by Alison Raymond | Oct 17, 2022 | News
The Register: 10/17/22 A critical flaw in Fortinet’s FortiOS, FortiProxy and FortiSwitchManager has been patched, but for those of a curious nature security firm Horizon3.ai has released a proof of concept for the exploit, as well as explaining how it works....
by Alison Raymond | Oct 17, 2022 | News
NHS: 10/17/22 The US Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2022-40684 to their Known Exploited Vulnerabilities Catalog. A proof-of-concept has also been made public by Horizon3.ai. Read the entire article here
by Alison Raymond | Oct 14, 2022 | News
Dark Reading: 10/14/22 James Horseman, exploit developer at Horizon3.ai says public data from GreyNoise—which tracks Internet scanning activity hitting security tools—shows the number of unique IPs using the exploit has grown from the single digits a few days ago, to...
by Alison Raymond | Oct 14, 2022 | News
Decipher: 10/14/22 “An attacker can use this vulnerability to do just about anything they want to the vulnerable system. This includes changing network configurations, adding new users, and initiating packet captures. Note that this is not the only way to exploit this...
by Alison Raymond | Oct 14, 2022 | News
Security Week: 10/14/22 Penetration testing company Horizon3.ai has made public a PoC exploit that allows an attacker to add an SSH key to the admin user, enabling the attacker to access the targeted system with administrator privileges. The firm has also...