Tech

Update now — Fortinet Windows VPN hacked to steal user data

Share
Share


  • Researchers spot Chinese threat actor stealing login credentials from Fortinet VPN
  • Thefts carried out with the help of a vulnerability discovered in 2023
  • The bug is yet to be addressed, or even assigned a CVE

Cybersecurity researchers has revealed that for months now, Fortinet’s Windows VPN client has been vulnerable to a flaw which allows threat actors to steal user credentials – and Chinese hackers have reportedly now started exploiting the bug and stealing the data.

Experts from Volexity have published an in-depth report on a piece of malware called DeepData. This malware was used by a Chinese threat actor known as BrazenBamboo to steal login credentials, and VPN server information from Fortinet VPNs.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Instagram tries using AI to determine if teens are pretending to be adults
Tech

Instagram tries using AI to determine if teens are pretending to be adults

A student uses their cell phone after unlocking the pouch that secures...

Beware, hackers can apparently now send phishing emails from “no-reply@google.com”
Tech

Beware, hackers can apparently now send phishing emails from “[email protected]

Crooks are abusing Google’s notification system to bypass email protection Through OAuth...

Electronic skin with unique fingerprint patterns offers enhanced security features
Tech

Electronic skin with unique fingerprint patterns offers enhanced security features

Soft artificial finger pad. a) Optical images of the soft artificial finger...

Scientists develop pneumatic propellers that could replace diesel engines in ferry boats
Tech

Scientists develop pneumatic propellers that could replace diesel engines in ferry boats

Schematic of the proposed pneumatic propulsion with multi-option for connectivity, be it...