FortiBleed Attack Exposes Fortinet Firewall Credentials in 194 Countries
A newly reported campaign targeting Fortinet FortiGate firewalls has put exposed VPN and administrator access back in focus, after researchers linked the activity to tens of thousands of verified firewall logins affecting major companies and public sector organizations.
Cybersecurity firm Hudson Rock says the dataset, first identified by researcher Volodymyr “Bob” Diachenko, includes 73,932 unique Fortinet firewall URLs in 194 countries, connected to 21,632 affected domains.
The company has branded the activity “FortiBleed” and launched a free lookup portal for organizations to check whether their domains appear in the dataset.
The names listed in the exposed data include high-profile organizations such as Samsung, Oracle, Foxconn, Comcast, Siemens, Lenovo, Spotify, Sony, and others, according to Hudson Rock and screenshots shared with the research.
The data also appears to include government, telecom, manufacturing, retail, logistics, and critical infrastructure targets.
The campaign does not appear to be a simple password dump. Diachenko’s ...
Copyright of this story solely belongs to hackread.com. To see the full text click HERE