financetom
Technology
financetom
/
Technology
/
CyberRatings.org and NSS Labs Announce Follow-On Enterprise Firewall Results
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
CyberRatings.org and NSS Labs Announce Follow-On Enterprise Firewall Results
Nov 25, 2025 3:11 AM

Fortinet and Palo Alto Networks Improve from Caution to Recommended Ratings Following Retesting

AUSTIN, Texas, Nov. 25, 2025 /PRNewswire/ -- CyberRatings.org (CyberRatings), the non-profit organization dedicated to providing confidence in cybersecurity products and services through independent testing, today announced Follow-On Test Results for the Fortinet FortiGate-200G and Palo Alto Networks PA-1410 Enterprise Firewalls.

Customers should request the updated firewalls from Fortinet and Palo Alto Networks immediately to ensure protection.

Both products have improved their ratings from Caution to Recommended following submissions to NSS Labs to retest after developing new builds to address their earlier evasion resistance deficiencies published on November 5, 2025.

"Both Fortinet and Palo Alto Networks responded quickly and transparently to our original findings, issuing updates within days and requesting immediate retesting," said Vikram Phatak, CEO of NSS Labs. "The speed at which these vendors addressed and resolved critical issues shows their commitment to their customers' security."

Fortinet Follow-On Results

During the initial test of Fortinet's v7.6.4 build3596 with IPS v7.01154 (33.00064), NSS Labs was able to bypass protection using Layer 4 TCP evasions. Fortinet responded quickly to develop an updated IPS signature package. After retesting, NSS Labs confirmed that the update addressed all exploit evasion resistance deficiencies.

Exploit evasion resistance increased from 60% to 100%, elevating the overall Security Effectiveness from 79.24% to 99.24%. Organizations running IPS version v7.01154 (33.00064) or earlier should upgrade immediately to v7.01165 (33.00064) to ensure protection against evasion techniques as detailed in the November 5 publication.

Palo Alto Networks Follow-On Results

During the initial test of PAN-OS 11.2.8-c537, NSS Labs was able to bypass protection using Layer 3 IP and Layer 4 TCP evasions. Palo Alto Networks responded quickly to develop an updated PAN-OS firmware package (PAN-OS 11.2.10-c37) to ensure that the problem had been fixed. After retesting, NSS Labs confirmed that the updated firmware addressed all exploit evasion resistance deficiencies, providing substantial improvements in protection.

Exploit evasion resistance increased dramatically from 0% to 100%, elevating the overall Security Effectiveness from 46.37% to 96.07%.

NSS Labs notes that it is not unusual for vendors to submit pre-release software or firmware intended for imminent release, which NSS Labs requires to be scheduled for general availability within 90 days following a test. Palo Alto Networks confirmed that PAN-OS version 11.2.10-c37 was provided as a pre-release and will be designated as PAN-OS 11.2.10 upon reaching general availability.

Organizations running PAN-OS 11.2.8-c537 or earlier should immediately request PAN-OS 11.2.10 to ensure protection against evasion techniques as detailed in the November 5 publication.

Context and Vendor Accountability

These follow-on results reaffirm the importance of independent testing and vendor accountability. Both vendors' prompt response demonstrates how transparency and rapid engineering benefit customers.

To accompany these follow-on reports, NSS Labs published a blog titled When Firewalls Fail Gracefully: Why Vendor Responsiveness Matters as Much as Security Effectiveness, highlighting the importance of transparency and quick remediation in cybersecurity engineering.

Testing Methodology

The follow-on tests were conducted using the same methodology and datasets employed in the original Q4 2025 Enterprise Firewall Comparative Report, which evaluated seven leading products under real-world conditions. The updated results now place Fortinet and Palo Alto Networks in the Recommended category alongside Check Point, Juniper Networks, and Versa Networks.

Tests were conducted by NSS Labs developed technologies and Keysight's CyPerf tool to evaluate security, performance, TLS functionality, and stability. The updated test reports are available at no cost on the CyberRatings.org website.

About CyberRatings.org

CyberRatings.org is a 501(c)6 non-profit organization dedicated to providing confidence in cybersecurity products and services through our research and testing programs. We provide enterprises with independent, objective ratings of security product efficacy to make informed decisions. To gain access to free reports, visit www.cyberratings.org and follow us on LinkedIn.

View original content to download multimedia:https://www.prnewswire.com/news-releases/cyberratingsorg-and-nss-labs-announce-follow-on-enterprise-firewall-results-302625281.html

SOURCE CyberRatings.org

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
This Is What Whales Are Betting On Accenture
This Is What Whales Are Betting On Accenture
Jun 14, 2024
Whales with a lot of money to spend have taken a noticeably bullish stance on Accenture ( ACN ). Looking at options history for Accenture ( ACN ) we detected 8 trades. If we consider the specifics of each trade, it is accurate to state that 50% of the investors opened trades with bullish expectations and 12% with bearish. From...
End of day Ethereum price (ETHUSD) forecast update - 14-06-2024
End of day Ethereum price (ETHUSD) forecast update - 14-06-2024
Jun 14, 2024
Ethereum price (ETHUSD) managed to touch our waited target at 3360.31$ and finds solid support there, expecting the continuation of the negative trades to break this level and open the way to achieve more bearish correction that its next target reaches 3132.80$, motivated by stochastic negativity that appears clearly now, taking into consideration that the consolidation of 3360.31$ against the...
End of day Bitcoin price (BTCUSD) forecast update - 14-06-2024
End of day Bitcoin price (BTCUSD) forecast update - 14-06-2024
Jun 14, 2024
Bitcoin price (BTCUSD) succeeded to achieve our waited target at 65485.00$ and attempts to break it, reinforcing the chances of extending the bearish wave on the intraday and short-term basis, noting that confirming the break will push the price to target 60330.00$ areas as a next negative station, while breaching 67080.00$ represents initial positive key that will lead the price...
The Analyst Landscape: 14 Takes On DoubleVerify Hldgs
The Analyst Landscape: 14 Takes On DoubleVerify Hldgs
Jun 14, 2024
Ratings for DoubleVerify Hldgs ( DV ) were provided by 14 analysts in the past three months, showcasing a mix of bullish and bearish perspectives. The table below summarizes their recent ratings, showcasing the evolving sentiments within the past 30 days and comparing them to the preceding months. Bullish Somewhat Bullish Indifferent Somewhat Bearish Bearish Total Ratings 6 8 0...
Copyright 2023-2025 - www.financetom.com All Rights Reserved