FortiBleed: 75,000 Fortinet Firewalls Compromised: Global Enterprises Exposed – Claim Your Ethical Disclosure
ID: e9854972-2bdf-526d-b40d-84d3f9e7bee7
STIX ID: report--e9854972-2bdf-526d-b40d-84d3f9e7bee7
Feed Name: infostealers.com
A large, automated cyber-crime campaign (dubbed “FortiBleed” in the report) targeted exposed Fortinet Firewalls and SSL VPNs worldwide, compromising approximately 73,932 firewall URLs and 21,632 domains by performing massive credential stuffing and cracking (1.16 billion credential attempts plus extensive MSSQL brute-force). The attackers used infostealers and a 45-GPU cracking cluster (Hashtopolis), logged successful breaches, and achieved full network compromises with document exfiltration from multiple countries and high-profile victims; the report urges immediate credential rotation, universal MFA, and log/audit monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
