Patch Now: Another Palo Alto Auth Bypass Bug Under Active Exploit
Exploiting the PAN-OS GlobalProtect VPN vulnerability requires certain conditions, but adversaries have done so in two attack waves that started in mid-May.
Stay secure online with the latest VPN news, trends, and expert insights. Protect your data and privacy with our Information Security VPN tag.
Search across headline titles and summaries.
Background for this topic.
VPN, or Virtual Private Network, is a security technology that creates an encrypted connection over a less secure network, such as the internet. By establishing secure connections, VPNs ensure that any data transmitted remains confidential and protected from interception by unauthorized entities.
In the context of information security, a VPN plays a crucial role in safeguarding sensitive information. When individuals or organizations transmit data over the internet, they are susceptible to cyber threats such as hacking, eavesdropping, and data theft. A VPN mitigates these risks by encapsulating and encrypting internet traffic. This cryptographic tunneling prevents attackers from accessing or manipulating the data in transit, preserving the integrity and confidentiality of digital communications.
VPNs are widely used for various purposes, including remote access to private networks, preserving anonymity online, and bypassing geographical restrictions. They are essential tools for enhancing privacy and security in digital environments, especially for users who frequently use public Wi-Fi networks or wish to protect their online activities from surveillance and tracking.
Weekly headline count for the current query.
Exploiting the PAN-OS GlobalProtect VPN vulnerability requires certain conditions, but adversaries have done so in two attack waves that started in mid-May.
Rapid7: Attackers exploit authentication bypass flaw in the wild, meaning more emergency patching for PAN-OS users
CVE-2026-0257 lets attackers forge Palo Alto GlobalProtect auth cookies and bypass VPN login. Exploitation confirmed since May 17. Palo Alto Networks addressed the vulnerability CVE-2026-0257 on May 13. Two weeks later, cybersecurity firm Rapid7 confirmed active exploitation across multiple customer environments. The flaw impacts the GlobalProtect portal and gateway components of Palo Alto Networks PAN-OS […]
Palo Alto Networks is warning that hackers are now exploiting a PAN-OS GlobalProtect authentication bypass flaw, tracked as CVE-2026-0257, in attacks attempting to breach corporate networks. [...]
Palo Alto Networks has warned that a recently disclosed medium-severity security flaw impacting PAN-OS and Prisma Access has come under active exploitation in the wild