Zero-Day Mayhem: Fortinet Firewalls Under Siege by Sneaky Attackers!
Fortinet warns of a zero-day bug in FortiOS and FortiProxy allowing attackers to hijack firewalls. This vulnerability, CVE-2025-24472, gives super-admin privileges with crafty CSF proxy requests. Fortinet firewalls are now in the spotlight, and not in a good way. Time to patch up before hackers turn your network into their playground.

Hot Take:
Fortinet’s firewalls have more bypasses than a highway construction zone! Just when you thought you were safe with a zero-day patch, another sneaky vulnerability zooms in to crash the party. It’s like playing whack-a-mole with cyber threats, and the moles are winning.
Key Points:
- Fortinet firewalls are being hijacked through a newly discovered zero-day vulnerability.
- The bug, CVE-2025-24472, allows attackers to gain super-admin privileges.
- Vulnerabilities affect FortiOS and FortiProxy versions, leading to unauthorized access.
- Arctic Wolf Labs reported widespread attacks on Fortinet devices since November 2024.
- Admins are advised to disable public management access as a temporary fix.
Already a member? Log in here