FBI Warns of Ongoing FortiBleed Attacks Locking Out FortiGate VPN Admins

Executive Summary

The FBI has issued a warning that FortiBleed attacks are still active, targeting exposed Fortinet FortiGate firewalls and SSL VPN gateways. The exploits lock out legitimate administrators, preventing them from accessing the VPN. The attacks exploit a buffer‑overflow vulnerability in FortiGate’s SSL VPN, allowing attackers to gain unauthorized access and disrupt administrative control.


Intelligence Metadata - Source Publisher: Bleeping Computer - Published Date: 2026-10-07T21:28:54+00:00 - Category: threat-intel

Original Description: The FBI is warning that FortiBleed attacks are still ongoing, targeting exposed Fortinet FortiGate firewalls and SSL VPN gateways and locking out legitimate administrators. [...]

"All children are artists. The problem is how to remain an artist once he grows up."

— Pablo Picasso
Source: Bleeping Computer