#forticloud-sso

[ follow ]
#fortinet
fromThe Hacker News
3 days ago
Information security

Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate Firewalls

Fortinet confirms active exploitation bypassing FortiCloud SSO patches on fully-patched FortiGate devices, enabling unauthenticated SSO bypass, persistence creation, VPN access changes, and configuration exfiltration.
fromTheregister
3 days ago
Information security

FortiGate SSO bug still exploitable despite December patch

Attackers have found a new way to bypass Fortinet's December patch for FortiCloud SSO, enabling compromise of updated FortiGate devices and exfiltration of configurations.
[ Load more ]