CISA: FortiBleed impacted 86,644 FortiGate devices

Colleagues, a cybersecurity advisory: CISA warns of the FortiBleed campaign.
- 86,644 compromises recorded; attackers extensively scanned internet‑facing FortiGate appliances and used brute‑force, dictionary attacks and credential stuffing.
- Attack pattern: use of leaked/known passwords, followed by passive traffic collection and harvesting of additional credentials.
- Most affected sectors: telecom, government and education; exposures concentrated in India, the US, Mexico, Colombia and Thailand.
- CISA recommendations: terminate VPN/admin sessions, reset passwords, enable MFA, migrate to PBKDF2 and restrict access.
Why it matters: perimeter devices are convenient footholds, and poor password hygiene makes such attacks effective.
What steps will you take?
#cybersecurity #Fortinet #VPN #infosec

