Chinese threat actors use a custom post-exploitation toolkit named 'DeepData' to exploit a zero-day vulnerability in Fortinet's FortiClient Windows VPN client that steal credentials. The zero-day ...
The disclosure includes one ‘critical’ vulnerability and several ‘high’ severity flaws. Fortinet disclosed new vulnerabilities Tuesday affecting FortiOS, FortiProxy, FortiClient Linux and ...
Update 6/12/23 added below: Fortinet released a new advisory warning that the vulnerability may have been exploited in attacks. Fortinet has released new Fortigate firmware updates that fix an ...
Researcher Bob Diachenko uncovers “FortiBleed,” a massive archive of 73,932 Fortinet/FortiGate VPN credentials from brute‑force and exploitation campaigns Data included plaintext usernames, emails, ...