News on Medial

China state hackers infected 20,000 Fortinet VPNs, Dutch spy service says

ArstechnicaArstechnica · 5m
China state hackers infected 20,000 Fortinet VPNs, Dutch spy service says

Chinese state hackers exploited a critical vulnerability (CVE-2022-42475) in over 20,000 VPN appliances sold by Fortinet, according to officials from the Netherlands government. The vulnerability allowed remote execution of malicious code and was fixed by Fortinet on November 28, 2022, though the company failed to disclose it until December 12. The hackers installed an advanced backdoor named CoatHanger on Fortinet devices, enabling them to persist even after reboots or firmware updates. The breach affected various Western government agencies, international organizations, and defense industry companies. Fortinet has not disclosed why it didn't promptly disclose the vulnerability or how it handles vulnerability disclosures.

Comments

Download the medial app to read full posts, comements and news.