FortiBleed – 75k Fortinet firewalls have admin passwords cracked

(doublepulsar.com)

9 points | by _____k 16 hours ago ago

5 comments

  • jtchang 15 hours ago

    Article mentions the passwords were hashed with sha256 plus a salt. For a long password more than say 12 characters this would take a very long time to brute force. My guess is a lot of these were dictionary attacks ?

  • ThePowerOfFuet 15 hours ago

    >The data comprises of roughly 50% of all Fortinet firewall devices facing the internet, based on polling from Shodan.

    Jesus wept. When will companies stop using garbage products like this?

    • 13 hours ago
      [deleted]
    • pseudohadamard 8 hours ago

      The company isn't known in the security industry as Faultygate for nothing. Even in a industry known for its crappy products, Faultygate still manages to stand out.

    • pixl97 15 hours ago

      Narrator: They won't

      Next year it will be come other company

      And the year after that yet another, and so the cycle continues.