Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

FBI warns about expanded spider attacks on airline using social engineering

June 28, 2025

The new AI Facebook tool asks for upload your photos for plot ideas, causing privacy trouble

June 28, 2025

From the theft of the browser to the intelligence collection instrument

June 28, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » Palo Alto advises securing the PAN-OS interface amid the potential RCE threat
Global Security

Palo Alto advises securing the PAN-OS interface amid the potential RCE threat

AdminBy AdminNovember 9, 2024No Comments2 Mins Read
Potential RCE Threat Concerns
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


November 9, 2024Ravi LakshmananVulnerability / Network Security

Potential threat of RCE

Palo Alto Networks on Friday issued an advisory urging customers to ensure that access to the PAN-OS management interface is secured due to a potential remote code execution vulnerability.

Palo Alto Networks is aware of a remote code execution vulnerability through the PAN-OS management interface. said. “At the moment, we do not know the specifics of the reported vulnerability. We are actively monitoring for signs of any exploitation.”

Meanwhile, the network security vendor advised users to properly configure the management interface according to best practices and ensure that it can only be accessed through trusted internal IP addresses to limit the attack surface.

Cyber ​​security

It goes without saying that the management interface should not be exposed to the Internet. Some of other recommendations to reduce exposure are listed below –

  • Isolate the management interface on a dedicated management VLAN
  • Use relay servers to access the management IP
  • Restrict incoming IP addresses to the management interface of approved management devices
  • Allow only secure communication such as SSH, HTTPS
  • Allow PING only to verify connectivity to the interface

The development comes a day after the US Cybersecurity and Infrastructure Security Agency (CISA) added a critical security flaw affecting Palo Alto Networks’ expedition to the Catalog of Known Vulnerabilities (KEV) is now fixed, citing evidence of active use.

Cyber ​​security

The vulnerability, tracked as CVE-2024-5910 (CVSS score: 9.3), addresses a case of missing authentication in the Expedition migration tool that could lead to the hijacking of an administrator account and possibly access to sensitive data.

While it is currently unknown how it is being used in the wild, federal agencies have been advised to apply the necessary patches by November 28, 2024 to protect their networks from the threat.

Did you find this article interesting? Follow us Twitter  and LinkedIn to read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

FBI warns about expanded spider attacks on airline using social engineering

June 28, 2025

The new AI Facebook tool asks for upload your photos for plot ideas, causing privacy trouble

June 28, 2025

From the theft of the browser to the intelligence collection instrument

June 28, 2025

More than 1000 SOHO devices hacked in China associated with cyber-science associated with cyber

June 27, 2025

Posted and Pubshell Sarsware used in Tibet’s Mustang Panda attack

June 27, 2025

The Chinese Silver Fox Group uses fake web -sats to deliver Sainbox Rat and Hidden Rortkit

June 27, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

FBI warns about expanded spider attacks on airline using social engineering

June 28, 2025

The new AI Facebook tool asks for upload your photos for plot ideas, causing privacy trouble

June 28, 2025

From the theft of the browser to the intelligence collection instrument

June 28, 2025

More than 1000 SOHO devices hacked in China associated with cyber-science associated with cyber

June 27, 2025

Posted and Pubshell Sarsware used in Tibet’s Mustang Panda attack

June 27, 2025

The Chinese Silver Fox Group uses fake web -sats to deliver Sainbox Rat and Hidden Rortkit

June 27, 2025

Business -SUCKS FOR AGENTIC AI SOC -Analytics

June 27, 2025

Transfer of person transfer is increased by threats when directed by scanning and disadvantages CVE

June 27, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

FBI warns about expanded spider attacks on airline using social engineering

June 28, 2025

The new AI Facebook tool asks for upload your photos for plot ideas, causing privacy trouble

June 28, 2025

From the theft of the browser to the intelligence collection instrument

June 28, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.