Palo Alto Networks Outlines Remediation for Critical PAN-OS Flaw Under Attack
ID: c8062259-ac8c-5d45-acf3-7d0e01e531b7
STIX ID: report--c8062259-ac8c-5d45-acf3-7d0e01e531b7
Feed Name: The Hacker News
**Executive Summary:** Palo Alto Networks disclosed CVE-2024-3400 (CVSS 10.0), a critical PAN-OS remote command execution vulnerability actively exploited since at least March 26, 2024 by an activity cluster tracked as UTA0218 (Operation MidnightEclipse) to deploy a Python backdoor named UPSTYLE that enables remote command execution and potential data exfiltration; the vendor issued tiered remediation guidance (hotfixes, private data reset, factory reset) and warned of post‑exploit persistence techniques that may survive resets.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
