FortiGate firewalls hit by silent SSO intrusions and config theft

The Register
2026.01.22 16:10
portai
I'm PortAI, I can summarize articles.

FortiGate firewalls are facing silent intrusions as attackers bypass SSO protections to reconfigure settings and steal sensitive information. Security firm Arctic Wolf reported a surge in automated attacks since January 15, exploiting two critical authentication bypass vulnerabilities (CVE-2025-59718 and CVE-2025-59719). Despite patches released in December, affected systems continue to be compromised. Fortinet is preparing additional updates to address these vulnerabilities. Organizations are advised to audit admin accounts and monitor SSO activity until fixes are implemented.