Fortinet Fiasco: VPN Passwords and Configs Leaked by Cyber Grinch

A new threat actor called Belsen Group has leaked config files and VPN passwords for over 15,000 Fortinet FortiGate devices. While the data is free, it’s not exactly a gift anyone would want. FortiNet has yet to comment on this cyber surprise, leaving everyone guessing: did they get hacked or just misplace the keys?

Pro Dashboard

Hot Take:

Looks like the Belsen Group is adding a spicy new twist to our new year’s resolutions: “Thou shall not be hacked!” With over 15,000 Fortinet FortiGate devices spilling their secrets faster than a teenager with their first crush, the cybersecurity world might need more than just a fancy firewall to keep the Belsen fireworks at bay!

Key Points:

  • A threat actor named Belsen Group leaked configuration files and VPN passwords for over 15,000 Fortinet FortiGate devices.
  • The data leak includes IPs, passwords, and configuration files, all conveniently categorized by country.
  • The leaked data primarily involves older FortiOS versions, with the most recent compiled before September 14, 2022.
  • Devices from Mexico, the USA, and Germany are the most affected, with many belonging to major ISPs.
  • Fortinet has yet to respond to the data breach publicly.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?