Amazon Threat Intelligence researchers uncovered a Russian-speaking threat actor who used multiple commercial generative AI services to compromise over 600 Fortinet FortiGate appliances across 55+ countries in just five weeks. The attacker exploited exposed management ports and weak single-factor authentication credentials
Table of contents
A Growing TrendCompromised AD, Stole CredentialsAccessing FortiGate AppliancesMoving Laterally‘Expect This Trend to Continue in 2026’Sort: