Fortinet says the FortiBleed credential-harvesting campaign relies on logins from previous incidents, not on new vulnerabilities.

The large-scale credential theft campaign hit roughly half of the internet-accessible Fortinet firewalls and VPNs.

FortiBleed attackers compromised 86,644 FortiGate devices using credential attacks, prompting CISA to urge password resets and MFA.

Fortinet says the FortiBleed credential-harvesting campaign relies on logins from previous incidents, not on new vulnerabilities.

Security firm SOCRadar says the large-scale FortiBleed campaign targeting Fortinet FortiGate devices used custom sniffers to harvest authentication secrets from compromised…

A Russian initial access broker has captured over 110 million credentials as part of the ongoing FortiBleed campaign.

FortiBleed targeted 430,000 FortiGate firewalls with sniffers and brute-force pipelines that identified over 110 million credentials.