TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Infosecurity Magazine

Russian Cyber Threat Actor Uses GenAI to Compromise Fortinet Firewalls

2026-02-23 · Read original ↗

ATT&CK techniques detected

2 predictions
T1550.002Pass the Hash
75%
"port scanner, automatically identifying smb hosts and domain controllers and integrating vulnerability scanning using nuclei, an open - source vulnerability scanner, against discovered http services to produce prioritized target lists. once inside victim networks, the threat acto…"
T1588.007Artificial Intelligence
33%
"russian cyber threat actor uses genai to compromise fortinet firewalls a low - skilled cyber threat actor has been observed leveraging several generative ai ( genai ) tools to deploy a malicious campaign aimed at compromising fortinet ’ s fortigate firewall appliances. in an amaz…"

Summary

A low-skilled Russian-speaking attacker has used GenAI tools to help deploy a successful attack workflow targeting FortiGate instances