China’s Cyber Rat Race: 20,000 Fortinet Devices Compromised in Espionage Campaign

Between 2022 and 2023, Chinese attackers compromised at least 20,000 Fortinet devices, including Dutch government systems, for cyber-espionage. Using a remote access trojan called Coathanger, the attackers remained persistent on these devices despite patches. The Dutch Military Intelligence and Security Service (MIVD) confirmed the broader scope of this campaign.

Pro Dashboard

Hot Take:

Looks like Fortinet devices had a party, and China RSVP’d with a cyber-espionage twist! Who knew firewalls could be so social?

Key Points:

– Between 2022 and 2023, over 20,000 Fortinet devices were compromised by Chinese attackers.
– The Dutch Military Intelligence and Security Service (MIVD) confirmed the breach was larger than initially believed.
– The vulnerability exploited was a remote code execution flaw (CVE-2022-42475).
– Attackers utilized a remote access trojan (RAT) dubbed Coathanger.
– Many devices remain infected even after patches were made available.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?