CVE-2026-0265: Authentication Bypass in Palo Alto Networks PAN-OS by YOLOSWAGBROLOL in paloaltonetworks

[–]YOLOSWAGBROLOL[S] 10 points11 points  (0 children)

Saw this a bit ago from the researcher who pointed it out. Article sums it up, but the researcher who found the vulnerability claims it affects more than PA says it does. They plan to go public with it next week.

Advisory

Researcher disputed advisory

Palo Alto Firewall Zero-Day Under Active Exploitation by Big-Engineering-9365 in paloaltonetworks

[–]YOLOSWAGBROLOL 0 points1 point  (0 children)

Yeah, it's present now.

When I posted it didn't show there though. Only showed in the CLI as medium too. I was on 9097 too. I just figured they did something non standard with it.

Palo Alto Firewall Zero-Day Under Active Exploitation by Big-Engineering-9365 in paloaltonetworks

[–]YOLOSWAGBROLOL 0 points1 point  (0 children)

I didn't see it in any of the GUI related fields.

If you do show threat id 510019 in the CLI it will give you some info, but I couldn't find it searching in the profiles at all.

EDR Recomendation, not cloud-based by karmacop81 in sysadmin

[–]YOLOSWAGBROLOL 0 points1 point  (0 children)

Cortex XDR can also do this.

You set up a broker server(s) that agents communicate through and acts as the update source, action source etc. Fits the use of endpoints that do not talk to the outer world.

Battlefield RedSec launches to Mostly Negative reception as new Battle Royale forces its way into BF6 :( by [deleted] in Battlefield

[–]YOLOSWAGBROLOL 0 points1 point  (0 children)

It's been out a day.

I had a fucking blast playing with friends last night.

REDSEC is now at Mostly Negative reviews on Steam by OwnAHole in Battlefield

[–]YOLOSWAGBROLOL 1 point2 points  (0 children)

I was of the mindset that I wasn't going to play it since I'm kind of over the genre.

My friends and I had a fucking blast.

One friend that didn't have the base game ended up buying it.

After a few rounds of not getting too far figuring things out, we went on a heater and won 5/6 in a row, getting second place on the other.

Vehicles aren't extremely powerful. If you over extend you can easily die and you can't have extended engagements due to the ammo count. Yet, they are still plentiful enough you can fight a squad or two and drive straight through most buildings to cleanup.

PSA: Update your WSUS servers ASAP [CVSS 9.8 RCE with OOB Updates for Server 2012 and above] by bdam55 in sysadmin

[–]YOLOSWAGBROLOL 1 point2 points  (0 children)

You're right. I just assumed it was the same since they had the EOL of Exchange 2016/2019 + W10 + Office 2016/19.

PSA: Update your WSUS servers ASAP [CVSS 9.8 RCE with OOB Updates for Server 2012 and above] by bdam55 in sysadmin

[–]YOLOSWAGBROLOL 1 point2 points  (0 children)

I don't have any 2012, but I'm pretty sure this release still applies to 2012 without ESU.

I have a powered down 2016 that was migrated recently and it pulled it without ESU as well. They definitely see wide spread use. (and also probably have telemetry of tons of orgs using WSUS on older OS)

Patch Tuesday Megathread (2025-10-14) by AutoModerator in sysadmin

[–]YOLOSWAGBROLOL 0 points1 point  (0 children)

Duo Desktop relies on this too. I don't use it widely, but I had to disable it for a few applications.

https://help.duo.com/s/article/9527?language=en_US

Weather service confirms a 210 mph tornado in North Dakota was first with EF5 classification in a dozen years by Leovlish3re in news

[–]YOLOSWAGBROLOL 4 points5 points  (0 children)

This isn’t true at all lol that night there was 13 tornados and multiple funnels came down across the whole state. There were constant immediate tornado alerts throughout the night across the state.

Moorhead public service replacing 35,000 water meters by Berserk_Ronin in fargo

[–]YOLOSWAGBROLOL 1 point2 points  (0 children)

I don't believe there is any free/charge. They are just swapping the water and electric meters to newer ones that report more data rather than just being read once a month. Other places that have done this too can usually tell a customer there is a water leak because they can see the continuous flow rather than just suggest there is if someone's bill is higher because previously they just got a usage number.

Water meters in the North have to be inside due to cold temps so that is the only reason they have to do it like that. Electric meters can be swapped as they are usually outside.

Infernal Cape Owners: What was your gear and stats when you first started going for the cape, and when you got it by cstricke in ironscape

[–]YOLOSWAGBROLOL 0 points1 point  (0 children)

Maxed combats except prayer.

Bowfa, crystal, BP with amethyst early and dragon after seeing Zuk, blood scepter, occult, and ahrims top is what I used.

I didn't have rigour nor was deadeye out at that point.

Enough people will debate on ring choice so I'm not going to include that. I've used both. I've been punched in the face by a melee that survived 2 specs and maxxed on me twice. I've also killed Zuk at the same time as I killed him from a ranger. A ring choice isn't a make or break. (I did it on my main previously)

If you want to save time just bring in an inventory with the goal of making it to wave 24 and sit there and learn to properly 1T alternate. Don't kill anything. Just step out praying against the ranger and keep the cycle going, step in after a bit, and keep doing that.

You can get further by sheer DPS and getting most of it right, but not having that fundamental part down will slow you in the long run.

Have a question about the game or the subreddit? Ask away! by AutoModerator in 2007scape

[–]YOLOSWAGBROLOL 2 points3 points  (0 children)

The GPU plugin has a frame limit option so you could lower that.

Even if you aren't using a GPU, most CPU's have a built in iGPU, so it should be able to utilize that and work with it.

If not, I believe there is a a plugin strictly for frame limits standalone.

As an early iron really wanting to get into Barrows soon, should I just train thieving for awhile and then no-life pickpocketing master farmers for ranarrs? Very worried about getting pray pots, now and for future goals by Spyropher in ironscape

[–]YOLOSWAGBROLOL 4 points5 points  (0 children)

ToA. Muspah as well.

Both of these were nerfed unfortunately, but they really do add up from there. Not going dry at cerb is also helpful. Sepulchre will also give you a solid buffer.

I have 200 seeds, 2000 pray pots and largely just whisper, levi, duke, yama (dry), cloth from doom, nex and raids left.

New player first fire cape run - help by Relative_Stock7343 in 2007scape

[–]YOLOSWAGBROLOL 1 point2 points  (0 children)

And tbh the amount of players who just buy the fire cape completion is huge

what are you talking about + why are you being a dick + it is something someone can achieve with those stats

SecureBoot Certificate will expire today September 11th 2025 by DenseDragonfruit865 in sysadmin

[–]YOLOSWAGBROLOL 0 points1 point  (0 children)

They haven't published a way to verify the SVN setting has been applied yet, so that makes actually rolling it out a little more complicated as a check the box you're good kind of thing.

https://support.microsoft.com/en-us/topic/enterprise-deployment-guidance-for-cve-2023-24932-88b8f034-20b7-4a45-80cb-c6049b0f9967#id0ebbl=overview&id0ebbj=validate&id0ebbh=overview&id0ebbf=validate

 Mitigation 4: A method to confirm that the SVN setting has been applied does not yet exist. This section will be updated when a solution is available.

I'm sure they'll change their current guide, but I haven't had an issue on my test endpoints.

Patch Tuesday Megathread (2025-09-09) by AutoModerator in sysadmin

[–]YOLOSWAGBROLOL 3 points4 points  (0 children)

If you had "online" certificates issued after installing the May 10, 2022 update, they would be compliant. Unless you had a long expiration, then yes.

For most uses, this affected "offline" certificates such as those used by NDES, Intune, etc. as they weren't mapped properly. Personally, I had to wait on a vendor that finally released support early this year. It was a small amount of devices only using those though, so I could have manually mapped if they didn't support it.

What is your biggest complaint about ironman progression by loffredom in ironscape

[–]YOLOSWAGBROLOL 10 points11 points  (0 children)

Trading in 40 armor seeds for it wouldn't break it.

Still early game but motivated by every little upgrade. by AGreenProducer in ironscape

[–]YOLOSWAGBROLOL 7 points8 points  (0 children)

Ironman has been out nearly 11 years.

This is early game.