Adam Tyra’s Post

View profile for Adam Tyra, graphic

Vice President and General Manager of Security Services at At-Bay

At-Bay's recently-released 2024 InsureSec report revealed that insureds operating Fortinet VPN solutions were 5 times as likely to file a ransomware claim as insureds that used a cloud-based VPN or no VPN at all. While we have speculated at length about the underlying causes of this disparity, the presence of nation-state grade backdoor malware that was custom-designed for Fortinet appliances didn't make the list. I blame myself for the failure of imagination here. If you're operating a Fortinet device, you need to take steps. Consider- if a vulnerability is an open door, patching just closes it. It doesn't do anything to exorcise any ghouls that made their way in while the door was ajar. For that, you need the real-time monitoring, periodic threat hunting, and aggressive response that you get with Managed Detection and Response (MDR)! https://lnkd.in/ewuqehFW

China state hackers infected 20,000 Fortinet VPNs, Dutch spy service says

China state hackers infected 20,000 Fortinet VPNs, Dutch spy service says

arstechnica.com

To view or add a comment, sign in

Explore topics