Palo Alto Networks Unit 42
unit42 · B · active
https://unit42.paloaltonetworks.com/
Palo Alto threat research. RSS at https://unit42.paloaltonetworks.com/feed/ fully mirrors the listing (verified 2026-05-08). 2026-05-08 audit: WebFetch on HTML returned 5 dated articles latest 2026-05-06 on PAN-OS 0-day, Linux RCE, npm supply-chain. | 2026-06-20 full audit (v2.62): live=Y, drill=Y. FETCH → rss: python3 tools/fetch_source.py feed https://unit42.paloaltonetworks.com/feed/ 5 (mirrors listing) then webfetch per-article URL; webfetch HTML index also works. AVOID: Both webfetch HTML and the /feed/ RSS work; the feed fully mirrors the listing with clean dates; no need to scrape HTML.. | 2026-07-05 admiralty audit: B, flagship vendor threat-research lab, original first-hand research; both WebFetch HTML and /feed/ RSS work. No status change.
Cited in 28 entries
Citation cadence
Citation days per ISO week (17 weeks of coverage span, total 25).
- Unit 42 exposes two Latin American intrusion clusters after their own AI-agent staging infrastructure was left open, one hit Mexican federal ministries and water utilities, the other Brazilian finance2026-09-04
- Unit 42's dataset of 405 AI-enabled malware samples finds 97% never leave sandboxes, and every sample that reached a production environment was caught by existing behavioural detection with no novel approach required2026-08-28
- A near-autonomous, multi-agent AI framework compromised Taiwanese government infrastructure over four days, cracking 85 accounts, exfiltrating 2,564+ personnel records, and bypassing its own safety guardrails by reframing itself as 'authorized penetration testing'2026-08-28
- Stolen AI API tokens reach a reselling proxy within minutes, Unit 42 documents the 'transfer station' market and the account-takeover variant that mints its own keys2026-08-07
- CHAINDROP, the Shai-Hulud npm worm returns through the keyv maintainer, backdoors 400+ packages, and resolves its exfiltration endpoint from an Ethereum smart contract2026-08-06
- Autonomous vulnerability discovery is finding the bug classes fuzzing cannot reach; Unit 42 reports 92% of its pipeline's open-source findings are logic and access-control flaws, not memory-safety bugs2026-08-05
- Pass-ta-key: unprivileged malware forges Chrome synced-passkey assertions, registers its own user-verification key, and can steal the master secret that decrypts every passkey2026-08-04
- XCSSET v40 turns the macOS `defaults` preference system into a fileless re-infection store and holds an exclusive lock on the XProtect signature database2026-08-01
- Unit 42 recovers a live autonomous-AI attack operation after it exposed its own home directory, the confirmed compromises came from manual Citrix NetScaler exploitation (CVE-2026-3055), not the agent2026-07-31
- Russian state actor LAUNDRY BEAR weaponised a Zimbra webmail zero-click (CVE-2025-66376) for mailbox exfiltration, now exposed in a 16-nation joint advisory2026-07-24
- CVE-2025-40948/-40947/-40949, Siemens RUGGEDCOM ROX II: Unit 42 chains three OT-switch flaws to persistent root2026-07-18
- AsyncAPI npm packages backdoored via a GitHub Actions pull_request_target token theft, delivering a multi-stage IPFS implant (M-RED-TEAM)2026-07-14
- Unit 42: Factory-v3 loader-builder abuses fraudulent code-signing and 491 MB file inflation to smuggle Vidar and XMRig past sandboxes2026-07-08
- Unit 42: "Phantom Squatting", registering AI-hallucinated domains to poison LLM-driven URL delivery2026-07-01
- Unit 42: Chinese-speaking cluster CL-STA-1062 deploys the new TinyRCT .NET backdoor against SE-Asian government and energy targets via AppDomainManager injection2026-06-28
- Unit 42: malicious skills on the OpenClaw "ClawHub" agent marketplace deliver macOS infostealers and weaponise AI agents for financial fraud2026-06-24
- Unit 42: cloud-bucket hijacking via global-namespace reuse silently redirects log and replication streams2026-06-24
- Unit 42 "Pickle in the Middle": cross-tenant code execution in Google Vertex AI via predictable staging buckets (CVE-2026-2473)2026-06-17
- Unit 42 catalogues cloud-logging defense-evasion across AWS CloudTrail and Google Cloud Logging, with concrete detection mappings2026-06-10
- Unit 42: Microsoft Teams external-chat now a primary phishing surface for APT29 and UNC66922026-06-09
- Unit 42 Operation FlutterBridge: notarized macOS backdoor hides its logic in a remote WebView and exfiltrates documents through an "AI summarise" feature2026-06-05
- Linux cgroups v1 release_agent container escape (CVE-2022-0492) re-enters active exploitation2026-06-03
- CVE-2026-0257, Palo Alto PAN-OS GlobalProtect: Pre-Auth Authentication Bypass via Certificate Reuse2026-05-30
- Unit 42, ROADtools operationalised by Midnight Blizzard, Curious Serpens and UTA0355 for Entra ID device registration, token theft and tenant enumeration2026-05-23
- Unit 42, Iran's Screening Serpens (UNC1549 / Smoke Sandstorm / Nimbus Manticore): AppDomainManager hijacking silently disables ETW + strong-name checks in six new RATs2026-05-23
- Unit 42: Gremlin Stealer evolved with .NET-resource XOR obfuscation, real-time crypto-clipper, and WebSocket browser-process session-hijack module2026-05-16
- CVE-2026-0300 PAN-OS Captive Portal, patch wave 2 delayed to 2026-05-28 for eight high-traffic build streams; mitigation remains the only option on those builds2026-05-14
- Palo Alto PAN-OS CVE-2026-0300, first-wave fixed builds now scheduled for 2026-05-13; until then interim mitigation remains the only option2026-05-12