Fortinet FortiGate devices face automated attacks creating rogue accounts

Automated attacks are targeting Fortinet FortiGate devices, creating unauthorized accounts and stealing firewall data. A recent patch from Fortinet may not be as effective as anticipated. The issue was reported on January 23, 2026.

Fortinet FortiGate devices, widely used in network security, are under attack through automated methods that generate rogue accounts and extract sensitive firewall data. According to a TechRadar report published on January 23, 2026, these incidents highlight ongoing vulnerabilities in the devices.

The attacks exploit weaknesses that persist despite a recent Fortinet patch, which appears to fall short in fully addressing the threats. Security experts note that such automated campaigns can rapidly compromise multiple systems, potentially leading to broader network breaches.

Fortinet has not issued further details on the patch's limitations in the available information, but the report underscores the need for users to monitor their devices closely and apply any updates promptly. This development raises concerns about the effectiveness of current cybersecurity measures against evolving automated threats.

相关文章

Dramatic server room scene illustrating the SSHStalker Linux botnet infecting thousands of vulnerable servers via SSH exploits.
AI 生成的图像

Researchers discover SSHStalker botnet infecting Linux servers

由 AI 报道 AI 生成的图像

Flare researchers have identified a new Linux botnet called SSHStalker that has compromised around 7,000 systems using outdated exploits and SSH scanning. The botnet employs IRC for command-and-control while maintaining dormant persistence without immediate malicious activities like DDoS or cryptomining. It targets legacy Linux kernels, highlighting risks in neglected infrastructure.

Security experts are warning that ransomware attacks are now more frequently targeting firewalls. They advise organizations to secure these critical network defenses promptly. The alert comes amid rising cyber threats.

由 AI 报道

WatchGuard has addressed a critical remote code execution vulnerability in its Firebox OS firewall software. The company urges users to update immediately to mitigate the risk. The flaw was identified by the firewall maker itself.

Veeam has addressed three critical-severity security vulnerabilities that could expose backup servers to remote code execution attacks. The company issued patches to mitigate these risks. The announcement highlights ongoing concerns in cybersecurity for data protection tools.

由 AI 报道

2025年,菲律宾的网络威胁仍坚持使用钓鱼和勒索软件等传统方法,未出现新形式。然而,人工智能放大了这些攻击的数量和规模,导致“网络犯罪的工业化”。多家网络安全公司的报告强调了事件速度、规模和频率的增加。

Zyxel has issued a warning about a critical remote code execution (RCE) security flaw that could affect more than a dozen of its routers. The company has addressed a handful of concerning vulnerabilities in its devices. This update comes as part of ongoing efforts to secure networking equipment.

由 AI 报道

IBM's artificial intelligence tool, known as Bob, has been found susceptible to manipulation that could lead to downloading and executing malware. Researchers highlight its vulnerability to indirect prompt injection attacks. The findings were reported by TechRadar on January 9, 2026.

 

 

 

此网站使用 cookie

我们使用 cookie 进行分析以改进我们的网站。阅读我们的 隐私政策 以获取更多信息。
拒绝