home.social

#fortinet — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #fortinet, aggregated by home.social.

fetched live
  1. Gunra Ransomware Targets Infrastructure via Fortinet Flaws

    Gunra Ransomware is exploiting critical Fortinet flaws, including CVE-2024-55591, to gain super-admin privileges and infiltrate government and critical infrastructure networks. This alarming vulnerability allows remote attackers to craft requests and bypass authentication, putting sensitive systems at risk.

    osintsights.com/gunra-ransomwa

    #GunraRansomware #Fortinet #Cve202455591 #Ransomware #SupplyChain

  2. Fortinet: 431 CVEs, 34 critical, 14 CISA KEV exploited. 88% unpatched. Trust Score: C. Even firewalls need patching—secure your FortiGate now. #Fortinet #infosec #cybersecurity

    valtersit.com/vendors/fortinet/

  3. Hackers bypass patch using new FortiOS vulnerability

    An actively exploited #vulnerability in #FortiOS allows for the bypass of a previous protection mechanism against manipulated symbolic links. Affected systems should be updated and checked for prior compromise.

    Sensitive information on potentially compromised #FortiGate systems running FortiOS with SSL-VPN enabled may be at risk.

    euvd.enisa.europa.eu/vulnerabi

    Source: security-insider.de/fortios-ss

    #Fortinet #CVE

  4. Почему не подключается FortiClient VPN

    Привет. Это снова Саша Басун. Я работаю в «Петрович-Тех» инженером направления пользовательских ИТ-сервисов. Моя предыдущая статья про FortiClient VPN нашла отклик, потому я решил рассказать о самых распространённых ошибках при установке или запуске FortiClient VPN. Итак, обычный будний день. Админу приходит заявка от пользователя, который жалуется, что FortiClient не подключается к серверу. При этом шквала подобных заявок не наблюдается, из-за чего админ делает вывод, что проблема у пользователя локальная. Он подключается на удалённый компьютер, чтобы провести диагностику. Открыв логи программы, админ понимает, что помимо бутылки тут может потребоваться ещё и тонометр. Всплывающие окна с предупреждениями выглядят хотя бы немного понятнее. О них я вам и расскажу.

    habr.com/ru/companies/petrovic

    #FortiClient_VPN #ошибки_подключения #диагностика_VPN #Fortinet #системное_администрирование #сетевые_ошибки #аутентификация #настройка_VPN #устранение_неполадок #TLS

  5. CVE-2026-24858 - Critical auth bypass in Fortinet FortiOS, FortiManager, FortiAnalyzer. CVSS 9.4. Patch immediately. #CVE #Fortinet #infosec

    valtersit.com/cve/cve-2026-248

  6. ИИ в IT: как пользоваться ChatGPT и не слить конфиденциальные данные

    ИИ помогает инженеру. Но готов ли инженер безопасно его использовать? Чтобы найти ошибку в конфиге Cisco, многие просто копируют его целиком в ChatGPT. На решение проблемы уходит две минуты. Но вместе с конфигом искусственный интеллект получает информацию о внутренней инфраструктуре компании. Прочитай и узнай как обезопасить себя

    habr.com/ru/articles/1065792/

    #ИИ #ииагенты #иб #кибербезопасность #сisco #python #fortinet #fortinet_security_fabric #fortinet_fortigate #cisco_ios

  7. 🎙️ New FIRST Impressions Podcast Episode: John Hollenberger (Fortinet)

    Recorded live at FIRSTCON26, John Hollenberger of Fortinet explores how organizations can make tabletop exercises more realistic, and ultimately more valuable.

    In this episode, John introduces ChaosStack, an approach that recreates the stress, competing priorities, and decision fatigue teams experience during real cyber incidents. The discussion explores how better exercises lead to stronger teamwork, better decision-making, and greater organizational resilience.

    As a Founding Supporter and Launch Partner of the *FIRST CORE Program*, Fortinet's commitment extends beyond technology to strengthening cybersecurity capacity around the world. Through FIRST CORE, supporters help expand incident response capabilities, education, and community building in regions where resources are limited—helping make the global cybersecurity community stronger together.

    🎧 Listen now for practical insights on preparing your team for the moments that matter most.
    media.first.org/podcasts/FIRST

    #FIRSTCON26 #FIRSTImpressions #Cybersecurity #IncidentResponse #TabletopExercises #Fortinet #FIRSTCORE #CyberResilience #SecurityLeadership

  8. An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS.

    KEV confirmed.

    #fortinet #kev #fortios #cybersecurity

    vulnerability.circl.lu/vuln/CV

  9. Fortinet relata aumento de intrusões em redes industriais, mas destaca a crescente maturidade na cibersegurança. Organizações estão a encarar a proteção dos seus ambientes críticos com realismo.

    🔗 tugatech.com.pt/t87950-fortine

    #fortinet 

  10. Fortinet: 431 CVEs, 14 CISA KEV exploited in wild. 90% unpatched. Max CVSS 9.8. Trust Score: C. Firewall giant has serious gaps. #Fortinet #infosec #cybersecurity

    valtersit.com/vendors/fortinet/

  11. i just finished my pbulickl unannoucnd investigation into knight havenstein llp, a "Fraudulent / scammy law firm. they clamed to be hosting a law firm with family law, business law, among other things.
    you can view the web page at web.archive.org/web/2026050922
    it actually started with an eamil i got from an outlook account i got that told me i have 10.2 milliondolarsi n the bank. man i wante t go by me some pizza s bad with tht money, i could us10 milioon pizzas right now.
    in all seriousness, i asked this guy to contact me with an official law firm domain so i can confirm the legitimacy.
    and believe it or not, i did actually get a contact from a legitimate domain.
    immediately, i dug in.
    i decided to look them up on the law society of #ontario #canada , which is a bar association related organization, which all loyers are required to sign up to to become a loyer. and the law society act of canada equires all loyers regardless of practice must be admitted to the bar association.
    ontario.ca/laws/statute/90l08

    so i went ahead and checked the bar because they clame to be from "oakvile" (it's actually oakville, get it right) and noticed there was no law firm under that name.
    lsodirectory.lso.ca/en-US/resu
    so after a bit more research, i contacted #hostinger , told them the situation, and got it taken down 2 days later. of course before that, it was reported to a cupple of security companies like #fortinet , and #alphamountain .

    so yeah, i took down some #scammers today #scam .

  12. Like, #Fortinet is charging good money for devices less featureful than the trash-grade CPE your internet provider leases you if you didn't talk em out of charging for equipment or bring your own to the table.

  13. How does #Fortinet put out network management routers that have quality of life features formerly exclusive to consumer and handrolled devices like SOHO #routers and what you could build with an old computer by reading the Linux HOWTO Project documents like #DHCP and #DNS, yet, beyond all possible comprehension, not dynamically update DNS and rDNS based on static assignments and the DHCP lease table?

  14. Het apparaat dat uw netwerk moet beschermen, kan precies de reden zijn dat een aanvaller binnenkomt.

    Elke dag een nieuwe vraag die je kunt beantwoorden op ccinfo.nl

    Weet u welke inloggegevens van uw netwerkapparatuur ooit blootgesteld kunnen zijn, en of die vandaag nog steeds geldig zijn?

    #Cybersecurity #Ransomware #Fortinet #NIS2 #Informatiebeveiliging

  15. FortiBleed: The ongoing Fortinet / FortiGate compromise campaign

    Fortinet edge devices are being targeted in a large-scale compromise campaign involving exposed management interfaces, FortiCloud SSO abuse, credential theft, brute forcing, config exports, and suspicious admin account creation.

    This should be treated as a compromise-assessment event, not just a normal patch cycle.

    Admins should patch FortiOS, review all local admin accounts, rotate credentials and shared secrets, check for config exports, enforce MFA, and restrict management access to trusted IPs or VPN-only access.

    Full details:
    forum.hashpwn.net/post/14105

    #fortinet #fortigate #fortibleed #fortios #forticloud #cybersecurity #vpn #hashpwn

  16. Masowy atak na urządzenia Fortinet. Prawie 74 tys. przejętych urządzeń. Kulisy kampanii FortiBleed

    To nie pierwszy raz, kiedy urządzenia mające gwarantować bezpieczeństwo sieci stały się “główną furtką” do uzyskania nieuprawnionego dostępu. Najsmutniejsze w tym wszystkim jest to, że cyberprzestępcy nie używali nawet skomplikowanych eksploitów. Wystarczyło masowe skanowanie internetu, wyciągnięcie plików konfiguracyjnych i klaster złożony z kilkudziesięciu kart graficznych. Efekt – ponad 73 tysiące...

    #Aktualności #Cracking #Dataleak #Fortibleed #Fortinet #GPU #Hash #Rosja

    sekurak.pl/masowy-atak-na-urza

  17. De gevaarlijkste inbraak van deze week ging niet door de voordeur van de slachtoffers, maar via hun sleutelbeheerder.

    Elke dag een nieuwe vraag die je kunt beantwoorden op ccinfo.nl

    Weet u welke externe partijen toegang hebben tot de firewalls en systemen van uw organisatie?

    #Cybersecurity #Fortinet #SupplyChain #Informatiebeveiliging #Belgie