Russian hacker uses multiple AI tools to breach hundreds of firewalls


  • Russian hacker brute-forces FortiGate firewalls using weak credentials
  • AI-generated scripts enabled data parsing, reconnaissance and lateral movement
  • The campaign targeted Veeam servers; the attacker left hardened systems

A Russian hacker was recently seen brute-forcing their way into hundreds of firewalls – but what makes this campaign really stand out is the fact that the apparently low-skilled threat actor was able to pull off the attacks using Generative Artificial Intelligence (GenAI).

In a new analysis, Amazon Integrated Security CISO CJ Moses explained how researchers observed a threat actor “systematically” scanning for exposed FortiGate management interfaces across ports 443, 8443, 10443 and 4443.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top