FortiBleed: Get Your Firewall Management Interface Off the Internet Now [YouTube Release]

Additional Resources:

Connect With Us

Lawrence Systems Shirts and Swag

:t_shirt: Lawrence Systems

AFFILIATES & REFERRAL LINKS

Amazon Affiliate Store
:shopping_cart: Lawrence Systems's Amazon Page

UniFi Affiliate Link
:shopping_cart: Ubiquiti Store

All Of Our Affiliates help us out and can get you discounts!
:shopping_cart: Partners We Love – Lawrence Systems

Gear we use on Kit
:shopping_cart: https://kit.co/lawrencesystems

Use OfferCode LTSERVICES to get 10% off your order at
:shopping_cart: Tech Supply Direct - Premium Refurbished Servers & Workstations at Unbeatable Prices

Digital Ocean Offer Code
:shopping_cart: AI-Native Cloud | DigitalOcean

HostiFi UniFi Cloud Hosting Service
:shopping_cart: HostiFi - Fast and Reliable UniFi in the Cloud

Protect your privacy with a VPN from Private Internet Access
:shopping_cart: https://www.privateinternetaccess.com/pages/buy-vpn/LRNSYS

Patreon
:money_bag: https://www.patreon.com/lawrencesystems

Chapters

0:00 Exposed Right Now? Pause and Fix It
0:21 Not a Zero Day: What FortiBleed Is
0:37 Fortinet’s Advisory and What to Check
1:01 Patched but Still Backdoored
1:30 Stolen Configs and the SHA-256 Hashing Problem
2:23 How We Know: The Attacker’s Open Directory
3:00 The Attack Step by Step
3:56 Selling Initial Access and the Awareness Gap
4:48 Rented GPUs and Why Hashing Matters
5:28 Is Fortinet That Bad? The Track Record
8:40 Caught Off Guard Again, and Wrap-Up

How are they so prominent in the industry with all these exploits? University systems tout how wonderful these things are back and forth to each other all day long.

Good sales & marketing and a reseller program will outpace better products in the market.

2 Likes