Skip to main content
← All Articles

Tag

#Fortinet

32 articles

Advertisement

Gunra Ransomware Exploits Fortinet Flaws and Bypasses MFA
HIGH
Threat Intel

Gunra Ransomware Exploits Fortinet Flaws and Bypasses MFA

Gunra ransomware targets critical infrastructure using leaked Conti code, old Fortinet vulnerabilities, and MFA bypass techniques.

Runtime Rebel Intel
2 min read · Aug 12, 2026
Hackers Breach Polish CHP Plant via Private APN and Teltonika Router
MEDIUM
Threat Intel

Hackers Breach Polish CHP Plant via Private APN and Teltonika Router

Attackers breached a Polish combined heat and power plant via a private APN, shutting down a steam turbine and water treatment system.

Runtime Rebel Intel
3 min read · Aug 11, 2026
HIGH
Vulnerabilities

CVE-2025-68686: Fortinet FortiOS Patch Bypass for Post-Exploit Persistence

CISA warns of active exploitation of CVE-2025-68686 in Fortinet FortiOS, allowing attackers to bypass a patch for post-exploit persistence and expose sensitive data.

Runtime Rebel Intel
4 min read · Jul 31, 2026
HIGH
Threat Intel

Lynx Ransomware Linked to Massive FortiBleed Credential Theft

Threat actors behind Lynx and INC ransomware leverage FortiBleed campaign to harvest over 440,000 Fortinet VPN credentials via CVE-2023-48788 exploits.

Runtime Rebel Intel
4 min read · Jul 2, 2026
HIGH
Threat Intel

Fortinet FortiBleed Campaign: 86,000+ VPN Credentials Stolen

Fortinet addresses the FortiBleed campaign involving 86,000+ confirmed working credentials. Technical analysis and mitigation steps for security professionals.

Runtime Rebel Intel
4 min read · Jun 22, 2026
FortiBleed: 73,932 FortiGate Systems Exposed – Credential Leak Analysis
HIGH
Threat Intel

FortiBleed: 73,932 FortiGate Systems Exposed – Credential Leak Analysis

Analysis of the FortiBleed campaign, detailing the exposure of administrative and VPN credentials for over 73,000 Fortinet FortiGate firewalls and critical mitigation…

Runtime Rebel Intel
4 min read · Jun 20, 2026

Advertisement

HIGH
Data Breach

FortiBleed Data Leak: Securing Fortinet VPNs Against Exposure

CISA warns organizations after 74,000 Fortinet VPN credentials were leaked online. Learn how to mitigate the FortiBleed threat and secure your network.

Runtime Rebel Intel
3 min read · Jun 19, 2026
HIGH
Data Breach

FortiBleed: 73,000 Fortinet VPN Credentials Exposed

FortiBleed leak compromises Fortinet and FortiGate VPN credentials for over 73,000 firewall URLs globally, posing significant access risks.

Runtime Rebel Intel
4 min read · Jun 18, 2026
Credential Harvesting Heist Compromises 30K+ Fortinet Devices
HIGH
Threat Intel

Credential Harvesting Heist Compromises 30K+ Fortinet Devices

A widespread credential harvesting campaign has compromised over 30,000 Fortinet devices across 200 countries, enabling unauthorized access for threat actors.

Runtime Rebel Intel
4 min read · Jun 17, 2026
Fortinet FortiSandbox: Attackers Exploit CVE-2026-39813, -39808, -25089
CRITICAL
Vulnerabilities

Fortinet FortiSandbox: Attackers Exploit CVE-2026-39813, -39808, -25089

Critical Fortinet FortiSandbox vulnerabilities (CVE-2026-39813, CVE-2026-39808, CVE-2026-25089) are under active exploitation. Patch immediately.

Runtime Rebel Intel
5 min read · Jun 16, 2026
CRITICAL
Vulnerabilities

FortiSandbox RCE via CVE-2024-23108 and CVE-2024-23109 — Patch Now

Unauthenticated attackers are exploiting critical command injection flaws in Fortinet FortiSandbox to achieve RCE. Apply security updates immediately.

Runtime Rebel Intel
3 min read · Jun 16, 2026
CRITICAL
Vulnerabilities

FortiSIEM RCE via CVE-2024-23108: Technical Mitigation Guide

Analysis of critical RCE vulnerabilities CVE-2024-23108 and CVE-2024-23109 in Fortinet FortiSIEM, including detection methods and remediation steps.

Runtime Rebel Intel
3 min read · Jun 15, 2026
FortiSandbox Command Injection (CVE-2026-25089) & Critical Vendor Patches
HIGH
Vulnerabilities

FortiSandbox Command Injection (CVE-2026-25089) & Critical Vendor Patches

Critical patches from Fortinet, Ivanti, and SAP address vulnerabilities including CVE-2026-25089 (FortiSandbox command injection), enabling RCE and info disclosure.

Runtime Rebel Intel
4 min read · Jun 10, 2026
CRITICAL
Vulnerabilities

CVE-2026-35616: FortiClient EMS Exploit Delivers EKZ Infostealer

Attackers are actively exploiting CVE-2026-35616, an authentication bypass in FortiClient EMS, to deploy the EKZ infostealer. Protect your organization now.

Runtime Rebel Intel
4 min read · May 28, 2026
CRITICAL
Vulnerabilities

CVE-2023-48788: Critical FortiClient EMS RCE Under Active Exploitation

Exploitation of CVE-2023-48788 in FortiClient EMS allows unauthenticated remote code execution. Administrators must patch to version 7.2.3 or 7.0.11 immediately.

Runtime Rebel Intel
3 min read · May 28, 2026
Ivanti, Fortinet, and n8n Disclose Critical RCE and Auth Bypass Flaws
HIGH
Vulnerabilities

Ivanti, Fortinet, and n8n Disclose Critical RCE and Auth Bypass Flaws

Ivanti, Fortinet, n8n, and SAP release urgent security patches for critical vulnerabilities including CVE-2026-5444 and CVE-2026-8043. Update systems now.

Runtime Rebel Intel
3 min read · May 18, 2026
SAP CVE-2026-27681: Critical SQL Injection Vulnerability Patch Guidance
HIGH
Vulnerabilities

SAP CVE-2026-27681: Critical SQL Injection Vulnerability Patch Guidance

April Patch Tuesday addresses a critical 9.9 CVSS SQL injection vulnerability in SAP Business Warehouse and updates for Microsoft, Adobe, and Fortinet.

Runtime Rebel Intel
3 min read · Apr 15, 2026
HIGH
Vulnerabilities

CVE-2024-21762 and Ivanti Flaws: Edge Gateway Scanning Escalates

Technical analysis of ongoing scanning activity targeting Ivanti and Fortinet SSL-VPN gateways. Learn to detect exploits and apply critical mitigations.

Runtime Rebel Intel
3 min read · Apr 15, 2026
CISA KEV Update: Fortinet FortiClient EMS CVE-2026-21643 Under Attack
CRITICAL
Threat Intel

CISA KEV Update: Fortinet FortiClient EMS CVE-2026-21643 Under Attack

CISA adds six flaws to the KEV catalog, including a critical unauthenticated SQL injection in Fortinet FortiClient EMS (CVE-2026-21643). Patch immediately.

Runtime Rebel Intel
4 min read · Apr 14, 2026
CRITICAL
Vulnerabilities

CISA KEV Update: Exchange Server, Adobe, MS Windows Exploits

CISA adds seven vulnerabilities, including critical Microsoft Exchange Server deserialization, to its Known Exploited Vulnerabilities Catalog, urging immediate…

Runtime Rebel Intel
4 min read · Apr 14, 2026
CRITICAL
Vulnerabilities

CVE-2026-35616: Fortinet FortiClient EMS Vulnerability — KEV Alert

CISA adds CVE-2026-35616 affecting Fortinet FortiClient EMS to its Known Exploited Vulnerabilities catalog. Learn how to mitigate this access control flaw.

Runtime Rebel Intel
4 min read · Apr 6, 2026
CRITICAL
Vulnerabilities

FortiClient EMS RCE via CVE-2023-48788 — Patch Guidance

CISA mandates federal agencies patch the critical FortiClient EMS SQL injection flaw, CVE-2023-48788, which allows unauthenticated remote code execution.

Runtime Rebel Intel
3 min read · Apr 6, 2026
Chrome Zero-Day and Fortinet Exploits: Weekly Threat Intelligence
HIGH
Threat Intel

Chrome Zero-Day and Fortinet Exploits: Weekly Threat Intelligence

Intelligence analysis of the latest Chrome zero-day, Fortinet vulnerabilities, and the Axios security breach, including technical remediation for SOC teams.

Runtime Rebel Intel
3 min read · Apr 6, 2026
CRITICAL
Vulnerabilities

FortiClient EMS RCE via CVE-2026-35616 — Mitigation Guide

Fortinet releases emergency patches for CVE-2026-35616, a critical SQL injection flaw in FortiClient EMS exploited to achieve unauthenticated RCE.

Runtime Rebel Intel
4 min read · Apr 5, 2026