Qilin ransomware affiliates are exploiting a critical Palo Alto VPN flaw to gain access to corporate networks and deploy ransomware, according to Arctic Wolf Labs. The vulnerability, CVE-2026-0257, affects PAN-OS GlobalProtect portal and gateway products. Attackers can bypass authentication controls and establish an unauthorised VPN connection to vulnerable devices. Arctic Wolf investigated several June 2026…
Cybersecurity researchers have detected a sharp rise in Palo Alto Networks scans aimed at identifying vulnerable login portals. The spike suggests that attackers may be preparing for larger exploitation campaigns targeting GlobalProtect VPN and PAN-OS devices. Massive Increase in Scanning Activity According to data from GreyNoise, the number of IPs scanning Palo Alto Networks portals…