A major vulnerability is being exploited in Palo Alto via Python’s zero-day backdoor

For weeks, unidentified threat actors have been exploiting a critical zero-day vulnerability in Palo Alto Networks’ PAN-OS software, executing arbitrary code on vulnerable firewalls with root privileges.

Multiple security researchers have highlighted the campaign, including Palo Alto Networks’ own Unit 42, noting that a single group of threat actors has been exploiting a vulnerability called command injection since March 26, 2024.