Hackers Allegedly Selling Fortinet Vulnerability Exploit on Dark Web Forums

A significant cybersecurity threat has emerged as hackers on a prominent Russian dark web forum claim to be selling an active exploit targeting Fortinet devices. The exploit reportedly leverages a critical vulnerability, CVE-2024-55591, which affects FortiOS versions 7.0.0 through 7.0.16.  This vulnerability, categorized as “Authentication Bypass Using an Alternate Path or Channel,” enables remote attackers […] The post Hackers Allegedly Selling Fortinet Vulnerability Exploit on Dark Web Forums appeared first on Cyber Security News.

Jan 29, 2025 - 23:28
 0
Hackers Allegedly Selling Fortinet Vulnerability Exploit on Dark Web Forums

A significant cybersecurity threat has emerged as hackers on a prominent Russian dark web forum claim to be selling an active exploit targeting Fortinet devices.

The exploit reportedly leverages a critical vulnerability, CVE-2024-55591, which affects FortiOS versions 7.0.0 through 7.0.16. 

This vulnerability, categorized as “Authentication Bypass Using an Alternate Path or Channel,” enables remote attackers to bypass authentication and gain super-admin access to affected systems.

Are you from SOC/DFIR Teams? – Analyse Malware Files & Links with ANY.RUN Sandox -> Try for Free

Alleged Exploit on Dark Web

The exploit is described as a multi-threaded custom tool capable of scanning IP:Port combinations to identify vulnerable Fortinet instances.