home.social

#fortigate — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #fortigate, aggregated by home.social.

fetched live
  1. Hackers bypass patch using new FortiOS vulnerability

    An actively exploited #vulnerability in #FortiOS allows for the bypass of a previous protection mechanism against manipulated symbolic links. Affected systems should be updated and checked for prior compromise.

    Sensitive information on potentially compromised #FortiGate systems running FortiOS with SSL-VPN enabled may be at risk.

    euvd.enisa.europa.eu/vulnerabi

    Source: security-insider.de/fortios-ss

    #Fortinet #CVE

  2. FortiBleed: The ongoing Fortinet / FortiGate compromise campaign

    Fortinet edge devices are being targeted in a large-scale compromise campaign involving exposed management interfaces, FortiCloud SSO abuse, credential theft, brute forcing, config exports, and suspicious admin account creation.

    This should be treated as a compromise-assessment event, not just a normal patch cycle.

    Admins should patch FortiOS, review all local admin accounts, rotate credentials and shared secrets, check for config exports, enforce MFA, and restrict management access to trusted IPs or VPN-only access.

    Full details:
    forum.hashpwn.net/post/14105

    #fortinet #fortigate #fortibleed #fortios #forticloud #cybersecurity #vpn #hashpwn

  3. reminder that "fortibleed" is not a vuln. no CVE. no patch. nothing fucking "bled."

    it's a russian-speaking crew firing 1.16 billion creds from old breaches and infostealer logs at every fortigate dumb enough to have its mgmt interface sitting on the public internet. ~50% of internet-facing boxes. half of you.

    and before anyone cries "but my password was 28 characters with symbols": it didn't get cracked. it was already chilling in an infostealer dump in plaintext. great entropy, shame about the malware on your sales guy's laptop.

    the -bleed suffix is marketing. the real CVE is CVE-2026-YOUREANIDIOT: "admin panel pointed at 0.0.0.0/0, password recycled from a 2022 breach, MFA considered but never enabled."

    rotate the creds, yank the mgmt interface off the internet, force MFA, and maybe stop letting threat intel firms name your incidents like they're naming a fucking Marvel villain.

    #infosec #fortinet #fortigate

  4. A data leak dubbed »#FortiBleed« exposed 73,932 #Fortinet and #FortiGate #VPN credentials for organisations worldwide. The leak includes usernames, email addresses, and plaintext passwords for organisations like Chevron, Samsung, and AT&T. The exposed data, believed to be from exported Fortinet configurations, includes information typically only accessible through configs and indicates a large-scale credential harvesting campaign. bleepingcomputer.com/news/secu #tech #media #news

  5. Bleeping Computer: FortiBleed leak exposes Fortinet VPN credentials for 73,000 devices.. “A newly discovered data leak dubbed ‘FortiBleed’ has exposed what appears to be a collection of Fortinet and FortiGate VPN credentials for 73,932 firewall URLs at organizations worldwide.”

    https://rbfirehose.com/2026/06/17/bleeping-computer-fortibleed-leak-exposes-fortinet-vpn-credentials-for-73000-devices/
  6. 📣🚨 #FortiBleed attack exposes Fortinet firewall credentials in 194 countries, with researchers linking the dataset to nearly 74,000 firewall URLs and 21,000+ affected domains.

    Read: hackread.com/fortibleed-attack

    #Fortinet #FortiGate #Cybersecurity #DataBreach #VPN

  7. Bleeping Computer: Amazon: AI-assisted hacker breached 600 Fortinet firewalls in 5 weeks. “Amazon is warning that a Russian-speaking hacker used multiple generative AI services as part of a campaign that breached more than 600 FortiGate firewalls across 55 countries in five weeks. A new report by CJ Moses, CISO of Amazon Integrated Security, says that the hacking campaign occurred between […]

    https://rbfirehose.com/2026/02/28/amazon-ai-assisted-hacker-breached-600-fortinet-firewalls-in-5-weeks-bleeping-computer/
  8. THREAT MODEL: CYBERSECURITY
    for Feb. 24th, 2026
    by independent journalist @violetblue

    - People across the US are destroying #Flock cameras

    - #Discord ’s “new” ID check tool was on a US government server

    - #Arizona and #Colorado want ID scanning for all computer and phone use

    - @wikipedia banned #ArchiveToday for DDoS attacks

    - Some rando used #AI to hack #FortiGate

    - @financialtimes unmasked a Russian oil smuggling ring (from Kremlin-controlled Rosneft) through the ring’s use of a single email server

    - Another major #AotearoaNewZealand health app breach

    - #TimCurry reveals Clue’s secret ending

    - BBC/BAFTA leave N-word intact on tape delay

    ...and much more.

    ✨ THREAT MODEL is free to read -- please help keep it accessible to all by becoming a patron, even $1 a month makes a difference! ✨

    patreon.com/posts/cybersecurit

    #ThreatModel #ThreatModelCybersecurity #ThreatModelNewsletters #VioletBlue #infosec #cybersec #CovidIsNotOver

  9. The categorization of the Fortinet web filter is hilarious. I got a report that a certain website is incorrectly blocked by our firewall. After looking into it, the specific website belongs to a large organization.

    Different organizational levels of this large organization are categorized as:

    • Political organization (federal level)
    • General organization (state level)
    • Advocacy organization (local level), giving it an R age rating (18+)

    The “correct” classification should be either general organization or simply “business”.

    This is wrong on many levels. Why are advocacy groups blocked by default? Why do they have an R rating (because politics is only for adults? But then why only advocacy groups and not political organizations?).

    #fortinet #fortigate #fortiguard

  10. AI KRAAKT 600 FIREWALLS, BEURZEN DALEN EN ODIDO ESCALEERT

    Een Russische hacker gebruikte AI om 600+ FortiGate firewalls te hacken. Claude Code Security deed beurzen kelderen. 30.000+ OpenClaw instances gecompromitteerd. Klanten van Odido: check je bankrekening.

    ccinfo.nl/journaal/3025262_ai-

    #Cyberjournaal #ccinfo #FortiGate #AI #OpenClaw #SANDWORMMODE #Odido #cybersecurity #Nederland #Belgie

  11. 📢⚠️ 🤖 #Amazon Threat Intel says a low-skill hacker used commercial AI tools to breach hundreds of #FortiGate devices worldwide, showing how automation is lowering the barrier for large-scale cyberattacks.

    Read more: hackread.com/amazon-hacker-ai-

    #CyberSecurity #AI #CyberAttack #CyberCrime #Automation

  12. fortiguard.com/psirt/FG-IR-25-

    FortiGate SSLVPN vuln CVE-2025-68686

    (Not) rated highly yet. However, I would promptly patch it (and quickly move away from SSL VPN, regardless of the vendor; instead use IKEv2 EAP-TLS or WireGuard). I think this one might rapidly elevate to a RCE

    #infosec #fortigate #fortinet #sslvpn

  13. While I fully agree with the sentiment, I'd like to know _why_ my #Fortigate #firewall suddenly stops all users from loading office.com whenever any application filter profile is active on that network. This happens even if all filter rules are set to monitor or allow.

    The FW log doesn't show anything, but the browser seems to hang on handshake, so I'm wondering if it might be related to the current SSL vulnerability that I haven't yet read up on.

  14. 📢 CERT Polska révèle des attaques destructrices coordonnées contre l’énergie et l’industrie en Pologne
    📝 Selon CERT Polska (CSIRT NASK), un ensemble d’attaques purement destructrices a visé le 29 décembre 2025...
    📖 cyberveille : cyberveille.ch/posts/2026-01-3
    🌐 source : cert.pl/en/posts/2026/01/incid
    #FortiGate #ICS_OT #Cyberveille