LIVE · cybersecurity feed
Live wire
security

China launches mysterious probe into security of Palo Alto Networks' products

Beijing’s not saying why, which is just what happened when it investigated Micron

zeroday.news ·

China's Cyberspace Administration (CAC) has initiated a security review of products from Palo Alto Networks, a major cybersecurity vendor. The CAC's public statement on the matter indicated the review is necessary "to ensure the safe and stable operation of critical information infrastructure, prevent cybersecurity risks and vulnerabilities, and safeguard national security." No further details regarding the specific reasons for the probe have been disclosed by Beijing.

Palo Alto Networks has confirmed the review, stating that it maintains "the highest standards of business conduct and security practices and ethics across our global operations." The company added that, at present, there is "no impact to our ability to support customers or deliver our products and services in the region."

This action by the Chinese regulator bears similarities to a 2023 investigation into products from the memory manufacturer Micron. In that instance, the CAC also announced a security probe without providing detailed explanations. Although Micron had previously been involved in intellectual property and antitrust disputes in China, neither the company nor Chinese authorities explicitly linked those issues to the security investigation.

Weeks after announcing the Micron probe, the CAC concluded that Micron's products posed an unacceptable security risk for critical infrastructure operators, effectively banning their sale to such entities. Micron subsequently ceased selling its datacenter and server products in China, a decision that resulted in billions of dollars in lost annual revenue for the company. This move also created opportunities for domestic Chinese memory manufacturers, who face restrictions on selling to American companies.

Palo Alto Networks has not publicly disclosed its revenue figures specifically from China, making it difficult to estimate the potential financial impact of any adverse findings from the current review. China is home to several cybersecurity companies, including Huawei and H3C, whose product offerings overlap with those of Palo Alto Networks.

For years, China has accused Western technology companies of complicity in US surveillance and offensive cyber operations. Conversely, Western governments have leveled similar accusations against Chinese tech firms like Huawei and ZTE. The previous ban on Micron products in China did not significantly affect the company's reputation outside the country, with the recent AI boom contributing to substantial financial gains for Micron.

ShareXLinkedInWhatsAppFacebook

More News

view all →
surveillance

Flock’s Plans for Rideshare Dashcams and Coaching Police, Revealed

Flock Safety, a company known for its public safety cameras, reportedly pitched a plan to utilize dashcams from rideshare and delivery vehicles to collect license plate data. This initiative, which did not proceed, would have involved a partnership with Nexar, a dashcam manufacturer, and potentially involved drivers without their knowledge. Separately, a former Flock employee alleged the company provided direct camera access to ICE and CBP through a pilot program, contradicting internal statements.

email securityhigh

Sensitive Info Goes Into ‘No Reply’ Emails Constantly. This Guy Sees It All

Security researchers Cory Solovewicz and Mike Sheward have inadvertently created honeypots by purchasing domains like noreply.us and deleteduser.com. Organizations are mistakenly sending sensitive data, including personal information, company secrets, and system credentials, to these domains, believing they are unmonitored. Both researchers are now working to notify affected entities and raise awareness about this widespread misconfiguration, highlighting the potential for malicious actors to exploit such vulnerabilities.

atlassianhigh

Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers

Two security firms have identified vulnerabilities in Atlassian's Rovo assistant that could allow attackers to exfiltrate data from Jira and Confluence. One vulnerability, dubbed RovoBlast by Varonis Threat Labs, allowed attackers to trick Rovo into sending data to an external server via a malicious link. Atlassian has confirmed this issue is fixed server-side. The second vulnerability, found by PromptArmor, involved injecting malicious instructions into content Rovo processes, enabling data exfiltration without explicit user approval. The status of this second vulnerability remains unconfirmed after its initial disclosure.

breach

Unlimited Technology Systems Data Breach Exposes Data of 3.8 Million Healthcare Patients

Hackers stole personal, medical, and insurance data of 3.8 million people from Unlimited Technology Systems’ data center. Unlimited Technology Systems disclosed a data breach affecting more than 3.8 million people after hackers accessed one of its commercial data centers between October 5 and 10, 2025. Unlimited Technology Systems is a U.S.-based healthcare technology company headquartered […]

malwarehigh

Living off the coding agent: Two tales of tunnels and LaunchAgents

Agent-parented reverse tunnels and LaunchAgents can expose a local admin app to the internet. Endpoint still needs to treat that as high severity even when the activity looks like vibe-coded ops, not confirmed malware.

ai

OpenAI pledges to add Astra security as Anthropic loosens Fable's leash

Or how I learned to stop worrying and love dangerous AI