Citrix Bleed 2
FortiGuard Labs has observed a sharp increase in exploitation attempts targeting the ‚Citrix Bleed 2‘ vulnerability since July 28, 2025. Telemetry indicates activity has surged to over 6,000 detections across …
Fortinet Blog
FortiGuard Labs has observed a sharp increase in exploitation attempts targeting the ‚Citrix Bleed 2‘ vulnerability since July 28, 2025. Telemetry indicates activity has surged to over 6,000 detections across …
FortiGuard Labs has detected and successfully blocked hundreds of exploitation attempts targeting a newly discovered zero-day vulnerability chain in on-premises Microsoft SharePoint servers. This active campaign is being exploited by …
A campaign targeting SonicWall SMA 100 series appliances is under active exploitation, leveraging both known and potential zero-day vulnerabilities to gain persistent access to enterprise networks. The attackers deploy a …
Threat Actors are actively exploiting CVE-2024-3721, a command injection vulnerability in TBK DVR devices (Digital Video Recorders). This flaw allows unauthenticated remote code execution (RCE) via crafted HTTP requests to …
FortiGuard Labs continues to observe ongoing attack attempts targeting SimpleHelp, a Remote Monitoring and Management (RMM) software, due to a critical unauthenticated path traversal vulnerability (CVE-2024-57727) affecting versions 5.5.7 and …
The hacking group known as Earth Lamia has been targeting various sectors including finance, government, IT, logistics, retail, and education, shifting focus depending on the time period. The group is …
FortiGuard Labs has observed a significant uptick in attacks targeting Langflow, leveraging a recently discovered authentication bypass vulnerability that allows unauthenticated remote attackers to fully compromise affected servers.
FortiGuard Labs has identified ongoing and persistent attack attempts in the wild that are aimed at exploiting CVE-2025-31161, which is an authentication bypass vulnerability found in CrushFTP file transfer server. …
FortiGuard Labs has detected persistent attempts to exploit the Commvault Command Center path traversal vulnerability, identified as CVE-2025-34028. If attacks succeed, they could achieve full system compromise. FortiGuard telemetry shows …
