Massive password-stealing attack hits 75k Fortinet firewalls

2026-06-17T19:23:58Z7827952a6583364cd1bdfd4ce91bb61b51306caad96d0a3a64ffb490c50d00da
active-exploitationciso-alertcredential-theftfirewall-compromisefortinetincident-responsepassword-theftpatching-urgentpeople-softsupply-chainzero-day

What happened

The feed is dominated by multiple active, high-impact incidents and vulnerabilities. The top story reports a mass password‑stealing campaign that has compromised roughly 75,000 Fortinet firewalls, with attackers harvesting credentials — organisations are urged to rotate passwords, enable MFA, and inspect logs. The collection also highlights active exploitation and high-severity advisories across vendors (Fortinet sandbox bugs with patches available, Cisco SD‑WAN flaw exploited as a 0‑day, Ivanti Sentry critical unauthenticated RCE, new Windows/BitLocker bypass 0‑day, Chrome zero‑day), plus a r

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
7827952a6583364cd1bdfd4ce91bb61b51306caad96d0a3a64ffb490c50d00da
Enrichment time
2026-06-17T19:23:58Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Massive password-stealing attack hits 75k Fortinet firewalls · Baitaphish