SECURITYCYBERSCOOP
Attackers are exploiting Palo Alto Networks defect that initially flew under the radar
Palo Alto Networks' CVE-2026-0257 vulnerability, initially rated medium severity, was escalated to critical after active exploitation was confirmed. Attackers exploit the flaw to bypass authentication and establish unauthorized VPN connections, leveraging a publicly available TLS certificate to forge valid authentication cookies.
Mentioned
Related Signal
Adjacent reporting
- PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
- Palo Alto VPN bug graduates from advisory to active exploitation
- cPanel’s authentication bypass bug is being exploited in the wild, CISA warns
- Patch Now: Another Palo Alto Auth Bypass Bug Under Active Exploit
- Fortinet Issues Emergency Patch for FortiClient Zero-Day
- Critical Windows Netlogon RCE flaw now exploited in attacks