22,500 Palo Alto firewalls "possibly vulnerable" to ongoing attacks
ID: 9c4a8566-5a6b-523b-8713-41149d6960e9
STIX ID: report--9c4a8566-5a6b-523b-8713-41149d6960e9
Feed Name: Bleeping Computer
Threat Score
CVE-2024-3400 is a critical PAN-OS GlobalProtect command-injection zero-day exploited since at least March 26, 2024 by a state-backed actor (UTA0218) to deploy a custom backdoor named Upstyle; Palo Alto released mitigations and patches between April 14–18, but roughly 22,500 devices remained possibly vulnerable as of April 18 and a public proof-of-concept accelerated broad exploitation and scanning activity.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
