Unknown group releases Fortinet config files and VPN ... - Heise
Security researchers and community members on platforms like Reddit have been mapping the leaked IPs to identify affected organizations. If you are an administrator of a FortiGate device:
: Immediately change all administrative and VPN passwords.
: Because these configuration files are not typically stored centrally by the manufacturer, security experts believe the leak originated from individual firewall exploits rather than a breach of Fortinet's own systems. Response and Remediation
: Examine your firewall logs for any unauthorized administrative access dating back to late 2022.
The leak contains approximately and VPN credentials from Fortinet FortiGate firewalls . Key Details of the Leak
So the data was probably stolen in the fall of 2022, but where and how did the unknown attackers obtain the sensitive information? heise online