CISA added this to KEV on May 6 with a May 9 federal remediation deadline. A 3-day window tells you everything about how urgent this is.
If your portal was internet-facing, assume possible compromise and hunt firewall logs accordingly. https://t.co/MeLuBO7oLf
CVE-2026-0300: critical PAN-OS zero-day. Unauthenticated attacker sends crafted packets to the User-ID Authentication Portal, gets root on the firewall.
CVSS 9.3. Already being exploited. Patches don't ship until May 13. Here's what to do until then.
If you need the portal, restrict access to trusted internal zones. That alone drops CVSS from 9.3 to 8.7 and removes you from the exploitation pattern Palo Alto has observed in the wild.
Customers on PAN-OS 11.1+ should also confirm the Threat Prevention signature is active.
We've achieved SOC 2 Type II compliance! ✅
Security is core to our mission. This certification demonstrates that we hold ourselves to the same rigorous standards we help our customers achieve.
Learn more: https://t.co/OqgQBQpwwM
#SOC2#CyberSecurity#AttackSurfaceManagement
Every security team is different. That's why we built custom dashboards and configurable reports into the Halo Security platform.
Now you can focus on what matters most to your organization with our newest features:
- Drag-and-drop dashboards
- Configurable target reports
- Enhanced auto-tagging
#attacksurfacemanagement #cybersecurity
The healthcare threat landscape is evolving—are you ready? Visit us at #HIMSS25 at Booth C1000-26 from March 4-6 to:
✅ Meet our expert penetration testers and discuss how to strengthen your security posture
✅ Get insights on the latest HIPAA updates and new security testing requirements
✅ Grab some exclusive swag!
Let’s talk about protecting patient data, reducing cyber risk, and staying ahead of compliance changes. See you in Vegas!
We’re excited to announce our new Slack integration, making it easier than ever to stay on top of changes to your external attack surface. Check it out:
https://t.co/U6Ay0dtKfK
Thrilled to partner with ivision, a leader in tech consulting and managed services. Together, we’re set to help businesses stay ahead of evolving threats.
ivision is proud to announce its partnership with @halohackers! Together, we'll be able to provide clients with advanced external attack surface management & security testing solutions to help clients identify, assess & reduce the risks: https://t.co/tXfi9vCU8Y #HaloSecurity
🚀 Exciting news: Our Dark Web Monitoring solution is now available! Discover leaked credentials from your executive and employees, potential evidence of data compromise, and more.
https://t.co/lk9cdRvcKO
Attending @MSPExpo this week? Be sure to stop by Booth 554 and meet the team! We're talking about external security testing and helping organizations protect their internet-facing assets.
#TECHSUPERSHOW
We're excited to announce the rollout of the Halo Security + ArmorCode integration! Users can now effortlessly import discovered assets and vulnerability data from Halo Security into the @code_armor platform.
https://t.co/QpYxLkwnWw
Embracing third-party platforms is certainly convenient, but the risks are often overlooked. Discover some of the top risks and how you can mitigate them in our most recent post.
https://t.co/LPI2XBrjOr
What are #securityheaders and how do I implement them?
HTTP security headers can help you secure your business & protect your website's users. Watch the video to find out what the top security headers are & how you can implement them.
https://t.co/2soPyanj6q
Join the Halo Security team as we look at the new requirements for the PCI DSS 4.0 update. We'll review why it matters & how to get ahead of the upcoming changes.
Register here: https://t.co/fX6zt6rzCy
#PCIDSS#PCIDSSV4#cybersecurity#webinar