SecOps
FortiBleed: What the June 2026 Campaign Tells Us About Internet-Facing Appliance Risk
Mass credential exfiltration from internet-exposed FortiGate management interfaces. IOC analysis and validated patch-check methodology.
Vulnerability Research · Threat Intel · Detection
CVE research, threat intelligence, detection engineering, and security operations. The actual approach to confirming exposure and building tooling that works in production.
Mass credential exfiltration from internet-exposed FortiGate management interfaces. IOC analysis and validated patch-check methodology.
How CVE-2019-10768 prototype pollution enables authorization bypass in AngularJS 1.x — and a safe demonstration methodology.
CVSS 9.8, unauthenticated RCE via NEGOEX token parsing. A safe detection and exposure assessment script for security teams.