PrivacySignal
Breach

FBI: Ongoing FortiBleed attacks lock out FortiGate VPN admins

BleepingComputer · · International · Data Breaches

The FBI has issued a warning that attacks exploiting Fortinet FortiGate firewalls and SSL VPN gateways are still active, with threat actors locking legitimate administrators out of their own systems.

Why this matters: Getting locked out of your own firewall is not a minor inconvenience. It means attackers have enough control to block the people responsible for stopping them. Organizations running FortiGate devices need to treat this as an active threat, not a patching reminder. If your VPN gateway is exposed to the internet and not updated, someone else may already be in the chair. The FBI warning means this is not theoretical — it is happening now, at scale.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Deep Signal · Part I of III

The Algorithm Said So

Federal rulemakers are deciding what to do when artificial intelligence produces the kind of conclusion that once required an expert. They disagree about how to regulate it. They also disagree about whether the problem has arrived.

· 10 min read Read →

Related stories

Breach
DataBreaches.net · · International

Known Cybersecurity Expert and Owner of Florida Ransomware Remediation Company Charged with Defrauding Clients

Here’s another case where the folks who were supposed to be the good guys helping you may be harming you. Zohar Pinhasi, 50, also known as “Zack Silver” and “Zack Green,” a U.S. and Israeli national, was arraigned today in the Eastern District of New York on wire fraud charges relating to Pinhasi’s false representations... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

Ransomware recovery CEO charged over secret ransom payments

The owner of ransomware remediation company MonsterCloud has been charged with allegedly defrauding ransomware victims by secretly paying their attackers for decryptors while claiming to use proprietary technology to recover encrypted data. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Can you really make more than $200M in six months without encrypting victims? It seems Silent Ransom Group can.

Internal chat logs from Silent Ransom Group appear to have leaked, potentially revealing how the cybercriminal operation generates hundreds of millions of dollars without using traditional ransomware encryption. The group has been active since at least 2022 and has drawn sustained coverage for its unconventional extortion methods.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

Hackers hijack Google domains after breaching ccTLD registries

Attackers breached third-party operators managing country-code top-level domains for Ghana, American Samoa, and Sierra Leone, then altered DNS records and obtained unauthorized HTTPS certificates to hijack several Google domains.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Record · · International

US posts $10 million reward for accused Chinese ‘Hafnium’ hacker

The U.S. government has posted a $10 million bounty for Zhang Yu, whom officials identify as a key actor in the Hafnium hacking campaign, a Chinese state-linked operation that breached thousands of computers and exfiltrated large volumes of documents.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Record · · International

Arizona courts say hackers stole info on more than 1.3 million people

Arizona courts disclosed a data breach affecting more than 1.3 million people after hackers accessed the state's Fines/Fees and Restitution Enforcement Program, which collects debts tied to traffic and criminal violations.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →