Arctic Wolf reports automated attacks on FortiGate devices abusing FortiCloud SSO flaws to change firewall settings and steal ...
Admins say attackers are still getting in despite recent patches FortiGate firewalls are getting quietly reconfigured and ...
Automated infections of potentially fully patched FortiGate devices are allowing threat actors to steal firewall ...
Fix didn't quite do the job – attackers spotted logging in Fortinet has confirmed that attackers are actively bypassing a December patch for a critical FortiCloud single sign-on (SSO) authentication ...
All SAML SSO implementations, including FortiCloud SSO, are vulnerable to authentication bypass and malicious configuration ...
The cybersecurity company pointed out that the fresh campaign resembles December 2025 attacks targeting CVE-2025-59718 and CVE-2025-59719, two critical-severity defects impacting the FortiCloud SSO ...
Fortinet FortiGate devices are being targeted in automated attacks that create rogue accounts and steal firewall ...