Over 338K FortiGate firewalls remain unpatched to critical bug

A critical vulnerability in FortiGate firewalls, known as CVE-2023-27997, has left more than 338,000 devices exposed to potential exploitation.

The flaw, which allows for remote code execution, was patched by Fortinet last month, but a significant number of devices have yet to be updated.

Infosec company Bishop Fox has even developed an example exploit to demonstrate the severity of the vulnerability.

Rated 9.8 out of 10 in terms of CVSS severity, the...

FBI claims Iran is using BIG-IP exploit to attack US private and government networks

The FBI has warned that Iranian hackers are using the BIG-IP exploit to attack US private and government networks.

In the security alert, the FBI did not name any specific group or campaign but ZDNet's sources told the publication "the group is tracked by the larger cyber-security community under codenames such as Fox Kitten or Parasite."

The alert suggests the hackers are taking advantage of the CVE-2020-5902 vulnerability discovered in...