Von China unterstützte Hacker nutzen Fortinet-Schwachstelle aus und infizieren weltweit 20.000 Systeme

Teilen:

State-sponsored threat actors backed by China gained access to 20,000 Fortinet FortiGate systems worldwide by exploiting a known critical security flaw between 2022 and 2023, indicating that the operation had a broader impact than previously known.

“The state actor behind this campaign was already aware of this vulnerability in FortiGate systems at least two months before Fortinet disclosed the vulnerability,” the Dutch National Cyber Security Centre (NCSC) said in a new bulletin. “During this so-called zero-day period, the actor alone infected 14,000 devices.”

The campaign targeted dozens of Western governments, international organizations, and a large number of companies within the defense industry. The names of the entities were not disclosed.

The findings build on an earlier advisory from February 2024, which found that the attackers had breached a computer network used by the Dutch armed forces by exploiting CVE-2022-42475 (CVSS score: 9.8), which allows for remote code execution.

The intrusion paved the way for the deployment of a backdoor codenamed COATHANGER from an actor-controlled server that’s designed to grant persistent remote access to the compromised appliances, and act as a launching point for more malware.

The NCSC said the adversary opted to install the malware long after obtaining initial access in an effort to retain their control over the devices, although it’s not clear how many victims had their devices infected with the implant.

The latest development once again underscores the ongoing trend of cyber attacks targeting edge appliances to breach networks of interest.

“Due to the security challenges of edge devices, these devices are a popular target for malicious actors,” the NCSC said. “Edge devices are located at the edge of the IT network and regularly have a direct connection to the internet. In addition, these devices are often not supported by Endpoint Detection and Response (EDR) solutions.”

Ravie Lakshmanan

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
12:35 pm, Juni 25, 2025
Wetter-Symbol 24°C
L: 23° | H: 26°
wenige Wolken
Luftfeuchtigkeit: 60 %
Druck: 1012 mb
Wind: 6 mph SW
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 20%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 4:44 am
Sonnenuntergang: 9:21 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
23° | 26°°C 0 mm 0% 8 mph 60 % 1012 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
18° | 25°°C 1 mm 100% 16 mph 82 % 1018 mb 0 mm/h
Fr. Juni 27 10:00 pm
Wetter-Symbol
14° | 27°°C 0.3 mm 30% 13 mph 79 % 1022 mb 0 mm/h
Sa. Juni 28 10:00 pm
Wetter-Symbol
17° | 29°°C 0 mm 0% 10 mph 79 % 1024 mb 0 mm/h
So. Juni 29 10:00 pm
Wetter-Symbol
21° | 34°°C 0 mm 0% 9 mph 76 % 1025 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
24° | 25°°C 0 mm 0% 6 mph 60 % 1012 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
25° | 28°°C 0 mm 0% 8 mph 54 % 1011 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
25° | 25°°C 0 mm 0% 8 mph 46 % 1009 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
22° | 22°°C 0 mm 0% 6 mph 53 % 1009 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
20° | 20°°C 0.2 mm 20% 6 mph 74 % 1010 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
18° | 18°°C 0 mm 0% 7 mph 82 % 1009 mb 0 mm/h
Tomorrow 7:00 am
Wetter-Symbol
19° | 19°°C 0 mm 0% 8 mph 78 % 1010 mb 0 mm/h
Tomorrow 10:00 am
Wetter-Symbol
23° | 23°°C 0 mm 0% 13 mph 55 % 1011 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€92,112.70
1.66%
Ethereum(ETH)
€2,082.98
0.30%
Fesseln(USDT)
€0.86
0.00%
XRP(XRP)
€1.89
0.46%
Solana(SOL)
€125.48
1.66%
USDC(USDC)
€0.86
0.01%
Dogecoin(DOGE)
€0.141717
0.78%
Shiba Inu(SHIB)
€0.000010
-0.38%
Pepe(PEPE)
€0.000009
0.63%
Nach oben scrollen