logo

Patch procrastination leaves 50,000 Fortinet firewalls vulnerable to zero-day

ID: fece3b8a-f257-5410-9a3e-92fa9fb6aa85

STIX ID: report--fece3b8a-f257-5410-9a3e-92fa9fb6aa85

Feed Name: The Register (Security)

Threat Score
80/100

Date Published: 2025-01-21

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Fortinet customers are urged to apply patches after Shadowserver found ~48,457 Fortinet devices remain exposed to CVE-2024-55591, a zero-day actively exploited in the wild; attackers are stealing credentials and using admin access to move laterally with ransomware possible. The vendor also confirmed that the Belsen Group recently published thousands of Fortinet device configurations and passwords stolen in 2022, further raising compromise risk for unpatched or unremediated systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.