Fortinet has confirmed active exploitation of a FortiCloud SSO zero-day vulnerability affecting multiple Fortinet devices. The company has implemented temporary blocking measures to limit abuse while engineers work on a permanent fix. The vulnerability allows attackers to bypass authentication controls tied to FortiCloud Single Sign-On. This creates a serious risk for environments that rely on…
FortiCloud SSO exposure has placed tens of thousands of Fortinet devices at risk of remote compromise. Security researchers have identified more than 25,000 internet-facing systems with the FortiCloud Single Sign-On feature enabled, creating a large attack surface for threat actors. The exposed devices belong to organizations across multiple regions and industries. While FortiCloud SSO is…