Security

FBI warns FortiBleed attacks are still targeting FortiGate VPN systems

The FBI says FortiBleed attacks are ongoing against Fortinet FortiGate firewalls and SSL VPN gateways, with reports of legitimate administrators being locked out. One source also reports tens of thousands more victims and additional ransomware groups becoming involved; those details are not corroborated by the other supplied source.

Image: The Register

Why it matters

Ongoing attacks against exposed firewall and VPN systems can disrupt legitimate administrator access, making the FBI warning relevant to security and operations teams.

What we know

Confirmed by several sources

Reported by one source

  • The attacks target exposed Fortinet FortiGate firewalls and SSL VPN gateways and lock out legitimate administrators. — BleepingComputer
  • Tens of thousands more victims are affected, and more ransomware groups are joining the attacks. — The Register

Coverage 2 publishers

  1. BleepingComputer

    FBI: Ongoing FortiBleed attacks lock out FortiGate VPN admins

  2. The Register

    FortiBleed still a bleeding nuisance as FBI confirms ongoing attacks

Articles stay on their publishers’ sites; each link opens the original.