NCSC Issues Guidance for Fortinet Customers After FortiBleed Credential Theft Campaign (infosecurity-magazine.com)
0xBASE INTEL BRIEF
- Over 75,000 credentials stolen from Fortinet firewalls globally
- NCSC advises isolation, factory reset, and hardening
- Attackers used brute-force and credential stuffing; 1.16 billion attempts
"The UK's NCSC has released guidance for organizations using Fortinet firewalls following the discovery of a large-scale credential theft campaign dubbed FortiBleed. Over 75,000 credentials were stolen, potentially exposing half of all internet-accessible Fortinet firewalls. The NCSC advises affected organizations to isolate compromised devices, reset them, and implement hardening measures."
no comments yet.