Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of total control being seized by malicious actors. The flaw has been confirmed to be ex...
Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized sophisticated tools including a proprietary reconnaissance engine named Kimera and ex...
A cryptomining botnet has compromised 3,562 Redis servers, primarily due to missing authentication. The attack targeted a shared list of 12,966 hosts, with a significant success rate of 22-26%. The compromised servers span Redis versions from 2.8.17 to 7.2.0 and various Linux distributions, indicati...
More than 10,000 Fortinet firewalls remain exposed to a critical two-factor authentication bypass vulnerability (CVE-2020-12812) that has been actively exploited. This flaw, first disclosed in July 2020, continues to pose risks as many devices have not been patched, with ongoing attacks reported rec...