Breach404
Back to Insights
Secure Software2 min readMay 30, 2026

Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks

Attackers are actively exploiting a critical authentication bypass vulnerability (CVE-2026-0257) in Palo Alto Networks GlobalProtect VPN that allows them to access corporate networks without valid credentials. If your organization uses GlobalProtect, you

Could your website be vulnerable to attacks like this?

Run a free 10-point security scan on your site — headers, SSL, DNS, and more. Results in 15 seconds.

Test Your Site Now — It's Free