Lessons Learned from UNC3886 Attacks on Fortinet
UNC3886 used zero-days on FortiGate devices—observe patching, telemetry, and threat hunting rigor. (Wikipedia)
UNC3886 used zero-days on FortiGate devices—observe patching, telemetry, and threat hunting rigor. (Wikipedia)
In 2023 alone, Fortinet had ~195 CVEs vs. 15 for Palo Alto and 3 for Check Point. (loopback net)
PAN-OS XSS (CVE-2025-0133) exposes management interface to malicious scripts—patch now.
Credentials for 15,000 FortiGate devices leaked—tight configuration management is key.