vulnerability, php, SB Blogwatch
Time to Declare an Emergency? Scrotes chain three flaws to take full control—seems pretty easy ...
Security Boulevard
Palo Alto Networks PAN-OS Authentication Bypass Vulnerability (CVE-2025-0108)
Overview Recently, NSFOCUS CERT detected that Palo Alto Networks issued a security announcement and fixed the identity bypass vulnerability in PAN-OS (CVE-2025-0108). Due to the problem of path processing by Nginx/Apache in ...

Palo Alto Networks Issues AI Red Alert
SANTA CLARA, Calif. — With great promise comes potential peril. And while artificial intelligence (AI) is looked upon as a panacea for enterprises, it also poses an existential security threat. “We stand ...
Security Boulevard
CISA and FBI Issue Alert on OS Command Injection Vulnerabilities
Rohan Timalsina | | CISA Advisory, CISA Threat Update, Cisco Vulnerabilities, command injection, Command Injection Vulnerability, FBI alert, FBI warning, Ivanti Vulnerabilities, Linux & Open Source News, MITRE ATTACK, OS command injection, OS command injection prevention, OS command injection vulnerabilities, Palo Alto Networks, secure by design, Secure by Design Alert
CISA and FBI issued a critical advisory on July 10, 2024, urging software companies to review their products and eliminate OS command injection vulnerabilities at the source. This urgent call comes in ...
Alert: Palo Alto Networks Prey to RedTail Malware Exploits
Wajahat Raja | | Advanced Evasion Techniques, Akamai Security, cryptocurrency mining, Cryptojacking, CVE-2024-3400, Cyber Threats, Cybersecurity Alert, Cybersecurity News, enterprise cybersecurity, Firewall Exploit, Malware Detection, Nation-State Cyber Attacks, Network Security, Palo Alto Networks, PAN-OS Vulnerability, Private Mining Pools, RedTail Malware, security updates, Supply chain cyberattacks, threat actors, XMRig miner
In a recent development, threat actors behind the RedTail cryptojacking mining malware have expanded their arsenal by exploiting a newly disclosed IT infrastructure security flaw in Palo Alto Networks firewall exploit. This ...

Zero-Day Nightmare: Palo Alto, Cisco, and MITRE Under Attack
Joe Ariganello | | Blog, government, MITRE ATT&CK, national cybersecurity, National Cybersecurity Strategy, Palo Alto Network, Palo Alto Networks, Zero Day Attacks, zero-day, zero-day attack, Zero-day threats
Zero-day threats continue to wreak havoc on organizations worldwide, with recent attacks targeting corporate and government networks. In the last few weeks, government-sponsored threat actors have targeted Palo Alto Networks and Cisco ...
Palo Alto Networks PAN-OS Command Injection Vulnerability (CVE-2024-3400)
NSFOCUS | | Blog, Command Injection Vulnerability, CVE-2024-3400, Emergency Response, Palo Alto Networks, PAN-OS
Overview Recently, NSFOCUS CERT detected that Palo Alto Networks issued a security announcement and fixed the command injection vulnerability (CVE-2024-3400) in PAN-OS. Since GlobalProtect gateway or portal configured in PAN-OS does not ...

GKE Case Highlights Risks of Attackers Chaining Vulnerabilities
Palo Alto Network’s cybersecurity recently outlined two vulnerabilities it found in Google Kubernetes Engine (GKE) that, individually, don’t represent much of a threat. However, if a threat actor who already had access ...
Security Boulevard