#fortinet — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #fortinet, aggregated by home.social.
-
Gunra Ransomware Exploits Fortinet Flaws Against Critical Infrastructure - https://www.redpacketsecurity.com/gunra-ransomware-exploits-fortinet-flaws-to-target-critical-infrastructure/
-
Gunra Ransomware Targets Infrastructure via Fortinet Flaws
Gunra Ransomware is exploiting critical Fortinet flaws, including CVE-2024-55591, to gain super-admin privileges and infiltrate government and critical infrastructure networks. This alarming vulnerability allows remote attackers to craft requests and bypass authentication, putting sensitive systems at risk.
#GunraRansomware #Fortinet #Cve202455591 #Ransomware #SupplyChain
-
Fortinet: 431 CVEs, 34 critical, 14 CISA KEV exploited. 88% unpatched. Trust Score: C. Even firewalls need patching—secure your FortiGate now. #Fortinet #infosec #cybersecurity
-
Hackers bypass patch using new FortiOS vulnerability
An actively exploited #vulnerability in #FortiOS allows for the bypass of a previous protection mechanism against manipulated symbolic links. Affected systems should be updated and checked for prior compromise.
Sensitive information on potentially compromised #FortiGate systems running FortiOS with SSL-VPN enabled may be at risk.
-
Почему не подключается FortiClient VPN
Привет. Это снова Саша Басун. Я работаю в «Петрович-Тех» инженером направления пользовательских ИТ-сервисов. Моя предыдущая статья про FortiClient VPN нашла отклик, потому я решил рассказать о самых распространённых ошибках при установке или запуске FortiClient VPN. Итак, обычный будний день. Админу приходит заявка от пользователя, который жалуется, что FortiClient не подключается к серверу. При этом шквала подобных заявок не наблюдается, из-за чего админ делает вывод, что проблема у пользователя локальная. Он подключается на удалённый компьютер, чтобы провести диагностику. Открыв логи программы, админ понимает, что помимо бутылки тут может потребоваться ещё и тонометр. Всплывающие окна с предупреждениями выглядят хотя бы немного понятнее. О них я вам и расскажу.
https://habr.com/ru/companies/petrovich-tech/articles/1066874/
#FortiClient_VPN #ошибки_подключения #диагностика_VPN #Fortinet #системное_администрирование #сетевые_ошибки #аутентификация #настройка_VPN #устранение_неполадок #TLS
-
ИИ в IT: как пользоваться ChatGPT и не слить конфиденциальные данные
ИИ помогает инженеру. Но готов ли инженер безопасно его использовать? Чтобы найти ошибку в конфиге Cisco, многие просто копируют его целиком в ChatGPT. На решение проблемы уходит две минуты. Но вместе с конфигом искусственный интеллект получает информацию о внутренней инфраструктуре компании. Прочитай и узнай как обезопасить себя
https://habr.com/ru/articles/1065792/
#ИИ #ииагенты #иб #кибербезопасность #сisco #python #fortinet #fortinet_security_fabric #fortinet_fortigate #cisco_ios
-
🎙️ New FIRST Impressions Podcast Episode: John Hollenberger (Fortinet)
Recorded live at FIRSTCON26, John Hollenberger of Fortinet explores how organizations can make tabletop exercises more realistic, and ultimately more valuable.
In this episode, John introduces ChaosStack, an approach that recreates the stress, competing priorities, and decision fatigue teams experience during real cyber incidents. The discussion explores how better exercises lead to stronger teamwork, better decision-making, and greater organizational resilience.
As a Founding Supporter and Launch Partner of the *FIRST CORE Program*, Fortinet's commitment extends beyond technology to strengthening cybersecurity capacity around the world. Through FIRST CORE, supporters help expand incident response capabilities, education, and community building in regions where resources are limited—helping make the global cybersecurity community stronger together.
🎧 Listen now for practical insights on preparing your team for the moments that matter most.
https://media.first.org/podcasts/FIRST_Impressions-chaosstack.mp3#FIRSTCON26 #FIRSTImpressions #Cybersecurity #IncidentResponse #TabletopExercises #Fortinet #FIRSTCORE #CyberResilience #SecurityLeadership
-
An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS.
KEV confirmed.
-
Fortinet relata aumento de intrusões em redes industriais, mas destaca a crescente maturidade na cibersegurança. Organizações estão a encarar a proteção dos seus ambientes críticos com realismo.
-
Fortinet: 431 CVEs, 14 CISA KEV exploited in wild. 90% unpatched. Max CVSS 9.8. Trust Score: C. Firewall giant has serious gaps. #Fortinet #infosec #cybersecurity
-
i just finished my pbulickl unannoucnd investigation into knight havenstein llp, a "Fraudulent / scammy law firm. they clamed to be hosting a law firm with family law, business law, among other things.
you can view the web page at https://web.archive.org/web/20260509223715/https://knighthavensteinllp.com/
it actually started with an eamil i got from an outlook account i got that told me i have 10.2 milliondolarsi n the bank. man i wante t go by me some pizza s bad with tht money, i could us10 milioon pizzas right now.
in all seriousness, i asked this guy to contact me with an official law firm domain so i can confirm the legitimacy.
and believe it or not, i did actually get a contact from a legitimate domain.
immediately, i dug in.
i decided to look them up on the law society of #ontario #canada , which is a bar association related organization, which all loyers are required to sign up to to become a loyer. and the law society act of canada equires all loyers regardless of practice must be admitted to the bar association.
https://www.ontario.ca/laws/statute/90l08so i went ahead and checked the bar because they clame to be from "oakvile" (it's actually oakville, get it right) and noticed there was no law firm under that name.
https://lsodirectory.lso.ca/en-US/result-main/?licenceType=both&name=Knight+Havenstein+LLP
so after a bit more research, i contacted #hostinger , told them the situation, and got it taken down 2 days later. of course before that, it was reported to a cupple of security companies like #fortinet , and #alphamountain . -
Like, #Fortinet is charging good money for devices less featureful than the trash-grade CPE your internet provider leases you if you didn't talk em out of charging for equipment or bring your own to the table.
-
How does #Fortinet put out network management routers that have quality of life features formerly exclusive to consumer and handrolled devices like SOHO #routers and what you could build with an old computer by reading the Linux HOWTO Project documents like #DHCP and #DNS, yet, beyond all possible comprehension, not dynamically update DNS and rDNS based on static assignments and the DHCP lease table?
-
Booohooo
Vikingline is MITM the customer wifi.
#vikingline #msgabriella #fortinet -
Het apparaat dat uw netwerk moet beschermen, kan precies de reden zijn dat een aanvaller binnenkomt.
Elke dag een nieuwe vraag die je kunt beantwoorden op https://www.ccinfo.nl
Weet u welke inloggegevens van uw netwerkapparatuur ooit blootgesteld kunnen zijn, en of die vandaag nog steeds geldig zijn?
#Cybersecurity #Ransomware #Fortinet #NIS2 #Informatiebeveiliging
-
FortiBleed: The ongoing Fortinet / FortiGate compromise campaign
Fortinet edge devices are being targeted in a large-scale compromise campaign involving exposed management interfaces, FortiCloud SSO abuse, credential theft, brute forcing, config exports, and suspicious admin account creation.
This should be treated as a compromise-assessment event, not just a normal patch cycle.
Admins should patch FortiOS, review all local admin accounts, rotate credentials and shared secrets, check for config exports, enforce MFA, and restrict management access to trusted IPs or VPN-only access.
Full details:
https://forum.hashpwn.net/post/14105#fortinet #fortigate #fortibleed #fortios #forticloud #cybersecurity #vpn #hashpwn
-
Masowy atak na urządzenia Fortinet. Prawie 74 tys. przejętych urządzeń. Kulisy kampanii FortiBleed
To nie pierwszy raz, kiedy urządzenia mające gwarantować bezpieczeństwo sieci stały się “główną furtką” do uzyskania nieuprawnionego dostępu. Najsmutniejsze w tym wszystkim jest to, że cyberprzestępcy nie używali nawet skomplikowanych eksploitów. Wystarczyło masowe skanowanie internetu, wyciągnięcie plików konfiguracyjnych i klaster złożony z kilkudziesięciu kart graficznych. Efekt – ponad 73 tysiące...
#Aktualności #Cracking #Dataleak #Fortibleed #Fortinet #GPU #Hash #Rosja
-
De gevaarlijkste inbraak van deze week ging niet door de voordeur van de slachtoffers, maar via hun sleutelbeheerder.
Elke dag een nieuwe vraag die je kunt beantwoorden op https://www.ccinfo.nl
Weet u welke externe partijen toegang hebben tot de firewalls en systemen van uw organisatie?
#Cybersecurity #Fortinet #SupplyChain #Informatiebeveiliging #Belgie
-
#FortiBleed campaign used custom #FortiGate sniffer to steal credentials