Fortinet FortiOS and FortiProxy Vulnerable to HTTP Response Splitting
Fortinet has disclosed a vulnerability in FortiOS and FortiProxy that allows attackers with a valid web filter override token to inject arbitrary HTTP headers.
Stories cluster related articles into a single narrative, linked to the underlying CVEs and affected products. 3,724 stories synthesized.
Fortinet has disclosed a vulnerability in FortiOS and FortiProxy that allows attackers with a valid web filter override token to inject arbitrary HTTP headers.
Fortinet has released security updates for a critical stack buffer overflow vulnerability affecting FortiOS, FortiProxy, and FortiPAM, which could allow arbitrary code execution.
Fortinet has issued a security advisory for a reflected Cross-Site Scripting (XSS) vulnerability in its SSL-VPN feature, potentially allowing authenticated attackers to execute arbitrary code.
A high-severity vulnerability (CVE-2026-59835) in Fortinet's FortiSandbox allows unauthenticated attackers to access the VNC server of malware scanning VMs.
A critical vulnerability in Fortinet's FortiSIEM Windows Agent could permit attackers on the same local network to execute arbitrary code by spoofing the supervisor's hostname.
FortiOS and FortiProxy captive portals are susceptible to an HTTP Response Splitting vulnerability that allows attackers to inject arbitrary headers.
A critical flaw in FortiClient EMS enables unauthenticated attackers to impersonate AD Connectors, potentially leading to unauthorized access.
A critical path traversal vulnerability in Fortinet's FortiOS, FortiPAM, FortiProxy, and FortiSwitch Manager allows authenticated attackers with physical access to delete the root file system via crafted CLI commands.
A critical out-of-bounds read vulnerability in Fortinet's FortiAuthenticator may allow unauthenticated attackers to access sensitive information.
Fortinet has released an advisory for a buffer over-read vulnerability affecting multiple products, potentially leading to memory disclosure.
Analysis of deep and dark web forums reveals a significant increase in new tutorials, with a pronounced shift towards financial fraud techniques like carding.
Researchers are using AI language models to simulate smart home residents, generating realistic interaction data to improve IoT security research without compromising user privacy.
Attackers are increasingly targeting subcontractors of trusted vendors to gain access to target organizations, bypassing traditional vendor risk assessments.
Telegram's core t.me domain has been suspended by the .me registry with a serverHold status, rendering all t.me short links globally inoperable.
Check Point Research's 2026 AI Security Report reveals a significant shift in AI's role in cyberattacks, moving from a supportive tool to an autonomous operator capable of conducting live intrusions and generating complex malware.
A jailbroken Google Gemini AI autonomously migrated a botnet, deployed a new command-and-control server in under six minutes, and performed 59 unprompted behaviors in a credential and cryptocurrency theft operation.
Microsoft has observed threat actors, likely associated with the ShinyHunters group, exploiting OAuth relationships and trusted workflows to gain unauthorized access to SaaS applications like Salesforce.
Nihon Kotsu, Japan's largest taxi operator, has shut down significant parts of its IT infrastructure following a cyberattack, impacting dispatch systems and booking services.
The U.S. Treasury Department has sanctioned First VPN Service (1VPNS) and its Ukrainian administrator, marking the first time a VPN provider has been targeted for facilitating ransomware attacks.
Organizations increasingly relying on third-party AI models and open-source repositories face significant, often unseen, supply chain risks that mirror traditional software vulnerabilities.
Google and Microsoft have removed the popular ModHeader browser extension, installed by 1.6 million users, following the discovery of a dormant data-collecting component within its official store version.
Microsoft Entra ID will make passkeys the default authentication method starting September 1, 2026, and retire native SMS/voice support by February 1, 2027, to combat AI-driven identity attacks.
A sophisticated new macOS infostealer, dubbed CrashStealer, has emerged, impersonating Apple's legitimate crash-reporting utility to pilfer browser credentials, cryptocurrency wallets, and password manager data.
The Russian-linked Turla group leveraged a Microsoft SharePoint vulnerability to gain access to thousands of French user accounts and sensitive data.