A major spike in malicious scanning against Palo Alto Networks GlobalProtect portals has been detected, starting on 14, 2025.
GreyNoise observes 500% spike in scans targeting Palo Alto GlobalProtect and PAN-OS profiles 7% of scanning IPs were malicious; most originated from the US, targeting systems in the US and Pakistan ...
GlobalProtect login endpoints targeted, sparking concern that something bigger may be brewing Updated Malicious traffic ...
Organizations relying on Palo Alto Networks' GlobalProtect VPN for secure remote access should stay vigilant for any signs of a security breach. In recent weeks, there has been a sharp spike in ...