Wednesday , September 30 2026
PAN-OS

ALERT
Vulnerability in Palo Alto’s ADNS allow attacker reboot firewall leading maintenance mode 

Palo Alto Networks released a security advisory about a DoS vulnerability in its PAN-OS software, particularly in the Advanced DNS Security feature. The vulnerability, identified as CVE-2026-0229, has a CVSSv4 score of 6.6 and may allow unauthenticated attackers to cause firewalls to restart repeatedly, leading to maintenance mode.

The vulnerability highlights the fragility of specialized security features when faced with malformed data. By sending a “maliciously crafted packet,” an attacker can trigger a system crash without ever logging in.

Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

Apple has launched iOS 26.7.1 and iPadOS 26.7.1 to fix a serious zero-day flaw that it believes might have been...
Read More
Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

JadePuffer Agentic AI targets and destroys Azure’s cloud resources

The JadePuffer ransomware group is attacking Azure users with agent-based attacks that gather information, steal passwords, and damage key components. The...
Read More
JadePuffer Agentic AI targets and destroys Azure’s cloud resources

“InfoSecCon-2026: Bangladesh’s Cybersecurity Leaders Unite to Shape a Safer Digital Future”

The 5th Edition of InfoSecCon-2026, a premier cybersecurity-focused event, has been successfully completed with the participation of cybersecurity professionals, technology...
Read More
“InfoSecCon-2026: Bangladesh’s Cybersecurity Leaders Unite to Shape a Safer Digital Future”

Microsoft Patches CVSS 10.0 Azure AI Foundry Vulnerability Allowing Privilege Escalation

Microsoft has fixed a serious security flaw in Azure AI Foundry that could let bad actors gain privilege escalation. The...
Read More
Microsoft Patches CVSS 10.0 Azure AI Foundry Vulnerability Allowing Privilege Escalation

AWS is unable to restore access to Bahrain, one UAE cloud data zone after war damage

Amazon Web Services cannot restore access to its cloud-computing facility in Bahrain and ‌one of three data-hosting zones in the...
Read More
AWS is unable to restore access to Bahrain, one UAE cloud data zone after war damage

Cisco Warns of Critical ISE 0-Day Flaw and Hackers Allegedly Selling Fortinet FortiGate 1-Day Flaw

A threat actor is allegedly offering a private remote code execution exploit for Fortinet FortiGate SSL VPN appliances, claiming that...
Read More
Cisco Warns of Critical ISE 0-Day Flaw and Hackers Allegedly Selling Fortinet FortiGate 1-Day Flaw

Anthropic prepares “Claude Money” to analyze bank account and financial data

Anthropic is making a new Claude feature called “Money.” It's a separate tab in the mobile app. The new interface...
Read More
Anthropic prepares “Claude Money” to analyze bank account and financial data

GhostCode Phishing Kit Evades Microsoft 365 MFA to Hijack Accounts in 78 Seconds

GhostCode is a new phishing kit that changes a regular Microsoft 365 sign-in into an account theft. It doesn't need...
Read More
GhostCode Phishing Kit Evades Microsoft 365 MFA to Hijack Accounts in 78 Seconds

CISA Warns of Cisco Secure Email Gateway 0-Day Flaw Actively Exploited in Attacks

CISA has added a serious Cisco Secure Email Gateway flaw to its list of known exploits. They warn that attackers...
Read More
CISA Warns of Cisco Secure Email Gateway 0-Day Flaw Actively Exploited in Attacks

VPN flaw exposed 246,000 personnel records in japan

Japan’s Digital Agency found a data leak that may have exposed about 246,000 records with personal information of government workers....
Read More
VPN flaw exposed 246,000 personnel records in japan

The vulnerability comes from the way the ADNS feature handles certain network packets. The advisory explains the mechanism of the attack simply: “A denial-of-service (DoS) vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to initiate system reboots using a maliciously crafted packet.”.

Not all Palo Alto Networks firewalls are vulnerable; the risk depends on specific configurations.

ADNS Enabled: The firewall must have the Advanced DNS Security feature turned on.
Spyware Profile: It must also have a spyware profile configured with actions set to “block, sinkhole, or alert (i.e., any non-allow value)”.

Source: Palo Alto

If these conditions are met, the system is vulnerable. Fortunately, Cloud NGFW and Prisma Access are not impacted by this issue. Palo Alto Networks has issued patches for the affected PAN-OS versions.

Administrators should check their software version and apply the following updates:
PAN-OS 12.1: Upgrade to 12.1.4 or later (Affected: < 12.1.4).
PAN-OS 11.2: Upgrade to 11.2.10 or later (Affected: < 11.2.10).
Versions 11.1, 10.2, and Prisma Access are completely unaffected.

Check Also

Secure Email Gateway

CISA Warns of Cisco Secure Email Gateway 0-Day Flaw Actively Exploited in Attacks

CISA has added a serious Cisco Secure Email Gateway flaw to its list of known …