PUBLISHED Jun 19, 2026, 11:44 AM ET
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory after researchers uncovered a large-scale credential theft campaign targeting Fortinet firewalls and VPN appliances, dubbed "FortiBleed." According to data from cybersecurity firm SOCRadar, administrative credentials for at least 86,644 internet-facing Fortinet devices have been compromised worldwide, impacting roughly half of all accessible units. Attackers are using automated tools to spray known username and password combinations, then monitoring network traffic to harvest further credentials and move into internal Active Directory environments. Telecom, government and education sectors are among the hardest hit, with the United States heavily affected. CISA urges immediate credential rotation, renaming of default accounts and rigorous traffic auditing.
By Michael Grant | JQJO News
No left-leaning sources found for this story.
No right-leaning sources found for this story.
Comments