FortiBleed – 75k Fortinet firewalls have admin passwords cracked

Posted by _____k 5 hours ago

Counter8Comment3OpenOriginal

Comments

Comment by jtchang 3 hours ago

Article mentions the passwords were hashed with sha256 plus a salt. For a long password more than say 12 characters this would take a very long time to brute force. My guess is a lot of these were dictionary attacks ?

Comment by ThePowerOfFuet 4 hours ago

>The data comprises of roughly 50% of all Fortinet firewall devices facing the internet, based on polling from Shodan.

Jesus wept. When will companies stop using garbage products like this?

Comment by 1 hour ago

Comment by pixl97 3 hours ago

Narrator: They won't

Next year it will be come other company

And the year after that yet another, and so the cycle continues.