Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
…However, Rapid7 says that in many incidents, even though the appliance accepted the forged cookie, they were unable to establish a full VPN session. Rapid7's investigation into affected customers found that…