Security · 3h ago
Qilin Ransomware Exploits PAN-OS Flaw for Initial Access
Threat actors are exploiting a patched Palo Alto Networks PAN-OS authentication bypass (CVE-2026-0257, CVSS 7.8) to deploy Qilin ransomware. Arctic Wolf Labs investigated multiple June 2026 intrusions using this vulnerability for initial access. The flaw affects the portal and gateway interfaces.
Meridian48 take
This highlights how even patched vulnerabilities remain dangerous if organizations delay updates, especially when ransomware groups like Qilin actively weaponize them.
Read the full reporting
Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access →
The Hacker News
ransomwarepan-os-vulnerability