Exploit for Authentication Bypass Using an Alternate Path or Channel in Fortinet Fortiproxy

ScaryByte R&D PoC for CVE-2024-55591 A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability (CVE-2024-55591) in ...

Continue Reading
Exploit for Authentication Bypass Using an Alternate Path or Channel in Fortinet Fortiproxy

Proof of Concept for CVE-2024-55591 Exploit This script is a Proof of Concept (PoC) designed to test and exploit the CVE-2024-55591 vulnerability in vulnerable versions of FortiOS and FortiProxy. It b ...

Continue Reading
Exploit for Authentication Bypass Using an Alternate Path or Channel in Fortinet Fortiproxy

CVE-2024-55591 PoC This repository contains an PoC (Proof of Concept) for CVE-2024-55591, a critical authentication bypass vulnerability discovered in Fortinet's FortiOS and FortiProxy products. ...

Continue Reading
Exploit for Authentication Bypass Using an Alternate Path or Channel in Fortinet Fortiproxy

CVE-2024-55591 If you're reading this, you most likely know what we're talking about. DOWNLOAD Vulnerability Scanner Description This script attempts to create a WebSocket connection at a ra ...

Continue Reading
Exploit for Authentication Bypass Using an Alternate Path or Channel in Fortinet Fortiproxy

CVE-2024-55591 A Fortinet FortiOS Authentication Bypass Proof of Concept See our blog post for technical details Detection in Action ``` python CVE-2024-55591-PoC.py --host 192.168.1.5 --port 443 --co ...

Continue Reading
FireScam Android Malware Poses as Telegram Premium to Steal Data and Control Devices

An Android information stealing malware named FireScam has been found masquerading as a premium version of the Telegram messaging app to steal data and maintain persistent remote control over compromi ...

Continue Reading
Fortinet Warns of New Zero-Day Used in Attacks on Firewalls with Exposed Interfaces

Threat hunters are calling attention to a new campaign that has targeted Fortinet FortiGate firewall devices with management interfaces exposed on the public internet. "The campaign involved ...

Continue Reading
Google Ads Users Targeted in Malvertising Scam Stealing Credentials and 2FA Codes

Cybersecurity researchers have alerted to a new malvertising campaign that's targeting individuals and businesses advertising via Google Ads by attempting to phish for their credentials via fraud ...

Continue Reading

Back to Main

Subscribe for the latest news: