Close Menu
Tech Nova Mindset – Empower Innovation and Forward Thinking

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Parents Guide Kids to Top Engineering Skills In AI Age

    September 23, 2026

    Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw

    September 23, 2026

    The Download: India’s smart glasses menace and AI’s trillion-dollar gamble

    September 23, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Parents Guide Kids to Top Engineering Skills In AI Age
    • Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw
    • The Download: India’s smart glasses menace and AI’s trillion-dollar gamble
    • AT&T Is Automating Away Jobs—and Its Old Telecom Empire
    • Smart glasses are already causing havoc in India
    • Viture’s Vonder Glasses Are Meant to Map Your Mind
    • AI Models Built From Rat Brains Just Got Closer to Reality
    • Don’t be fooled by this summer of AI hype 
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    • Home
    • Gadgets
    • Reviews
    • Tech News
    • Future Tech
    • AI & Robotics
    • How-To Guides
    • More
      • Cybersecurity
      • Startups & Innovation
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    Home»Cybersecurity»Palo Alto Networks to Patch Zero-Day Exploited to Hack Firewalls
    Cybersecurity

    Palo Alto Networks to Patch Zero-Day Exploited to Hack Firewalls

    kirklandc008@gmail.comBy kirklandc008@gmail.comMay 6, 2026No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Palo Alto Networks
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Palo Alto Networks is working on patches for a critical PAN-OS zero-day that has been exploited to hack some of the company’s firewall models.

    Tracked as CVE-2026-0300, the vulnerability has been described as a buffer overflow affecting the User-ID Authentication Portal (Captive Portal) service of PAN-OS software. 

    The zero-day affects PA and VM series firewalls, allowing an unauthenticated attacker to execute malicious code with root privileges via specially crafted packets. 

    “Limited exploitation has been observed targeting Palo Alto Networks User-ID Authentication Portals that are exposed to untrusted IP addresses and/or the public internet,” Palo Alto Networks said in an advisory.

    No other information has been shared about the attacks exploiting CVE-2026-0300, but limited exploitation typically indicates that a flaw has been leveraged in highly targeted attacks by sophisticated threat actors, often state-sponsored groups. 

    The vendor is aiming to release the first round of patches on May 13, with a second round of fixes estimated for May 28.

    Advertisement. Scroll to continue reading.

    The cybersecurity giant noted that the flaw affects only PA and VM series firewalls configured to use the User-ID Authentication Portal. Limiting access to the portal to trusted internal IPs significantly reduces the risk of exploitation. 

    According to Palo Alto Networks, Prisma Access, Cloud NGFW, and Panorama appliances are not affected by CVE-2026-0300.

    Given their widespread adoption across major enterprises and government organizations, Palo Alto firewalls are prime targets for sophisticated threat actors.

    While only two vulnerabilities in the company’s appliances were exploited in the wild in 2025, 2024 saw a significantly higher number, with seven exploited flaws, including by state-sponsored hackers. 

    CISA’s Known Exploited Vulnerabilities (KEV) catalog currently includes 13 Palo Alto product vulnerabilities, but CVE-2026-0300 has not yet been included. 

    Related: Exploitation of ‘Copy Fail’ Linux Vulnerability Begins

    Related: Over 40,000 Servers Compromised in Ongoing cPanel Exploitation

    Related: MetInfo, Weaver E-cology Vulnerabilities in Attackers’ Crosshairs

    Alto exploited firewalls hack Networks Palo Patch zeroday
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    kirklandc008@gmail.com
    • Website

    Related Posts

    I Let an AI Agent Hack All My Gadgets—and I’d Do It Again

    September 9, 2026

    Hugging Face hack could indicate cultural issues at OpenAI

    August 31, 2026

    The Download: inside OpenAI’s Hugging Face hack, and a new EV takes on the US

    August 27, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Nothing CEO says phone prices are going to keep going up

    June 12, 20267 Views

    The best VPN routers of 2026: Expert tested and reviewed

    June 14, 20263 Views

    Google DeepMind Plans to Track AGI Progress With These 10 Traits of General Intelligence

    March 21, 20263 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Recent Posts
    • Parents Guide Kids to Top Engineering Skills In AI Age
    • Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw
    • The Download: India’s smart glasses menace and AI’s trillion-dollar gamble
    • AT&T Is Automating Away Jobs—and Its Old Telecom Empire
    • Smart glasses are already causing havoc in India

    Parents Guide Kids to Top Engineering Skills In AI Age

    September 23, 2026

    Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw

    September 23, 2026

    The Download: India’s smart glasses menace and AI’s trillion-dollar gamble

    September 23, 2026

    AT&T Is Automating Away Jobs—and Its Old Telecom Empire

    September 23, 2026
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 TechNovaMindset. Designed by By Pro.

    Type above and press Enter to search. Press Esc to cancel.