انضم إلى نوستر
2026-06-18 20:33:31 UTC
in reply to

Kevin Beaumont on Nostr: To be transparent about this, a threat actor has been claiming they have an exploit ...

To be transparent about this, a threat actor has been claiming they have an exploit to get FortiOS device password hashes remotely from config for the past month. It’s currently unclear how. They claim it’s an exploit of an unpatched vuln. Their claims predate the discovery of this dump.

If I end up having to set up another FortiGate firewall honeypot to figure out what’s going on.. I’ll British tut and get on with it.