A massive credential-stuffing campaign named ๐๐ผ๐ฟ๐๐ถ๐๐น๐ฒ๐ฒ๐ฑ is actively targeting internet-facing Fortinet FortiGate firewalls and SSL VPNs, with reports indicating that more than 74,000 exposed devices may be at risk globally.
By using automated tools, attackers are leveraging previously leaked data and infostealer logs to breach exposed administrative interfaces, risking complete corporate network compromise.
๐ฆ๐๐ด๐ด๐ฒ๐๐๐ฒ๐ฑ ๐๐๐ฒ๐ฝ๐ ๐๐ผ ๐๐ฎ๐ณ๐ฒ๐ด๐๐ฎ๐ฟ๐ฑ ๐๐ผ๐๐ฟ ๐ฒ๐ป๐๐ถ๐ฟ๐ผ๐ป๐บ๐ฒ๐ป๐:
๐น ๐๐ผ๐ด ๐ฅ๐ฒ๐๐ถ๐ฒ๐
Inspect FortiGate system logs for unauthorized access, unexpected administrative changes or VPN sessions from unusual geolocation.
๐น ๐๐ป๐๐๐ฟ๐ฒ ๐๐ผ๐ฐ๐ธ๐ผ๐๐
Minimize permitted login failures and extend IP lockout windows to disrupt automated password-spraying.
๐น ๐๐ฎ๐ฟ๐ฑ๐ฒ๐ป ๐๐ฐ๐ฐ๐ฒ๐๐
Restrict administrative portals to trusted IPs and mandate Multi-Factor Authentication (MFA).
Don't wait for a breach. Secure your perimeters today.
Contact us today to see how we can help to keep your business protected.