Horizon3.ai[verified]@Horizon3aiActive Exploitation
The post reports that threat actor #NodeZero exploited CVE-2024-9474, an exposed PAN‑OS web service, to achieve privilege escalation, indicating active exploitation in the wild.
Patrick Roland[verified]@DeusLogicaGeneral
The post reports that CVE‑2024‑9474 is a high‑risk privilege‑escalation flaw in Palo Alto Networks PAN‑OS, but it offers no evidence of active exploitation, PoCs, or patches.
Patrick Roland[verified]@DeusLogicaGeneral
The post reports a high EPSS score for CVE-2024-9474, describing it as a privilege escalation flaw in Palo Alto Networks PAN-OS likely exploitable, but provides no PoC, exploit code, or patch details.
transilienceai[verified]@transilienceaiActive Exploitation
The tweet reports that CVE-2024-0012 and CVE-2024-9474 in PAN-OS resulted in more than 2,000 firewalls being compromised in November 2024, with attackers gaining root privileges—an explicit claim of in-the-wild exploitation.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
The report confirms attackers actively exploited CVE‑2024‑0012 and CVE‑2024‑9474 on over 2,000 PAN‑OS firewalls, achieving root access and establishing persistent C2 channels.
ThreatCluster[verified]@threatclusterActive Exploitation
CVE-2024-0012 and CVE-2024-9474 are actively exploited to gain unauthenticated administrative and root access on Palo Alto firewalls. Patches are available for multiple PAN‑OS versions.