#forticloud — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #forticloud, aggregated by home.social.
-
FortiBleed: The ongoing Fortinet / FortiGate compromise campaign
Fortinet edge devices are being targeted in a large-scale compromise campaign involving exposed management interfaces, FortiCloud SSO abuse, credential theft, brute forcing, config exports, and suspicious admin account creation.
This should be treated as a compromise-assessment event, not just a normal patch cycle.
Admins should patch FortiOS, review all local admin accounts, rotate credentials and shared secrets, check for config exports, enforce MFA, and restrict management access to trusted IPs or VPN-only access.
Full details:
https://forum.hashpwn.net/post/14105#fortinet #fortigate #fortibleed #fortios #forticloud #cybersecurity #vpn #hashpwn
-
FortiBleed: The ongoing Fortinet / FortiGate compromise campaign
Fortinet edge devices are being targeted in a large-scale compromise campaign involving exposed management interfaces, FortiCloud SSO abuse, credential theft, brute forcing, config exports, and suspicious admin account creation.
This should be treated as a compromise-assessment event, not just a normal patch cycle.
Admins should patch FortiOS, review all local admin accounts, rotate credentials and shared secrets, check for config exports, enforce MFA, and restrict management access to trusted IPs or VPN-only access.
Full details:
https://forum.hashpwn.net/post/14105#fortinet #fortigate #fortibleed #fortios #forticloud #cybersecurity #vpn #hashpwn
-
FortiBleed: The ongoing Fortinet / FortiGate compromise campaign
Fortinet edge devices are being targeted in a large-scale compromise campaign involving exposed management interfaces, FortiCloud SSO abuse, credential theft, brute forcing, config exports, and suspicious admin account creation.
This should be treated as a compromise-assessment event, not just a normal patch cycle.
Admins should patch FortiOS, review all local admin accounts, rotate credentials and shared secrets, check for config exports, enforce MFA, and restrict management access to trusted IPs or VPN-only access.
Full details:
https://forum.hashpwn.net/post/14105#fortinet #fortigate #fortibleed #fortios #forticloud #cybersecurity #vpn #hashpwn
-
FortiBleed: The ongoing Fortinet / FortiGate compromise campaign
Fortinet edge devices are being targeted in a large-scale compromise campaign involving exposed management interfaces, FortiCloud SSO abuse, credential theft, brute forcing, config exports, and suspicious admin account creation.
This should be treated as a compromise-assessment event, not just a normal patch cycle.
Admins should patch FortiOS, review all local admin accounts, rotate credentials and shared secrets, check for config exports, enforce MFA, and restrict management access to trusted IPs or VPN-only access.
Full details:
https://forum.hashpwn.net/post/14105#fortinet #fortigate #fortibleed #fortios #forticloud #cybersecurity #vpn #hashpwn
-
Bitte schnell die betroffenen Systeme aktualisieren und sich einen neuen Hersteller des Vertrauens suchen... z.B. #CheckPoint 🫳 🎤
#Fortinet #FortiCloud #FortiOS #FortiManager #FortiWeb #FortiProxy #FortiAnalyzer #Sicherheitsluecke #EUVD_2026_4712 #CVE_2026_24858
-
Bitte schnell die betroffenen Systeme aktualisieren und sich einen neuen Hersteller des Vertrauens suchen... z.B. #CheckPoint 🫳 🎤
#Fortinet #FortiCloud #FortiOS #FortiManager #FortiWeb #FortiProxy #FortiAnalyzer #Sicherheitsluecke #EUVD_2026_4712 #CVE_2026_24858
-
Bitte schnell die betroffenen Systeme aktualisieren und sich einen neuen Hersteller des Vertrauens suchen... z.B. #CheckPoint 🫳 🎤
#Fortinet #FortiCloud #FortiOS #FortiManager #FortiWeb #FortiProxy #FortiAnalyzer #Sicherheitsluecke #EUVD_2026_4712 #CVE_2026_24858
-
Bitte schnell die betroffenen Systeme aktualisieren und sich einen neuen Hersteller des Vertrauens suchen... z.B. #CheckPoint 🫳 🎤
#Fortinet #FortiCloud #FortiOS #FortiManager #FortiWeb #FortiProxy #FortiAnalyzer #Sicherheitsluecke #EUVD_2026_4712 #CVE_2026_24858
-
Fortinet schließt kritische Sicherheitslücke CVE-2026-24858 nach aktiver Ausnutzung
Eine neu entdeckte Schwachstelle in der FortiCloud-Infrastruktur hat Angreifern den Zugang zu Firewall-Systemen verschiedener Organisationen ermöglicht. Fortinet reagierte mit der vorübergehenden Abschaltung der Single-Sign-On-Funktionalität und veröffentlichte Handlungsempfehlungen für betroffene Nutzer.
-
Outlook cloudy with Fortinet as SSO-yikes rains down:
-
Outlook cloudy with Fortinet as SSO-yikes rains down:
-
Outlook cloudy with Fortinet as SSO-yikes rains down:
-
Outlook cloudy with Fortinet as SSO-yikes rains down:
-
Outlook cloudy with Fortinet as SSO-yikes rains down: