Product
Fortinet FortiManager Security Feature Bypass Vulnerability
1 CVEA remote, unauthenticated attacker can exploit a vulnerability in Fortinet FortiManager to bypass security controls, necessitating immediate monitoring of management interface traffic.
Fortinet Authentication Vulnerabilities in FortiWeb and FortiManager
2 TTPs 3 CVEsFortinet has patched multiple high-severity vulnerabilities, including authentication bypasses in FortiWeb and FortiManager, alongside a buffer overflow in FortiClient for Windows.
Fortinet FortiAnalyzer and FortiManager Vulnerability Allows Denial of Service
2 rules 1 TTPA remote, authenticated attacker can exploit a vulnerability in Fortinet FortiAnalyzer and FortiManager to perform a denial-of-service attack, disrupting normal operations.
DNS Kerberos Coercion Attempt Detection
3 rules 3 TTPs 4 CVEs 4 IOCsThis brief details the detection of DNS-based Kerberos coercion attacks, where adversaries inject marshaled credential structures into DNS records to spoof SPNs and redirect authentication, as seen in CVE-2025-33073, using Suricata and Sysmon event ID 22.