
FortiGuard Labs
@FortiGuardLabs
Followers
41K
Following
8K
Media
2K
Statuses
4K
#FortiGuardLabs is the global threat intelligence and research organization of @Fortinet.
Sunnyvale, CA
Joined May 2011
🎣 📧 Our #FortiMail IR team uncovered a new #phishing campaign targeting organizations in Colombia—disguised as official government communication. The attack leverages DCRAT, a Remote Access Trojan, using:. 🎭 Government impersonation.🧬 Steganography & obfuscation.📁
0
3
8
🥷 This stealthy #Havoc variant shows how far attackers will go to stay hidden inside critical infrastructure. Our researchers analyzed a malicious Havoc sample used in a long-term intrusion targeting Middle East CNI—injecting into cmd.exe via a disguised conhost.exe, and
1
3
8
🎣 📩 This new #phishing campaign will make you think twice before opening that tax email…. Our team uncovered evolving malware activity targeting Microsoft Windows users in Taiwan—including Winos 4.0—disguised as tax-related emails. The goal? Steal data for future attacks.
0
3
7
📂 One outdated Office app. One click. Full device compromise. Our team just uncovered a phishing campaign exploiting CVE-2017-0199 to drop FormBook #malware via Excel files—stealing credentials, keystrokes, and more. Details + IOCs: ←
0
3
6
🛑 📩 New #ransomware threat: VanHelsing. This #RansomwareRoundup highlights a high-severity variant targeting Microsoft Windows systems with file encryption, ransom demands, and public data leaks. 🔗 Read the full breakdown: ←
0
2
10
🎣 📩 #Phishing, persistence, and payloads—Horabot hits hard across Latin America. We recently observed a surge in Horabot malware campaigns, delivered via fake Spanish-language invoice emails targeting Spanish-speaking users. Full breakdown: 🔍
0
3
11
🚨 Just in: Our #FortiMail IR team uncovered a sophisticated RATty #malware campaign targeting Spain, Italy, and Portugal—bypassing filters with SPF evasion, geofencing, and abused file-sharing platforms. Read the full breakdown and defense steps: 👈
0
2
8
Cybercrime is evolving—your security needs to keep up the pace. 🔐 . ICYMI: Our 2025 Threat Landscape Report reveals how automation, #AI, and Crime-as-a-Service are accelerating attacks and shrinking the response window. Get the key insights:
1
5
14
RT @happygeek: It's just another manic #Tuesday, oh wait. By me @Forbes: The rise and rise of infostealer malware. #kudos @FortiGuardLabs….
0
2
0
🚨 A newly disclosed RCE vulnerability in Kubernetes Ingress-NGINX, "IngressNightmare" is putting containerized environments at serious risk of exploit—making tools like #FortiCNAPP essential for robust security. 🔗 Full breakdown and mitigation steps:
0
1
6
⚠️ Our #FortiGuardLabs' researchers have discovered #RustoBot—a Rust-based #malware targeting TOTOLINK devices via known command injection flaws. This variant marks a shift in tactics, exploiting CVEs for remote code execution. Learn more: 👈
0
2
10
🔎 Our Annual 2024 Outbreak Alerts Report is here, and it's packed with critical insights!. Learn how #FortiGuardLabs processed and blocked trillions of attack attempts and billions of #malware deliveries across its global footprint. 📊
0
6
16
🚨 Our #FortiGuardLabs team has uncovered a wave of malicious NPM packages. 👉 Published under the names tommyboy_h1 and tommyboy_h2, these packages use PayPal-themed names to appear legitimate while secretly exfiltrating sensitive system data.
0
3
9