FortiBleed-kampanjen kopplad till ransomware-grupperna INC och Lynx

15 källor
  • SOCRadar kopplade FortiBleed-kampanjen till ransomware-grupperna INC Ransom och Lynx efter att ha hittat en operatör aktiv i båda gruppernas förhandlingspaneler.
  • Operationen riktade sig mot över 430 000 Fortinet -brandväggar globalt, skördade mer än 110 miljoner inloggningsuppgifter och ledde till minst 12 ransomware-distributioner.
  • Angriparna innehar även en Nextcloud zero-day-sårbarhet och har sammanställt mållistor för Citrix-miljöer, enligt SOCRadar, vilket signalerar att kampanjen kan komma att utökas.
Källor (15)
  1. 1 FortiBleed Credential Theft Linked to INC and Lynx Ransomware ... thehackernews.com
  2. 2 FortiBleed credential-theft campaign linked to Lynx ransomware www.bleepingcomputer.com
  3. 3 Russian Initial Access Broker Behind FortiBleed Campaign www.securityweek.com
  4. 4 SOCRadar Links FortiBleed Campaign to INC and Lynx ... itnerd.blog
  5. 5 CISA urges device hardening after thousands of Fortinet credentials ... www.cybersecuritydive.com
  6. 6 Active FortiBleed Campaign Impacting Fortinet Devices Across 194 ... arcticwolf.com
  7. 7 FortiBleed linked to ransomware groups INC and Lynx www.techzine.eu
  8. 8 FortiBleed – New SOCRadar In-Depth Technical Analysis Published itnerd.blog
  9. 9 CISA Urges Quick Patching of Fortinet Vulnerability Amid ... - Reddit www.reddit.com
  10. 10 FortiGate credentials are now the attack path. CISA is urging Fortinet ... www.facebook.com
  11. 11 What Is FortiBleed? Fortinet Credential Theft Campaign Explained socradar.io
  12. 12 FortiBleed: 86,644 Firewalls Compromised — Is Your Las Vegas ... cmitsolutions.com
  13. 13 FortiBleed Attack 2026: CISA Warns on 74,000 Devices blog.cybernexora.com
  14. 14 FortiBleed exposes Fortinet credentials at global scale - Field Effect fieldeffect.com
  15. 15 The Rise of Credential Compromise Attacks - Fortinet www.fortinet.com

Lämna ett svar