
January 16th, 2025
A hacking group known as the "Belsen Group" has leaked configuration files, IP addresses, and VPN credentials for over 15,000 FortiGate devices. This data was leaked on the dark web, making it readily available to other cybercriminals. The leak is believed to be related to a 2022 zero-day vulnerability known as CVE-2022–40684, which was exploited before a fix was available. The leaked configuration files contain sensitive information such as private keys and firewall rules. In a separate incident, researchers discovered six vulnerabilities in the Rsync file-synchronizing tool, some of which…
The skinny
The skinny isn't ready yet — notes appear once the transcript is processed.