What We Know
REST OF WORLD:Constitutional Court vote may influence Puigdemont’s arrest warrant and return to CataloniaGAMING:Control Resonant’s launch hotfix eases combat and strengthens Dylan’s early progressionSPORTS:Maple Leafs acquire Kirill Marchenko from Blue Jackets and sign him to six-year extensionMARKETS:August U.S. Inflation Rose Less Than Expected as Spending Stayed Strong and Price Pressures PersistedCYBERSECURITY:Citrix NetScaler zero-days prompt global alerts and urgent mitigation effortsPOLITICS:Iran-US Nuclear and Hormuz Discussions Continue Amid Mediation and Doubts Over a DealAI:The EU advances AI Act enforcement as draft rules and provider letters emergeTOP STORIES:Ukraine develops affordable interceptor drones as jet-powered threats expose defense gapsREST OF WORLD:Constitutional Court vote may influence Puigdemont’s arrest warrant and return to CataloniaGAMING:Control Resonant’s launch hotfix eases combat and strengthens Dylan’s early progressionSPORTS:Maple Leafs acquire Kirill Marchenko from Blue Jackets and sign him to six-year extensionMARKETS:August U.S. Inflation Rose Less Than Expected as Spending Stayed Strong and Price Pressures PersistedCYBERSECURITY:Citrix NetScaler zero-days prompt global alerts and urgent mitigation effortsPOLITICS:Iran-US Nuclear and Hormuz Discussions Continue Amid Mediation and Doubts Over a DealAI:The EU advances AI Act enforcement as draft rules and provider letters emergeTOP STORIES:Ukraine develops affordable interceptor drones as jet-powered threats expose defense gaps
Older than 2 weeksJust now

CISA warns Fortinet users to secure devices after FortiBleed leak

  • 8 sources analyzed
  • Source mix: Web
  • Momentum: Older than 2 weeks

What We Know

U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned Fortinet customers to secure and harden internet-accessible Fortinet devices after reports of a credential-harvesting campaign dubbed “FortiBleed.” Multiple security outlets report that threat actors collected FortiGate device credentials at scale; industry reporting cites tens of thousands of exposed device credentials (for example, SecurityWeek reports about 86,000 compromised credentials, while CSO Online cites roughly 75,000 exposed FortiGate firewalls worldwide). Fortinet publicly acknowledged reports of malicious actors targeting its devices and published an analysis of the reported credential compromises (Fortinet blog, June 19, 2026).

Researchers and vendors that examined the activity describe it as a global access-broker style campaign. SpyCloud published an analysis of infrastructure associated with the FortiBleed actors, and security outlets note the campaign’s wide geographic reach (CSO Online references exposure across 194 countries). Security reporting and Security Affairs say there are warnings of active exploitation following the leak. In response, CISA and other commentators are urging organizations to harden devices exposed to the internet and follow remediation guidance to prevent or limit unauthorized access.

Source Comparison

Aligned reporting
8 corroborates - 0 adds context - 0 conflicts

Corroborates