Arcticwolf
Malicious Configuration Changes Detected on Fortinet FortiGate Devices
First seen 23 Jan 2026, 22:10 UTC
•
•85% similarity
•27.3
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Arctic Wolf has identified malicious configuration changes occurring on Fortinet FortiGate devices via Single Sign-On (SSO) accounts. This incident highlights the importance of applying security patches promptly to mitigate vulnerabilities associated with these devices.
ThreatCluster AI
How this analysis works