Palo Alto's Firewall Glitch Hits CISA's 'Fix Now' List After Real-World Attacks
CISA's Known Exploited Vulnerabilities catalog just grew by one: a Palo Alto firewall bug that's already drawing fire from attackers. Patch by September 9, or risk becoming the next DDoS reflector.
β‘ Key Takeaways
- CISA added CVE-2022-0028 to KEV catalog after confirmed exploits; federal patch deadline is Sept 9.
- Bug turns misconfigured PAN-OS firewalls into DDoS amplifiers β no auth needed.
- Vendors like Palo Alto downplay scope, but history shows 'niche' flaws enable massive attacks.
π§ What's your take on this?
Cast your vote and see what Threat Digest readers think
Worth sharing?
Get the best Cybersecurity stories of the week in your inbox β no noise, no spam.
Originally reported by Threatpost