Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3192 articles · 168085 vulns · 37/41 feeds (7d)
← Back to list
EST
PRE-CVEEXPLOITED

Large-Scale Credential Attacks Against Fortinet, Sophos, and MSSQL Devices

60% confidence

Description

Unit 42 observed a credential theft campaign targeting Fortinet, Sophos, and MSSQL devices through password spraying and credential harvesting. Threat actors use a curated password list derived from previous breaches and exploit vulnerabilities to escalate privileges. Compromised credentials are sold on dark web forums. Mitigation includes multi-factor authentication, Zero Trust Architecture, and patching.

Related News (1 articles)

Tier C
Palo Alto Unit 428d ago
Threat Brief: Mitigating Large-Scale Credential Attacks
→ No new info (linked only)
CISA KEV❌ No
Actively exploited✅ Yes
PublishedJun 20, 2026
Last enriched8d ago
Tags
credential theftpassword sprayinginitial access brokerdark web
Trending Score11
Source articles1
Independent1
Info Completeness4/14
Missing: cve_id, vendor, product, versions, cvss, epss, cwe, kev, patch, iocs

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: reported
Confidence: 60%

Vulnerability Timeline

CVE Published
Jun 20, 2026
Actively Exploited
Jun 20, 2026
Exploit Available
Jun 20, 2026
Discovered by ZDM
Jun 20, 2026