DEEPDATA Empowers the Exploitation of Unpatched Fortinet Flaw

Red | Attack Report
Download PDF

Chinese threat actors, known as BrazenBamboo, are actively exploiting a zero-day vulnerability in Fortinet’s FortiClient Windows VPN client with the DEEPDATA post-exploitation toolkit. This critical unpatched flaw enables attackers to extract user credentials from memory after VPN authentication, echoing a similar vulnerability reported in 2016.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox