TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

GreyNoise

Hackers Actively Exploiting Fortinet Firewalls: Real-Time Insights from GreyNoise

2025-01-28 · Read original ↗

ATT&CK techniques detected

2 predictions
T1190Exploit Public-Facing Application
87%
"hackers actively exploiting fortinet firewalls : real - time insights from greynoise over 15, 000 fortinet fortigate firewalls have been exposed in a breach, leaving thousands with exposed login interfaces vulnerable to exploitation. greynoise has identified hundreds of these dev…"
T1588.006Vulnerabilities
45%
"egypt ( 4 % ) - malaysia ( 3 % ) - united arab emirates ( 2 % ) - colombia ( 2 % ) - india ( 2 % ) - kenya ( 2 % ) - israel ( 1 % ) this global spread underscores how widely fortinet firewalls are deployed and how attackers are leveraging them for malicious purposes. actionable s…"

Summary

This blog details how attackers are actively exploiting Fortinet FortiGate firewalls vulnerable to CVE-2022-40684, with real-time insights from GreyNoise to help defenders understand and respond to these threats.