Get the latest tech news

"Highly capable" hackers root corporate networks by exploiting firewall 0-day


No patch yet for unauthenticated code-execution bug in Palo Alto Networks firewall.

The vulnerability, which has been under active exploitation for at least two weeks now, allows the hackers with no authentication to execute malicious code with root privileges, the highest possible level of system access, researchers said. It is therefore imperative that organizations act quickly to deploy recommended mitigations and perform compromise reviews of their devices to check whether further internal investigation of their networks is required.” The backdoor, which is written in the Python language, allows the attackers to use specially crafted network requests to execute additional commands on hacked devices.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Hackers

Hackers

Photo of Day

Day

Photo of firewall

firewall

Related news:

News photo

Shiakaku of the Day

News photo

Telegram fixes Windows app zero-day used to launch Python scripts

News photo

Telegram fixes Windows app zero-day caused by file extension typo