
FortiBleed Attribution — Russian IAB, 110M Credentials
Russian IAB behind FortiBleed siphoned 110M VPN credentials since February. FFmpeg PixelSmash RCE hits media servers. Squidbleed leaks cleartext creds.
Posts tagged: Fortinet

Russian IAB behind FortiBleed siphoned 110M VPN credentials since February. FFmpeg PixelSmash RCE hits media servers. Squidbleed leaks cleartext creds.

CVE-2026-20253 Splunk RCE exploited in the wild with a Sunday CISA deadline. Accenture buys Dragos for $4.1B. FortiBleed hits 86K devices.

FortiBleed leaks VPN credentials for 73,000 FortiGate devices. F5 patches critical NGINX RCE flaws. Cisco ISE root exploit patched.

CVE-2026-20262 hits Cisco SD-WAN Manager with active exploitation. FortiSandbox triple-CVE exploit chain and UNC6508 year-long espionage campaign via Googl.

CVE-2026-0263 and CVE-2026-0264 deliver RCE in PAN-OS VPN and DNS processing. FortiClient EMS CVE-2026-35616 exploited in the wild.
Integrate FortiGate with Active Directory — create the LDAP service account, grab the Domain DN, and grant admin access by AD group membership.
Set up a FortiGate from scratch — VLAN plan for two ISPs, inside LAN, and management — plus port assignments to prep for social-media filtering and AV.
Configure FortiGate static routes for dual ISP failover, build firewall policies, and enable PAT — use priority and distance to set primary vs backup.
FortiGate web filter to block social media, plus read-only SSL handshake inspection and installing the FortiGate CA cert on Windows 10 to clear errors.

FortiGate configuration series index: interfaces, static routes, firewall policies, PAT for internet, web filtering, and read-only admins on FortiOS.