The Lab · 2026-05-06 07:31:37 · Heise Online
Palo Alto Networks hat vor einer bereits aktiv ausgenutzten kritischen Sicherheitslücke in seiner Firewall-Plattform PAN-OS gewarnt. Die Schwachstelle ermöglicht es Angreifern, die Authentifizierung zu umgehen und unbefugten Zugriff auf verwaltete Systeme zu erlangen. Das Unternehmen stuft die Vulnerability als kritisc...
The Lab · 2026-05-08 04:16:13 · The Hacker News
Palo Alto Networks has issued an emergency advisory warning of a critical buffer overflow flaw in its PAN-OS firewall operating system that threat actors are actively exploiting in the wild. The vulnerability, tracked as CVE-2026-0300, allows unauthenticated remote code execution and carries a CVSS score of 9.3, placin...
The Lab · 2026-05-10 14:01:53 · r/selfhosted
Docker's default port publishing behavior silently circumvents UFW firewall rules on Linux, exposing database ports directly to the internet. The issue is well-documented but continues to catch system administrators and self-hosters off guard, creating persistent attack surfaces on production servers.
When Docker publ...
The Lab · 2026-05-14 04:48:35 · Mastodon:hachyderm.io:#cybersecurity
A critical command injection vulnerability has been identified in OPNsense core versions prior to 26.1.8, potentially enabling unauthenticated remote attackers to execute arbitrary commands with root-level privileges by exploiting DHCP configuration settings. The flaw, cataloged as CVE-2026-45158 and classified under C...