Source: BleepingComputer
Author: Sergiu Gatlan
URL: https://www.bleepingcomputer.com/news/security/palo-alto-networks-warns-of-dos-bug-letting-hackers-disable-firewalls/
ONE SENTENCE SUMMARY:
Palo Alto Networks fixed a high-severity vulnerability affecting firewalls, advising upgrades to prevent potential denial-of-service attacks.
MAIN POINTS:
- A high-severity vulnerability (CVE-2026-0227) affects next-gen firewalls with GlobalProtect enabled.
- Vulnerability allows unauthenticated attackers to perform denial-of-service (DoS) attacks.
- Most cloud-based Prisma Access instances have been patched with ongoing updates for remaining systems.
- Nearly 6,000 firewalls are exposed online, with some configurations potentially still vulnerable.
- No current evidence of the vulnerability being exploited in attacks.
- Security updates are released, advising admins to upgrade to the latest versions.
- Suggested upgrades for PAN-OS and Prisma Access versions ensure system security.
- Palo Alto Networks firewalls have been previously targeted using zero-day vulnerabilities.
- Recent threats include automated campaigns targeting GlobalProtect portals with brute-force attempts.
- Palo Alto products are widely used by major U.S. banks and Fortune 10 companies.
TAKEAWAYS:
- Ensure firewalls are updated to the recommended software versions promptly.
- Monitor for ongoing threats targeting Palo Alto Networks’ products.
- Recognize the critical importance of regular security updates.
- Large enterprises and banks heavily rely on Palo Alto Networks’ security solutions.
- GlobalProtect portals remain a common target for cyberattacks.