Stolen FortiGate access is locking out admins and feeding ransomware

Stolen FortiGate access is locking out admins and feeding ransomware. Organizations are losing administrative control of exposed FortiGate firewalls and V P N gateways during an ongoing credential-based campaign.

Daily Cyber News: Stolen FortiGate access is locking out admins and feeding ransomware

Organizations are losing administrative control of exposed FortiGate firewalls and V P N gateways during an ongoing credential-based campaign. Attackers are using leaked or stolen logins, cracking harvested password hashes, and creating new administrator accounts. In some cases, they delete existing accounts or change their passwords, locking legitimate teams out.

Key context: For leaders, this can turn an overlooked identity weakness at the network edge into operational disruption and a ransomware incident.

Additional detail: Prioritize restricting external access, terminating active sessions, resetting credentials, enforcing phishing-resistant authentication, and investigating unauthorized changes.

For more cybersecurity news and the full Daily Cyber newsletter, visit DailyCyber.News.
Cybersecurity training, courses, books, and resources: BareMetalCyber.com.

Topics: cybersecurity news, cybersecurity, cyber risk, ransomware, phishing, firewall, Stolen FortiGate.

Stolen FortiGate access is locking out admins and feeding ransomware
Broadcast by