Get the latest tech news

Palo Alto Firewalls Under Attack As Miscreants Chain Flaws For Root Access


A recently patched Palo Alto Networks vulnerability (CVE-2025-0108) is being actively exploited alongside two older flaws (CVE-2024-9474 and CVE-2025-0111), allowing attackers to gain root access to unpatched firewalls. The Register reports: This story starts with CVE-2024-9474, a 6.9-rated privile...

A recently patched Palo Alto Networks vulnerability ( CVE-2025-0108) is being actively exploited alongside two older flaws ( CVE-2024-9474 and CVE-2025-0111), allowing attackers to gain root access to unpatched firewalls. Dark web intelligence services vendor Searchlight Cyber's Assetnote team investigated the patch for CVE-2024-9474 and found another authentication bypass. On Tuesday, US time, Palo A lot updated its advisory for CVE-2025-0108 with news that it's observed exploit attempts chaining CVE-2024-9474 and CVE-2025-0111 on unpatched and unsecured PAN-OS web management interfaces.

Get the Android app

Or read this on Slashdot

Read more on:

Photo of Palo Alto

Palo Alto

Photo of attack

attack

Photo of root access

root access

Related news:

News photo

Palo Alto Networks warns of another firewall vulnerability under attack by hackers

News photo

Palo Alto firewalls under attack as miscreants chain flaws for root access

News photo

SonicWall firewalls now under attack: Patch ASAP or risk intrusion via your SSL VPN