LIVE · cybersecurity feed
Live wire
Metabase Zero-Day Exploited in the Wild, Exposing Admin Access and Sensitive DataCritical One-Click Vulnerability in Atlassian’s Rovo AI Exposed Enterprise DataCVE-2026-8037 · CISA Adds Progress LoadMaster Command Injection Flaw to KEV CatalogSensitive Info Goes Into ‘No Reply’ Emails Constantly. This Guy Sees It AllAtlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to AttackersNew CSS Attacks Can Break Webmail Defenses to Steal Passwords and TokensCVE-2023-38646 · Metabase Zero-Day Exploited in Wild Allows Admin Access Without AuthenticationCVE-2026-18577 · N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and PersistCVE-2026-8037 · Progress Kemp LoadMaster Flaw Hits CISA KEV After 792 Reported Exploit AttemptsLiving off the coding agent: Two tales of tunnels and LaunchAgents
cybersecuritymedium

China Launches Cybersecurity Review of Palo Alto Networks Products

China's Cyberspace Administration has initiated a cybersecurity review of Palo Alto Networks' products sold within the country, citing national security concerns. The review, based on national security and cybersecurity laws, lacks specific details regarding the reasons or potential impact. Palo Alto Networks has stated that its operations and product delivery in the region remain unaffected for now.

zeroday.news ·

China's Cyberspace Administration (CAC) has initiated a cybersecurity review of Palo Alto Networks products sold within the country, citing national security concerns. The announcement from the CAC, published in formal Chinese, referenced the National Security Law and the Cybersecurity Law of the People's Republic of China, as well as the Cybersecurity Review Measures, as the legal basis for the probe.

The regulatory body stated that the review aims to ensure the safe and stable operation of critical information infrastructure, prevent cybersecurity risks and vulnerabilities, and safeguard national security. However, the public justification provided by the CAC did not specify any particular vulnerability, reference any incident, or provide a timeline for the review's findings.

Palo Alto Networks has confirmed that it maintains high standards across its global operations. The company stated that, as of now, the review has no impact on its ability to serve customers or deliver products in the region.

This action by Chinese authorities mirrors a 2023 security review of Micron, which was also announced without prior warning. Weeks after that review, Beijing declared Micron's products a security risk for critical infrastructure, leading to effective sales restrictions and limited explanation. Micron subsequently withdrew its data center and server products from China, resulting in significant annual revenue losses, while domestic chipmakers gained market share.

The review of Palo Alto Networks products aligns with a broader strategy by China to promote technological self-reliance and reduce reliance on foreign technology. In January, Chinese authorities reportedly instructed domestic firms to cease using security software from a list of U.S. and Israeli vendors, including Palo Alto Networks, Fortinet, Check Point, and CrowdStrike, encouraging the adoption of domestic alternatives. Chinese vendors such as Huawei and H3C have been actively positioning their own firewalls and security platforms as replacements for foreign products.

The financial impact on Palo Alto Networks is difficult to quantify immediately, as the company does not separately report its revenue from China. However, potential restrictions could create opportunities for domestic competitors and introduce further uncertainty for Western technology companies operating in China.

This development also has a wider geopolitical context, reflecting a cycle of reciprocal distrust between Beijing and Washington. China has consistently framed foreign technology as a potential national security risk, while the United States and its allies have taken similar actions against Chinese and Russian vendors, including Huawei, ZTE, and Kaspersky. For instance, the U.S. banned Kaspersky's cybersecurity and antivirus products due to national security concerns, citing the software's ties to Russia. The Palo Alto Networks review therefore underscores a trend where cybersecurity products are increasingly viewed as strategic assets rather than solely commercial technologies.

cybersecuritychinaregulationnational securitypalo alto networks
ShareXLinkedInWhatsAppFacebook

More News

view all →
breach

Hackers breach TrueConf to trojanize client installers with backdoors

The Head Mare hacktivist group has been exploiting vulnerabilities in unpatched TrueConf video conferencing servers to replace client installers with malicious versions that deliver backdoors. [...]

ai

Devs to Anthropic, OpenAI, Cursor, and friends: Make security and privacy the default

Researchers scour social media to measure developer concerns about AI coding tools

vulnerabilityhigh

Metabase Zero-Day Exploited in the Wild, Exposing Admin Access and Sensitive Data

Attackers exploited a CVSS 10 Metabase zero-day to gain admin access and steal sensitive data. Framework confirmed it was among the victims. Metabase just confirmed something no analytics vendor wants to write: attackers found and used an unpatched, maximum-severity flaw against Metabase Cloud before anyone on the defense side knew it existed. The company’s own […]

breachcritical

Critical One-Click Vulnerability in Atlassian’s Rovo AI Exposed Enterprise Data

The RovoBlast attack method identified by Varonis researchers could have been exploited to steal Confluence, Jira and SharePoint data. The post Critical One-Click Vulnerability in Atlassian’s Rovo AI Exposed Enterprise Data appeared first on SecurityWeek.

CVE-2026-8037critical

CISA Adds Progress LoadMaster Command Injection Flaw to KEV Catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability in Progress LoadMaster products to its Known Exploited Vulnerabilities catalog. This OS command injection flaw, tracked as CVE-2026-8037, allows unauthenticated attackers to execute arbitrary commands remotely. Exploitation attempts were observed as early as June 29, 2026, shortly after a proof-of-concept exploit became available.

surveillance

Flock’s Plans for Rideshare Dashcams and Coaching Police, Revealed

Flock Safety, a company known for its public safety cameras, reportedly pitched a plan to utilize dashcams from rideshare and delivery vehicles to collect license plate data. This initiative, which did not proceed, would have involved a partnership with Nexar, a dashcam manufacturer, and potentially involved drivers without their knowledge. Separately, a former Flock employee alleged the company provided direct camera access to ICE and CBP through a pilot program, contradicting internal statements.