Campaña FortiBleed vinculada a los grupos de ransomware INC y Lynx

15 fuentes
  • SOCRadar vinculó la campaña FortiBleed con los grupos de ransomware INC Ransom y Lynx tras encontrar a un operador activo en los paneles de negociación de ambos grupos.
  • La operación tuvo como objetivo más de 430.000 firewalls de Fortinet a nivel mundial, recolectando más de 110 millones de credenciales y provocando al menos 12 despliegues de ransomware.
  • Los atacantes también poseen una vulnerabilidad de día cero en Nextcloud y han recopilado listas de objetivos para entornos Citrix, según SOCRadar, lo que indica que la campaña podría ampliarse.
Fuentes (15)
  1. 1 FortiBleed Credential Theft Linked to INC and Lynx Ransomware ... thehackernews.com
  2. 2 FortiBleed credential-theft campaign linked to Lynx ransomware www.bleepingcomputer.com
  3. 3 Russian Initial Access Broker Behind FortiBleed Campaign www.securityweek.com
  4. 4 SOCRadar Links FortiBleed Campaign to INC and Lynx ... itnerd.blog
  5. 5 CISA urges device hardening after thousands of Fortinet credentials ... www.cybersecuritydive.com
  6. 6 Active FortiBleed Campaign Impacting Fortinet Devices Across 194 ... arcticwolf.com
  7. 7 FortiBleed linked to ransomware groups INC and Lynx www.techzine.eu
  8. 8 FortiBleed – New SOCRadar In-Depth Technical Analysis Published itnerd.blog
  9. 9 CISA Urges Quick Patching of Fortinet Vulnerability Amid ... - Reddit www.reddit.com
  10. 10 FortiGate credentials are now the attack path. CISA is urging Fortinet ... www.facebook.com
  11. 11 What Is FortiBleed? Fortinet Credential Theft Campaign Explained socradar.io
  12. 12 FortiBleed: 86,644 Firewalls Compromised — Is Your Las Vegas ... cmitsolutions.com
  13. 13 FortiBleed Attack 2026: CISA Warns on 74,000 Devices blog.cybernexora.com
  14. 14 FortiBleed exposes Fortinet credentials at global scale - Field Effect fieldeffect.com
  15. 15 The Rise of Credential Compromise Attacks - Fortinet www.fortinet.com

Deja un comentario