Palo Alto Networks PAN-OS Zero-Day Exploitation
volexity.com
Palo Alto Networks PAN-OS Zero-Day Exploitation
1–10 of 66 posts
Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#2> Customers are able to open a case in the Customer Support Portal (CSP) and upload a technical support file (TSF) to determine if their device logs match known indicators of compromise (IoC) for this vulnerability.
They can't be serious...
Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#3Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#4I'll stick to using a Linux firewall.
https://live.paloaltonetworks.com/t5/general-topics/how-to-a...
Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#5Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#6https://security.paloaltonetworks.com/?sort=-cvss
This is their 3rd CVSS 10 in the past 5 years and they've had quite a few more over 9s in the past 5-10 years. I have no idea how that compares to other places like them, maybe they're all like this?
Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#7I'll stick to using a Linux firewall.
PaloAlto devices ARE “Linux Firewalls” https://live.paloaltonetworks.com/t5/general-topics/how-to-a...
Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#8I'll stick to using a Linux firewall.
PaloAlto devices ARE “Linux Firewalls” https://live.paloaltonetworks.com/t5/general-topics/how-to-a...
AFAIK the forwarding engine is custom(ized), and on physical devices some of them offload to FPGA - or at least they used to when I administrated some 2014~2016.
The management UI was in PHP :P
Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#9Re: Palo Alto Networks PAN-OS Zero-Day Exploitation
#10These firewall boxes are on-prem white hat Mallory, reverse-reverse-proxying all TLS traffic. And of course the Linux stack it uses has tons of RCEs and misconfigurations.
Isn't that just insecure???