Vendor dossier // paloaltonetworks.com
Also known as PANW · Palo Alto
Last updated: Aug 12, 2026, 06:08 AM
Conditional
The vendor is assigned an Elevated Risk tier due to multiple recent security incidents, including an August 2025 CRM data breach and active exploitation of a…
The vendor is assigned an Elevated Risk tier due to multiple recent security incidents, including an August 2025 CRM data breach and active exploitation of a critical CVE in May 2026. While Palo Alto Networks maintains strong public security certifications and a transparent trust center, the frequency of recent vulnerabilities and ongoing legal appeals warrant heightened scrutiny. The combination of active threat actor exploitation and material data exposure justifies a conservative risk assessment despite the company's established market position.
Palo Alto Networks is a multinational cybersecurity company headquartered in Santa Clara, California [1]. Founded in 2005, the firm serves over 70,000 organizations across more than 150 countries [2]. The company employs approximately 22,000 people and operates as a publicly traded entity on NASDAQ under the ticker PANW [3]. Palo Alto Networks reported annual revenues of $9.2 billion in 2024 [4]. The organization maintains a significant technical workforce, with large departments dedicated to information technology and engineering [5].
The vendor provides a comprehensive cybersecurity platform featuring advanced next-generation firewalls and cloud-based security extensions [6]. Its Cortex suite spans application security management, exposure management, and security operations, supported by AI-driven vulnerability prioritization and agentic automation. The company also offers identity security solutions, including privileged access management and workforce password management. Palo Alto Networks serves enterprise clients by consolidating vulnerability management, threat intelligence, and incident response into unified platforms.
Palo Alto Networks maintains a public trust center detailing its data taxonomy and compliance certifications. The vendor holds SOC 2+ reports, ISO certifications, Germany C5, and PCI DSS compliance to validate its security controls. Despite these certifications, the company has faced multiple recent security challenges, including a critical CVE-2026-0257 vulnerability that was actively exploited in the wild. The vendor maintains a vulnerability disclosure policy and regularly issues security advisories to guide customers on patching and mitigation.
[other] CVE-2026-0257 Active Exploitation
A critical vulnerability in PAN-OS devices was actively exploited by threat actors, prompting the vendor to urge immediate patching.
May 17, 2026, 12:00 AM · Source
[legal] Securities Fraud Class Action Appeal
Lead plaintiffs filed a notice of appeal after a court granted a motion to dismiss the second amended complaint regarding alleged misleading statements.
Sep 17, 2025, 12:00 AM · Source
[breach] Salesforce CRM Data Breach
Attackers exploited a supply-chain vulnerability linked to a third-party integration to access the vendor's CRM environment and exfiltrate sensitive customer data.
Aug 8, 2025, 12:00 AM · Source
[other] Management Interface Vulnerability
A critical vulnerability in management interfaces was disclosed, leading to thousands of compromised devices and urgent mitigation advisories.
Nov 8, 2024, 12:00 AM · Source
Vendors offering a similar product or service - for side-by-side comparison, not a ranking.
Check Point
Network security alternative
Fortinet
Network security alternative
Cisco
Network security alternative
Juniper Networks
Network security alternative
Recent news highlights several security incidents and corporate developments. In August 2025, a supply-chain vulnerability linked to a third-party integration led to unauthorized access of the company's Salesforce CRM and exfiltration of customer data. Additionally, a critical vulnerability (CVE-2026-0257) was actively exploited starting in May 2026, prompting urgent patching advisories. The company also faces an ongoing securities fraud class action appeal following a court dismissal in August 2025. Financially, Palo Alto Networks raised its annual forecasts in June 2026 due to strong demand for AI-driven cybersecurity products.
Content in this section is vendor-supplied and does not alter Vendorisk.ai's risk tier or evaluation.
32 sources · Generated Aug 12, 2026, 06:08 AM
Every verdict stores the public sources retrieved for this run. Read our methodology.
Input sources · retrieved Aug 12, 2026, 06:08 AM
Palo Alto Networks Jobs, Company Overview & Careers
Company
What is Palo Alto Networks? Profile, leadership & funding — Komo
Company
AI-generated assessment based on publicly available sources. Verify critical findings before contractual reliance. Analysis is advisory, not a compliance attestation, and is subject to data availability.
Palo Alto Networks Inc Company Profile - Palo Alto Networks Inc Overview - GlobalData
Company
Palo Alto Networks
Company
About Us - Palo Alto Networks
Company
Explore Palo Alto Networks Culture and Cybersecurity Careers and Jobs
Company
Employee Data and Trends for Palo Alto Networks | Unify
Company
Palo Alto Networks
Company
Palo Alto Networks - Market Share, Competitor Insights in Network Security
Product
Top Palo Alto Networks Competitors & Alternatives 2026 | Wiz
Product
Top Palo Alto Networks Competitors & Alternatives 2026 | Gartner Peer Insights - Hybrid Mesh Firewall
Product
Best Tenable Competitors & Alternatives for 2026
Product
Palo Alto Networks Competitors & Alternatives - Check Point Software
Product
Palo Alto Alternatives Similar Firewalls - zenarmor.com
Product
SOC 2+ - Palo Alto Networks
Security & risk
Trust Center - Palo Alto Networks
Security & risk
Compliance - Palo Alto Networks
Security & risk
What Is SOC 2 Compliance?
Security & risk
PlanSource Trust Center | Powered by SafeBase
Security & risk
The State of Cybersecurity Incident Response - Palo Alto Networks
Security & risk
Twilio Trust Center
Security & risk
Versa Security and Trust Center - Versa Networks
Security & risk
Palo Alto Networks Breach Exposes Customer Data: What Happened?
News
Palo Alto's Security Breach
News
Palo Alto Networks, Inc. (NASDAQ: PANW) Securities Fraud Class Action | New Cases | Kessler Topaz
News
Palo Alto Networks: Resource Center Press Release
News
Press Releases
News
Recent Palo Alto Networks Vulnerability Exploited for Weeks
News
Palo Alto Networks Inc | Reuters
News
Attackers are exploiting Palo Alto Networks defect that ...
News
2026 Unit 42 Global Incident Response Report
News
Palo Alto Networks Security Advisories
News