‼️🚨 BREAKING: 320,000 Fortinet firewall devices have been targeted in a campaign that has been dubbed 'FortiBleed'. Attackers were able to confirm 75,000 working credentials against the admin and SSL VPN interfaces.
The victims include really big names like Samsung, Oracle, Spotify, Sony, and more.
The data was first surfaced by researcher Volodymyr "Bob" Diachenko and analyzed by Hudson Rock and SOCRadar. The operation runs as a self-feeding loop. Attackers scan the internet for exposed Fortinet devices, then test each one against a curated list of passwords leaked from earlier Fortinet breaches and infostealer logs. Every successful login gets recorded into a verified database. They then turn each compromised box into a listening post, sniffing the traffic passing through the firewall to harvest fresh credentials, which go straight back into the scanner.
The scale is large. The group ran an estimated 1.16 billion credential attempts against more than 320,000 FortiGate targets, plus 2.1 billion brute-force tries against 160,000 MSSQL servers. In the deeper intrusions they intercept SSL VPN authentication hashes, crack them on a dedicated 45-GPU cluster, and move into internal Active Directory.
Diachenko confirmed full network compromises in Japan, Taiwan, Vietnam, Iraq, and Turkey, including a Turkish NATO defense contractor that had classified defense documents stolen.
If you run Fortinet, act now: rotate every VPN and admin credential, enforce MFA on all external gateways, restrict management access to approved sources, segment internal networks, and audit gateway logs for unusual logins. Hudson Rock has a free domain lookup at https://t.co/KLv2YiMtpm.
Data surfaced via the Hunt Intelligence, Inc. feed.
'We will make further statements in July about VPNs and further restrictions'
Technology Secretary Liz Kendall told #BBCBreakfast she will outline more details next month about the social media ban on under 16s in the UK - as well as additional restrictions on Virtual Private Networks, curfews and chatbots
https://t.co/t05fQ28cFO
Jeremy Clarkson has been diagnosed with aggressive prostate cancer during the final two episodes of Clarkson’s Farm.💔
Heartbreaking news. The disease was caught early and he has since undergone surgery.
Jeremy has left us with the words -
"If this is all successful, I'll see you for season six, and if it isn't, I won't".
We’re all praying for a full recovery, our thoughts are with all those affected by this awful news. Hold your loved ones close.❤️
@WestminsterWAG@theJeremyVine@ClarkeMicah Also under highway code rule H2, if a pedestrian is crossing or waiting to cross a road into which or out of which you are turning, you must give way to them. This applies whether the pedestrian is already on the road or simply waiting at the kerb.
The UK Information Commissioner’s Office (ICO) is preparing new guidance, codes of practice and public education resources aimed at building trust in AI and biometric technologies.
Planned initiatives include an AI and automated decision-making code of practice, guidance for organizations deploying AI systems, resources for SMEs and public bodies, and new guidance on agentic AI.
The goal: increase public confidence while providing clearer rules for responsible innovation.
#biometrics #facialrecognition
https://t.co/rJE4nO4WSu
WordPress plugins OptinMonster, TrustPulse, and PushEngage have been compromised in a supply-chain attack impacting Awesome Motive's content distribution network (CDN).
#cybersecurity
https://t.co/14iHg2CKyp
🚨 Microsoft 365 Copilot Vulnerability Allows Attackers to Steal Data in One Click
Source: https://t.co/Sbm5ms8d1Q
A critical vulnerability chain in Microsoft 365 Copilot Enterprise that let attackers steal sensitive corporate data, MFA codes, email contents, calendar details, and confidential files with nothing more than a single click on a link pointing to a legitimate Microsoft domain.
Dubbed SearchLeak, is not a single flaw; it is a chained exploit that weaponizes Microsoft 365 Copilot Enterprise Search as a silent data exfiltration engine. Individually, each vulnerability is manageable. Chained together, they create a one-click attack capable of stealing virtually any data.
#cybersecuritynews
Big News this morning : The George Washington statue near Fenway Park in Boston has been given the Highest Honour By the 🏴 Scottish Fans. Someone has got up there God knows how and placed a traffic cone □on his heed. 😅🤣😂😂. This is a proud moment for 🏴 Scotland.
👍🏻
In its May 2026 update, Anthropic reported that it and approximately 50 partners used Claude Mythos Preview to find more than 10,000 high- or critical-severity vulnerabilities in systemically important software in a single month.
#cybersecurity
https://t.co/xUJCyocHjZ
🚨 NEW: The University of Nottingham has suffered a "serious" data breach affecting its campuses in the UK, China and Malaysia
Students' personal and financial information are now up for sale on the dark web
Hundreds of thousands of email addresses are understood to have been affected by a hack at the University of Nottingham claimed by the notorious ShinyHunters group [link in comments]