CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices
A global FortiBleed campaign has exposed admin credentials on up to 86,644 FortiGate firewalls, prompting a CISA warning.
Velocity
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The brief
FortiBleed is a credential‑exposure campaign targeting Fortinet FortiGate devices. Reported numbers range from 73,932 compromised firewalls to 86,644 devices, with coverage noting impact across 194 countries and describing the breach as affecting roughly half of the internet‑facing fleet.
Coverage from Recorded Future, Arctic Wolf, csoonline.com, CloudSEK, DoublePulsar, Tech Times, InfoStealers, Ars Technica and The Hacker News highlights technical details, the scale of exposure and the issuance of a formal warning by the Cybersecurity and Infrastructure Security Agency (CISA) to Fortinet customers. Analysts will watch for further updates from CISA, Fortinet and affected organizations, including any remediation guidance, patch releases or additional advisories that may follow the initial warning.
Synthesized by PULSE from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 42d ago.
Quick answers
What is the FortiBleed campaign?
It is a campaign that has exposed admin credentials for Fortinet FortiGate firewalls, with reported compromise of tens of thousands of devices.
How many FortiGate devices are reported compromised?
Reported figures include 73,932 firewalls, 75,000 firewalls and an upper count of 86,644 devices, according to various outlets.
What geographic scope does the breach cover?
Coverage indicates the campaign is active in 194 countries.
What official response has been issued?
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning to Fortinet customers about the FortiBleed exposure.
Coverage (10)
- FortiBleed Campaign Exposing Credentials for 73,932 FortiGate Systems Recorded Future · 45d ago
- Active FortiBleed Campaign Impacting Fortinet Devices Across 194 Countries Arctic Wolf · 45d ago
- FortiBleed campaign exposes 75,000 Fortinet firewalls worldwide csoonline.com · 45d ago
- Inside the FortiBleed Open Directory: A Technical Analysis of What the Attacker Left Behind CloudSEK · 45d ago
- An update on FortiBleed — what’s happening with victim orgs | by Kevin Beaumont DoublePulsar · 45d ago
- Fortinet FortiGate Credential Leak Hits 73,932 Firewalls: Half the Internet-Facing Fleet Tech Times · 45d ago
- FortiBleed: 75,000 Fortinet Firewalls Compromised: Global Enterprises Exposed InfoStealers · 45d ago
- Massive breach spills credentials for thousands of sensitive networks Ars Technica · 45d ago
- FortiBleed — 75k Fortinet firewalls have admin passwords cracked | by Kevin Beaumont DoublePulsar · 45d ago
- CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices The Hacker News · 45d ago
Topics
Related trends
Microsoft warns hackers are targeting hotel Wi-Fi networks: What to know, how to protect yourself
Microsoft has issued a warning to travelers regarding an increase in hacking activities targeting Wi-Fi networks within the hospitality sector.
Google Password Manager Attacks Could Let Malware Hijack Passkey-Protected Accounts
A fresh Google Password Manager exploit lets malware steal synced passkeys, bypassing passwords and biometrics.
Google Chrome may soon block New Tab hijacker extensions by default
Google Chrome is preparing a security update to block extensions that hijack the New Tab page, curbing a common malware tactic.
Visa beefs up cybersecurity offerings with $2.4 billion BioCatch deal
Visa is enhancing its cybersecurity capabilities through the $2.4 billion acquisition of AI-powered fraud detection firm BioCatch.
AI's manifesto war
Corporate interests and security risks collide as AI companies battle over the philosophy and implementation of open-weights models.
Coldcard wallet attack drains up to $89M in Bitcoin from 1,200+ addresses
A massive security breach targeting Coldcard wallets has resulted in the theft of up to $89 million in Bitcoin from over 1,200 addresses.