tech
Massive breach spills credentials for thousands of sensitive networks
The affected include Oracle, Lenovo, FedEx, a NATO contractor, and Fortinet.

TL;DR
- Nearly 74,000 Fortinet devices in 194 countries have been compromised, exposing plaintext credentials.
- Affected organizations include Oracle, Chevron, Lenovo, Federal Express, a NATO defense contractor, and Fortinet itself.
- Attackers used a massive GPU cluster to crack SSL VPN authentication hashes, enabling lateral movement into centralized authentication systems like Active Directory.
- Classified defense documents were exfiltrated from a Turkish NATO defense contractor.
- The breach impacts nearly every sector of the global economy, with top affected industries including IT services, telecommunications, and financial services.
- Security researchers are urging Fortinet users to immediately investigate their networks for signs of compromise.