Hackers are scanning for vulnerabilities in Palo Alto Networks GlobalProtect portals, likely preparing for targeted attacks.
Over 24,000 unique IP addresses have attempted to access GlobalProtect portals, indicating a coordinated effort to identify vulnerabilities.
GreyNoise identified around 23,000 suspicious IPs and 150 known malicious ones, suggesting a potential targeted attack.
Organizations using Palo Alto Networks products are recommended to take steps to secure their login portals in response to the heightened scanning activity.