Fortinet says the FortiBleed credential-harvesting campaign relies on logins from previous incidents, not on new vulnerabilities.

The large-scale credential theft campaign hit roughly half of the internet-accessible Fortinet firewalls and VPNs.

FortiBleed attackers compromised 86,644 FortiGate devices using credential attacks, prompting CISA to urge password resets and MFA.