Chinese threat actors, known as BrazenBamboo, are actively exploiting a zero-day vulnerability in Fortinet’s FortiClient Windows VPN client with the DEEPDATA post-exploitation toolkit. This critical unpatched flaw enables attackers to extract user credentials from memory after VPN authentication, echoing a similar vulnerability reported in 2016.
What’s new on HivePro
Get through updates and upcoming events, and more directly in your inbox