https://security.paloaltonetworks.com/CVE-2026-0263
> This issue requires IKEv2 VPN tunnels that is configured with Post Quantum Cryptography (PQC).
Random reminder that if you are exposing IKE to the Internet for static site-to-site tunnels, maybe allowlist only your peer endpoints and don't allow full Internet access to them. Just a thought. If you aren't sure if you are exposed, today seems like a good day to find out.
https://www.shodan.io/search?query=port%3A500
