Hackers Allegedly Selling Fortinet Vulnerability Exploit on Dark Web Forums
A significant cybersecurity threat has emerged as hackers on a prominent Russian dark web forum claim to be selling an active exploit targeting Fortinet devices. The exploit reportedly leverages a critical vulnerability, CVE-2024-55591, which affects FortiOS versions 7.0.0 through 7.0.16. This vulnerability, categorized as “Authentication Bypass Using an Alternate Path or Channel,” enables remote attackers […] The post Hackers Allegedly Selling Fortinet Vulnerability Exploit on Dark Web Forums appeared first on Cyber Security News.
![Hackers Allegedly Selling Fortinet Vulnerability Exploit on Dark Web Forums](https://i0.wp.com/blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiZZFEtUe5n5xtiMiMXXI3sU1DA43cyQRbTRVjbeP24WKzNYSaSnM-Hm8jmAA-2zAr5lQy8qnUWtBNMP7WXL9bvw8l4xoi59BA2RJLV2h0vNOisRtuYD-Serh_KsV-rpJrE3GQ5HoCCdSKw1Zd2ARt1HejysN8a68nKgXBY0VE8I1opikuE121SRxochfRg/s16000/Fortinet Exploit Allegedly.webp?#)
A significant cybersecurity threat has emerged as hackers on a prominent Russian dark web forum claim to be selling an active exploit targeting Fortinet devices.
The exploit reportedly leverages a critical vulnerability, CVE-2024-55591, which affects FortiOS versions 7.0.0 through 7.0.16.
This vulnerability, categorized as “Authentication Bypass Using an Alternate Path or Channel,” enables remote attackers to bypass authentication and gain super-admin access to affected systems.
Are you from SOC/DFIR Teams? – Analyse Malware Files & Links with ANY.RUN Sandox -> Try for Free
Alleged Exploit on Dark Web
The exploit is described as a multi-threaded custom tool capable of scanning IP:Port combinations to identify vulnerable Fortinet instances.