What We Know

La traducción al español no está disponible temporalmente; se muestra el original en inglés.

CoolingJust now

FortiBleed leak exposes Fortinet VPN credentials for 73,000 devices.

  • 8 sources analyzed
  • Source mix: Web
  • Momentum: Cooling

What We Know

Multiple security vendors and reporting label an active campaign "FortiBleed" that has harvested credentials from internet-facing Fortinet FortiGate VPN/firewall devices. Recorded Future's Insikt Group reported 73,932 affected systems; other outlets and researchers describe the scale as about 73,000–75,000 FortiGate systems worldwide. CSO Online says researchers found exposed credentials across many countries (reporting cites 194 countries). Fortinet posted a situational analysis (blog post by Carl Windsor, dated June 19, 2026) saying it is aware of reports of a credential-harvesting campaign targeting Fortinet devices. Security vendors including Bitdefender and Dataprise have published technical advisories and guidance, and reporting indicates government-level concern (Dataprise notes a CISA warning in its coverage).

Source Comparison

Aligned reporting
8 corroborates - 0 adds context - 0 conflicts

Corroborates