Rhys O'Higgins
As a Senior Security Consultant, Rhys works primarily on Attack Surface Management, helping build and deliver NetSPI's continuous testing capabilities, while also providing leadership to the Attack Surface Management operations team. In addition, Rhys executes web application and external network penetration tests. Rhys holds the Offensive Security Certified Professional (OSCP) certification and a B.A. in Mathematics and Computer Science.
More By Rhys O'Higgins
Critical Vulnerability
CVE-2026-0300 Palo Alto Networks PAN-OS Buffer Overflow Overview & Takeaways
May 6, 2026
Palo Alto Networks has disclosed a critical zero-day vulnerability in PAN-OS, tracked as CVE-2026-0300, affecting PA-Series and VM-Series firewalls with the User-ID Authentication Portal (Captive Portal) enabled. The flaw is a pre-authentication buffer overflow that allows an unauthenticated, remote attacker to execute arbitrary code with root privileges on affected devices.
Learn More
Critical Vulnerability
CVE-2025-26399 SolarWinds Web Help Desk Overview and Takeaways
March 10, 2026
A critical vulnerability (CVE-2025-26399) has been identified in SolarWinds Web Help Desk, which allows unauthenticated remote attackers to execute arbitrary code on affected systems. Although CVE-2025-26399 was originally disclosed in 2025, recent reports confirm this vulnerability is now being actively exploited in the wild.
Learn More