Palo Alto VPN Bypass Flaw Under Active Attack
Palo Alto Networks has issued an urgent warning about active exploitation of CVE-2024-0257, a critical VPN bypass vulnerability in PAN-OS. The flaw allows unauthenticated attackers to bypass authentication mechanisms in GlobalProtect VPN implementations, potentially granting unauthorized network acc