Kevin Beaumont on Nostr: One other side effect of the FortiGate config incident is there’s several thousand ...
One other side effect of the FortiGate config incident is there’s several thousand site to site IPsec VPN configs allowing you to straight up join to the internal network of large orgs.
So even if you weren’t popped, the threat actor can pop up on your network.
{
"id":"b19716db0bf001d52c3ead4d5da8be3fe074e8bd31fa2d8f20f82dbccf85667d",
"pubkey":"f6870afcde4480ec8508f50304859e14a51309ff24ab3f0f862c52bdc4af8747",
"created_at":1737580334,
"kind":1,
"tags": [
[
"e",
"eb166a9a81a88f62963c7b3b3aead200ca63d8778d691458028de93b2d2d7211",
"wss://relay.mostr.pub",
"reply"
],
[
"imeta",
"url https://cyberplace.social/system/media_attachments/files/113/874/064/583/886/277/original/16b7f0031e6bd377.mp4",
"m video/mp4",
"dim 494x276",
"blurhash UWIO5{-UD*JB~Ux]o}t8%L%Mtlt7t7x]kDn$"
],
[
"proxy",
"https://cyberplace.social/users/GossiTheDog/statuses/113874064792010448",
"activitypub"
]
],
"content":"One other side effect of the FortiGate config incident is there’s several thousand site to site IPsec VPN configs allowing you to straight up join to the internal network of large orgs. \n\nSo even if you weren’t popped, the threat actor can pop up on your network.\n\nhttps://cyberplace.social/system/media_attachments/files/113/874/064/583/886/277/original/16b7f0031e6bd377.mp4",
"sig":"a22b12cc48f860d0af548ae71c6ef0d832bc457a0ad7feef00d9bc9904db2591deb3eee18c0670e3c7ed93178d7e0e53a0f220dc190feb813fb416175e673ffe"
}