PAN-OS GlobalProtect actively exploited; Russian infrastructure dismantled; Linux kernel flaw
ID: 57901510-e348-59ce-8da2-5650486d2db9
STIX ID: report--57901510-e348-59ce-8da2-5650486d2db9
Feed Name: defend.network – Daily Threat Briefings
Threat Score
### Executive summary The briefing reports active exploitation of a Palo Alto PAN-OS GlobalProtect authentication bypass (CVE-2026-0257), a Linux kernel local root escalation (CIFSwitch), the dismantling of Russian-linked hosting infrastructure with arrests, abuse of ChatGPT share links to deliver malware, and multiple large data breaches (Carnival, Charter, 23andMe), and recommends urgent patching, monitoring, and containment measures.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
