TGViewer
SITREP - Independent OSINT Channel SITREP - Independent OSINT Channel @sitreports · 23K subscribers
Post #39528 426
🔍 FBI warns FortiBleed activity is still ongoing

The FBI says exposed Fortinet FortiGate firewalls and SSL VPN gateways continue to be targeted in the FortiBleed campaign. Operators use leaked or stolen credentials, extract additional auth data, crack password hashes offline with distributed GPU tooling, then create admin accounts or change passwords to lock out legitimate administrators.

The access chain now appears operationalized beyond simple credential abuse: persistence, lateral movement, and ransomware affiliate use have all been observed. The key point is that remediation extends past patching and password resets, as account tampering and retained access can survive basic recovery steps.

🛰️ Open sources - closed narratives
@sitreports
More from @sitreports
  1. Oct 9, 2026🔍 Nvidia patches high-severity DCGM Exporter flaw Researchers identified roughly 2,100 in…
  2. Oct 9, 2026🔍 FBI details China-linked email access portal The FBI says China-linked hackers operated…
  3. Oct 9, 2026📡 Ransomware disrupts Japan’s IDCF Cloud IDC Frontier says a ransomware attack hit its ID…
  4. Oct 9, 2026🔍 FakeGit reactivates at scale on GitHub FakeGit has resumed activity with 17,610 malicio…
  5. Oct 9, 2026🔍 Cisco flags five critical NX-OS flaws on Nexus switches Cisco has issued advisories for…
  6. Oct 9, 2026🔍 Low-cost Android phones found shipping with firmware-level malware Bitdefender’s Midnig…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →