Hackers Still Chasing Logins on 75,000 Firewalls
Hackers keep working on a batch of 75,000 firewalls they already cracked into. The campaign is called FortiBleed, and it hit FortiGate devices sitting out on the internet.
What Happened
The attackers did not find some brand-new hole. They just chained together old FortiNet problems that have been public for years. Once they had the admin credentials, they could log straight into those firewalls from anywhere.
From there they could change the rules, open ports, and make all kinds of trouble. The whole thing reached 194 countries, and the hackers are still at it.
What This Means for Your Business
That is the real villain here: old flaws left sitting in your gear while someone else quietly takes control. One cracked firewall can turn into downtime, data leaks, or hours of your team chasing fires instead of running the business.
You go from feeling like you have things locked down to wondering what else got opened without you knowing. Small shops feel it first because there is no big security team watching the logs at 2 a.m.
What To Do This Week
- Check every internet-facing firewall you own and confirm it is running the latest firmware.
- Look at the admin accounts on those devices and remove any that are not needed.
- Review the last few weeks of login attempts on your firewalls for anything that looks off.
- If you run FortiGate gear, make the update a priority before the end of the week.
Questions about how this affects your setup? Schedule a free IT consultation and we’ll walk through it with you.
