CVE-2026-24858: Fortinet Vulnerability Exploited in FortiBleed Campaign
CVE-2026-24858 is a vulnerability in Fortinet products that was likely exploited by threat actors in the FortiBleed campaign to reuse credentials from…
CVE-2026-24858 is a vulnerability in Fortinet products that was likely exploited by threat actors in the FortiBleed campaign to reuse credentials from…
CVE-2025-59718 is a vulnerability in Fortinet products that was likely exploited by threat actors in the FortiBleed campaign to reuse credentials from…
CVE-2025-59719 is a vulnerability in Fortinet products that was likely exploited by threat actors in the FortiBleed campaign to reuse credentials from…
A financially motivated Russian-speaking initial access broker (IAB) is assessed to be behind the FortiBleed campaign, which has targeted over 430,000 FortiGate…
SpyCloud provided a timeline of the FortiBleed campaign, noting that the FortiGate-related capture cycle began on May 19, 2026, and that the…
ZenoX, a Brazilian cybersecurity company, found that certain username and password pairs were repeated across thousands of distinct IP addresses in the…
FortiOS is the operating system for Fortinet devices. The FortiBleed campaign exploited older SHA-256 hashing mechanisms in FortiOS versions prior to 7.2.11,…
Masscan is a high-performance network scanning tool used in the reconnaissance stage of the FortiBleed campaign to identify vulnerable internet-facing FortiGate firewalls.
Shodan is an internet device search engine used in the FortiBleed campaign to identify vulnerable FortiGate firewalls exposed to the internet.
A Russian-speaking initial access broker (IAB) has been linked to a large-scale credential-harvesting operation dubbed FortiBleed, targeting over 430,000 FortiGate firewalls globally…