April 17, 2024, 1:35 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

New Zero Day in Palo Alto GlobalProtect VPN Appliances


Introduction


On April 12th, Volexity announced they discovered zero day exploitation occurring against Palo Alto GlobalProtect VPN appliances running PAN-OS 10.2 and above. For those keeping track, this is the fourth vulnerability in an SSL VPN appliance in as many months of 2024. At the time of this writing, Palo Alto has assigned CVE-2024-3400 and is still in the process of releasing patches. On April 16th, Watchtowr released a blog …

alto april apt exploitation globalprotect introduction palo palo alto pan pan-os path path traversal running ssl ssl vpn track volexity vpn vulnerability

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Threat Analysis Engineer

@ Gen | IND - Tamil Nadu, Chennai

Head of Security

@ Hippocratic AI | Palo Alto

IT Security Vulnerability Management Specialist (15.10)

@ OCT Consulting, LLC | Washington, District of Columbia, United States

Security Engineer - Netskope/Proofpoint

@ Sainsbury's | Coventry, West Midlands, United Kingdom

Journeyman Cybersecurity Analyst

@ ISYS Technologies | Kirtland AFB, NM, United States