Threat & Vulnerability Discussions
This forum provides information regarding how to detect and prevent the impact of vulnerabilities, malware, and other threats through the use of the Palo Alto Networks security platform.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Threat & Vulnerability Discussions
This forum provides information regarding how to detect and prevent the impact of vulnerabilities, malware, and other threats through the use of the Palo Alto Networks security platform.
About Threat & Vulnerability Discussions

Welcome to the Threat and Vulnerability discussion forum. This forum exists as a resource for security professionals to discuss and share information pertaining to the topics of threats and vulnerabilities.
Not a LIVEcommunity member? Simply click here and register!

Discussions

False Positive

Hello,

Please fix false positive detection: 

https://www.virustotal.com/gui/file/5259f523e41ffa42af0753df4c020f911a585b311c3267f17703c14920a352b8?nocache=1

Thank you!

DmitryGR by L0 Member
  • 6654 Views
  • 21 replies
  • 0 Likes

Update PAN-OS 11.1.0 to 11.2.1?

Hi all -

With regard to CVE-2024-3400 PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect and other issues, our PA-820 is running PAN- OS 11.1.0, should it be updated to PAN-OS 11.2.1?

Thank you

Kiet-Vo by L0 Member
  • 479 Views
  • 2 replies
  • 0 Likes

False Positives

I am looking to clear out the false positive: Virus/WIN32.WGeneric.edxqeb from the Palo Alto summary report. I went into the WildFire report in the firewall an added a rule to block it but it still shows up on the report. Also does anyone how I can o

...

S.Aklil by L1 Bithead
  • 409 Views
  • 1 replies
  • 0 Likes

Container Base images

In Prisma cloud how do i track base images. that is the know who is using the defined base images and who is not using them. like can i get a list of all containers leveraging the defined base images? 

GGabila by L0 Member
  • 874 Views
  • 0 replies
  • 0 Likes

Resolved! Alert on domain fronting attempt

Hello,

Does someone already tried to simulate a domain fronting attack to see if the firewall correctly identify it ?

I have tried on a PANOS 10.1 FW. It correctly see the host in header and apply URL filtering policy to it but do not alert in threat

...

Cedricd by L1 Bithead
  • 2499 Views
  • 1 replies
  • 0 Likes

7zip false positive

Hello. I'm 99% sure this is false positive. I install 7zip 1 year ago, no updates.

 

Información de la aplicación: Nombre de aplicación: 7-Zip GUI Versión de aplicación: 23.1.0.0 Publicador de aplicación: Igor Pavlov ID de proceso: 48668 Ubicación de...

  • 503 Posts
  • 63 Subscriptions
This widget could not be displayed.