Cybercriminals allegedly hacked tens of thousands of Fortinet firewalls used by major companies all over the world

Cybercriminals allegedly hacked tens of thousands of Fortinet firewalls used by major companies all over the world

A significant cybersecurity breach has emerged, with reports indicating that tens of thousands of Fortinet firewalls and VPNs utilized by major corporations globally have been compromised. This extensive hacking operation, referred to as 'FortiBleed,' is reportedly not exploiting unknown vulnerabilities within the devices but rather taking advantage of basic security oversights by companies. The methodology of the attackers involves scanning the internet for exposed Fortinet systems. Once identified, they gain access using lists of previously leaked passwords, allowing them to infiltrate the devices. This breach not only enables the theft of sensitive data from affected companies but also allows hackers to monitor network traffic and collect additional credentials. Cybersecurity firms Hudson Rock and SOCRadar have provided alarming statistics, indicating that more than 73,000 unique Fortinet URLs have been compromised. SOCRadar further estimates that over 30,000 devices are currently under the control of the hackers. Notable companies among those affected include Accenture, Comcast, Foxconn, Lenovo, Oracle, Samsung, Siemens, and PwC, although responses from these firms have been minimal. The cybersecurity firms highlighted that the regions most impacted by this breach include India, the United States, Taiwan, and Mexico, though victims span across numerous countries. Industries particularly vulnerable to this attack include IT services, construction materials, and telecommunications, with government entities also being targeted. The hacking group behind this operation appears to operate in Russian-speaking regions, according to the reports from Hudson Rock and SOCRadar. The breach was initially alerted by security researcher Bob Diachenko, and independent analyst Kevin Beaumont has confirmed the authenticity of the data. Interestingly, while Fortinet devices have been previously targeted through vulnerabilities, this incident marks a shift towards exploiting leaked passwords—a less complex yet highly effective method of attack.

Sources : TechCrunch

Published On : Jun 17, 2026, 18:45

Startups
The Boring Company Eyes $4 Billion Funding Boost Amid Expanding Tunnel Ventures

Elon Musk's tunneling enterprise, The Boring Company, is reportedly negotiating a substantial funding round of $4 billio...

TechCrunch | Jul 25, 2026, 19:50
The Boring Company Eyes $4 Billion Funding Boost Amid Expanding Tunnel Ventures
Cybersecurity
The Elusive Phineas Fisher: The Hacktivist Who Took Down Spyware Giants

In the realm of cybersecurity, few figures are as intriguing as Phineas Fisher, a hacker who has evaded capture for near...

TechCrunch | Jul 25, 2026, 21:00
The Elusive Phineas Fisher: The Hacktivist Who Took Down Spyware Giants
AI
Hugging Face CEO Calls for Action Following AI Security Breach

In a dramatic turn of events within the AI landscape, Hugging Face faced a significant security breach involving an AI a...

Business Insider | Jul 25, 2026, 20:30
Hugging Face CEO Calls for Action Following AI Security Breach
Startups
The Future of Work: Executives Weigh In on AI's Impact on Gen Z Careers

As generative artificial intelligence continues to rise, uncertainty looms for the incoming Gen Z workforce. Leaders fro...

Business Insider | Jul 26, 2026, 10:15
The Future of Work: Executives Weigh In on AI's Impact on Gen Z Careers
AI
The Rise of AI Distillation: A Controversial Technique Sparks Debate in Tech and Government

In recent discussions, a once-obscure topic in artificial intelligence has surged to the forefront of debates among tech...

CNBC | Jul 25, 2026, 12:15
The Rise of AI Distillation: A Controversial Technique Sparks Debate in Tech and Government
View All News