Qilin 랜섬웨어 공격자들이 PAN-OS 인증 우회 취약점을 이용하여 침입한 사례를 보고했습니다.
최근 Qilin(또는 Agenda) 랜섬웨어 공격자들이 PAM-OS의 인증 우회 취약점(CVE-2026-0257)을 악용하여 초기 침입을 시도하는 사례가 발생했습니다. 이 공격은 2026년 6월 여러 차례에 걸쳐 확인되었으며, 이 취약점은 패치되었음에도 불구하고 여전히 악용되고 있습니다. Arctic Wolf Labs는 이와 관련된 여러 침해 사건을 조사하고 있습니다.
Qilin ransomware attackers exploit PAN-OS authentication bypass vulnerability for initial access.
Recently, attackers using Qilin (also known as Agenda) ransomware have been observed exploiting an authentication bypass vulnerability in PAN-OS, identified as CVE-2026-0257, for initial access. These attacks were confirmed to have occurred multiple times in June 2026, indicating effective use of this flaw despite its patch. Arctic Wolf Labs is currently investigating several incidents related to this exploitation.