Threat actors have hacked thousands of Palo Alto Networks firewalls using recently patched zero-day vulnerabilities.
The vulnerabilities exploited are CVE-2024-0012 and CVE-2024-9474 in PAN-OS.
The first vulnerability allows unauthenticated attackers with access to the management web interface to bypass authentication and gain admin privileges, while the second vulnerability allows privilege escalation for PAN-OS administrators.
Approximately 2,000 firewalls have been compromised, with countries like the US and India most affected.