Cybersecurity Threats and Updates: Multiple Vulnerabilities Exposed
Recent Breaches and Fixes: FortiGate, Microsoft, AWS, and Salesforce
Multiple cybersecurity threats have been exposed in recent days, affecting various companies and platforms, including Fortinet's FortiGate, Microsoft's AutoGen Studio, AWS, and Salesforce.
Security firm SOCRadar has revealed that the FortiBleed campaign, which targeted Fortinet FortiGate devices, used custom sniffers to harvest authentication secrets from compromised firewalls and steal credentials. The operation targeted over 430,000 FortiGate firewalls worldwide and has been active since at least February 2026.
Meanwhile, Microsoft has confirmed that Windows 11 version 26H2 will be the next feature update and that devices running Windows 11 24H2 and 25H2 will be able to upgrade using a small enablement package. The company has also fixed a vulnerability in its AutoGen Studio interface for prototyping AI agents, which could have let attackers manipulate an agent into executing arbitrary commands on its host system.
AWS has announced Continuum, a new service designed to continuously discover, investigate, and remediate vulnerabilities in enterprise environments. The service aims to help enterprises move findings through the entire remediation lifecycle.
In another development, an attacker broke into competitive-intelligence vendor Klue, stole OAuth tokens its customers use to connect to Salesforce and other platforms, and accessed data across multiple customer environments. Klue has revoked customer OAuth tokens and disabled affected integrations.