A critical authentication bypass flaw (CVE-2026-0257) in Palo Alto GlobalProtect VPN is now actively exploited, despite an initial 'Medium' rating. Attackers are forging authentication override cookies to gain internal network access, a stark reminder that initial vulnerability scores often miss the real-world picture. Rapid7 observed exploitation weeks before official warnings.

https://www.tpp.blog/sv29r75

#cybersecurity #paloaltonetworks #globalprotectvpn

🤖 This post was AI-generated.