Fortinet
Network security company: FortiGate firewalls, SD-WAN and SASE.
Recent activity
Stories per weekLatest stories
10 most recent-
FortiSOAR 8.0 introduces native agentic AI framework with 19 pre-built autonomous security agents
Fortinet released FortiSOAR 8.0 with a native agentic AI framework featuring 19 pre-built security agents that autonomously investigate threats, execute multi-step response workflows, and act across security toolsets without waiting for analyst instruction. The release includes enhanced threat intelligence dashboards, enterprise-grade platform upgrades, and improved system reliability for SOC operations.
-
CrowdStrike, Palo Alto Networks, Fortinet stocks surge on AI threat recognition and agentic security demand
Cybersecurity stocks CrowdStrike, Palo Alto Networks, and Fortinet were among top S&P 500 gainers on September 14, 2026, with CrowdStrike rising 13.8% to all-time highs, Palo Alto gaining 13% (largest one-day increase since April 2025), and Fortinet up 9%. Analysts cite growing demand for integrated security platforms and agentic AI capabilities as agentic AI security market emerges.
-
CVE Brief September 10: Network Edge and Security Appliance Infrastructure Dominate Active Exploitation
Nine vulnerabilities show confirmed active exploitation on September 10, concentrating in Citrix NetScaler ADC, Cisco Secure Firewall Management Center, Fortinet FortiOS, Check Point Quantum Security Gateway, and N-able N-central. Critical remote-exploitation flaws in centralized management and remote access infrastructure require immediate administrative interface isolation pending patches.
-
Fortinet Advances Continuous AI Protection with the Acquisition of Virtue AI
Fortinet acquired Virtue AI, an innovator in AI runtime protection, automated AI validation, and security for autonomous AI systems. As organizations deploy AI applications and autonomous agents, attack surfaces expand to include prompts, models, agents, Model Context Protocol (MCP) tools, API calls, and AI infrastructure. Gartner forecasts the market for securing AI ecosystems to expand from $2.8 billion in 2026 to $16.4 billion by 2030.
-
Fortinet Releases Critical Authentication Patches for FortiWeb, FortiManager, FortiClient
Fortinet addressed critical authentication vulnerabilities in FortiWeb, FortiManager, and FortiClient via firmware/software updates, including CVE-2026-26035 (CVSS 9.8), CVE-2026-70468, and CVE-2026-70465. A misconfigured RADIUS wildcard in FortiWeb allows unauthorized administrator access when non-default settings are enabled.
-
Fortinet Q2 2026: SASE Firewall Grows 34%, AI-Driven SecOps Billings Climb 25%
Fortinet reported Q2 2026 revenue of $2.05 billion (+26% YoY) and non-GAAP EPS of $0.90, crushing analyst expectations with 41% earnings growth. Unified SASE billings grew 35%, AI-driven SecOps billings climbed 25%, and FortiSASE billings more than doubled, while OT billings surged over 55%.
-
Fortinet Launches FortiGate 1200G: Firewall-SASE Convergence with 397 Gbps Throughput
Fortinet announced the FortiGate 1200G series combining firewall and SASE capabilities with 397 Gbps throughput, supporting 10G, 25G, and 100G connectivity. The appliance integrates FortiGuard AI-powered security services and FortiAI for automated threat investigation, expected to ship Q3 2026.
-
FortiSandbox vulnerabilities exploited in wild: CISA orders July 19 patch deadline for critical command injection flaws
CISA confirmed active exploitation of two critical command injection flaws (CVE-2026-39808, CVE-2026-25089) in Fortinet's FortiSandbox threat-analysis appliance, ordering federal agencies to patch by July 19 or disconnect systems. FortiSandbox delivers security verdicts to the entire Fortinet stack—firewalls, email gateways, endpoints, SIEMs—so compromise means forging threat intelligence across all downstream security decisions.
-
FortiBleed: 86,644 Fortinet Firewalls Compromised — Large-Scale Credential Harvest Across 194 Countries
Active credential-harvesting campaign running since February 2026 affecting 86,644 internet-facing Fortinet FortiGate devices across 194 countries. Attack combines stolen configs from prior incidents, credential reuse, and offline GPU-based hash cracking against legacy SHA-256 hashes. Most victims never renamed default accounts or rotated factory passwords, making them vulnerable to brute force.
-
FortiBleed Signals End of Legacy SSL VPN Era; Industry Shift Toward Cloud SASE and Identity-First Zero Trust
Analysis of how FortiBleed (86,644 compromised devices, ~50% of internet-facing Fortinet firewalls globally) will accelerate market shift away from legacy SSL VPN concentrators toward cloud-delivered SASE and identity-centric zero trust. Industry recognizes that perimeter appliances storing administrative secrets are architectural liabilities in work-from-anywhere environments.
Coverage history
5 earlier storiesJune 2026 5
- Jun 24IBM X-Force Advisory: Active Exploitation of Fortinet FortiGate & Palo Alto GlobalProtect VPN CompromiseIBM Security
- Jun 21FortiBleed: 86,644 Fortinet Firewalls Compromised Across 194 Countries in Large-Scale Credential Theft CampaignSecurityWeek
- Jun 20Fortinet Launches FortiSOC Cloud Platform with Agentic AI for Autonomous Alert InvestigationHelp Net Security
- Jun 18Fortinet Introduces FortiSOC: Unified Cloud-Delivered SOC Platform with Agentic AIFortinet
- Jun 18FortiBleed: 73,932 Fortinet Firewalls Compromised via Configuration Exfiltration and Credential Hash CrackingBleepingComputer