Source |
The Hacker News |
Identifiant |
8637055 |
Date de publication |
2025-01-14 14:43:00 (vue: 2025-01-14 10:08:06) |
Titre |
Zero-Day Vulnerability Suspected in Attacks on Fortinet Firewalls with Exposed Interfaces |
Texte |
Threat hunters are calling attention to a new campaign that has targeted Fortinet FortiGate firewall devices with management interfaces exposed on the public internet.
"The campaign involved unauthorized administrative logins on management interfaces of firewalls, creation of new accounts, SSL VPN authentication through those accounts, and various other configuration changes," cybersecurity firm
Threat hunters are calling attention to a new campaign that has targeted Fortinet FortiGate firewall devices with management interfaces exposed on the public internet.
"The campaign involved unauthorized administrative logins on management interfaces of firewalls, creation of new accounts, SSL VPN authentication through those accounts, and various other configuration changes," cybersecurity firm |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
accounts administrative are attacks attention authentication calling campaign changes configuration creation cybersecurity day devices exposed firewall firewalls firm fortigate fortinet has hunters interfaces internet involved logins management new other public ssl suspected targeted those threat through unauthorized various vpn vulnerability zero |
Tags |
Vulnerability
Threat
|
Stories |
|
Move |
|
Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2025-01-14 17:50:24 |
(Déjà vu) Zero-Day Security Bug Likely Fueling Fortinet Firewall Attacks (lien direct) |
An ongoing campaign targeting FortiGate devices with management interfaces exposed on the public Internet is leading to unauthorized administrative logins and configuration changes, creating new accounts, and performing SSL VPN authentication.
An ongoing campaign targeting FortiGate devices with management interfaces exposed on the public Internet is leading to unauthorized administrative logins and configuration changes, creating new accounts, and performing SSL VPN authentication. |
Vulnerability
Threat
|
|
★★★
|