HackerFeeds

CyberSecurity News

FBI Warns FortiBleed Remains Active After Amassing 86,644 Fortinet Device Credentials

The Hacker News
· October 7, 2026

AI summary

The FBI and Secret Service have issued a warning that the FortiBleed campaign is still an active threat, targeting Fortinet FortiGate firewalls and SSL VPN gateways that are accessible online. This campaign exploits credentials that have been reused or leaked, as well as outdated password storage methods. The threat actors are taking advantage of legacy SHA-256 password storage to gain unauthorized access. The FBI's warning indicates that FortiBleed has already amassed a significant number of Fortinet device credentials. The campaign's continued activity poses a risk to internet-facing Fortinet devices. The FBI and Secret Service are alerting organizations to the ongoing threat.

Read the full article at The Hacker Newsthehackernews.com/2026/10/fbi-warns-fortibleed-remains-active.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.