Fortinet blocks exploited FortiCloud SSO zero day until patch is ready
Fortinet has confirmed a new, actively exploited critical FortiCloud single sign-on (SSO) authentication bypass vulnerability, tracked as CVE-2026-24858, and says it has mitigated the zero-day attacks by blocking FortiCloud SSO connections from devices running vulnerable firmware versions. [...]
⚠️ 风险分析 高
摘要:Fortinet零日漏洞被利用,可能导致用户数据泄露,违反数据保护法规。
影响:企业若使用受影响设备,可能面临数据泄露风险,导致合规违规、客户信任下降及潜在法律诉讼。
建议:立即检查并更新Fortinet设备固件,暂停使用易受攻击的SSO连接,加强监控和应急响应。
「素履以往」
Not the sharpest mind, but the steadiest hand.
Not the sharpest mind, but the steadiest hand.