Gunra Ransomware Exploits Fortinet Flaws and Bypasses MFA
Gunra ransomware targets critical infrastructure using leaked Conti code, old Fortinet vulnerabilities, and MFA bypass techniques.
- Critical infrastructure organizations face active intrusions from the Gunra ransomware operation leveraging stolen source code and legacy exploits.
- Fortinet firewalls and virtual private network appliances are primary targets for initial access and credential harvesting.
- Administrators must immediately audit edge devices, apply outstanding firmware patches, and enforce phishing-resistant multi-factor authentication.