CyberSecurity news

FlagThis

@gbhackers.com - 20d
A massive brute force password attack is currently targeting a wide range of networking devices, including VPNs and firewalls from Palo Alto Networks, Ivanti, and SonicWall. The attack, which began recently, utilizes almost 2.8 million IP addresses in an attempt to guess the credentials for these devices. Once access is gained, threat actors can hijack devices or gain access to entire networks.

A brute force attack involves repeatedly attempting to log into an account or device using numerous username and password combinations until the correct one is discovered. This type of attack highlights the importance of strong, unique passwords and multi-factor authentication to protect sensitive systems and data from unauthorized access. The attack was first reported by BleepingComputer on February 8, 2025.
Original img attribution: https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjbc5thN1B6xqnI4R_JpA86o4O6T2ZEDp3nLzn0VvvNGoMrd-DGy48ZA5YcPrYeTPv9Pda12GmS2vOi_5wSlDa-b4AsmOW-ySkxZCGQFzhtuf5AsBXRnMI3mX0Are8Yie2y6rZBL64_gQGO1ZNhW16eBdrjxgYnUcJEb8AEvHhd797iWfsiUTqwnwkI6B6w/s1600/brute%20force%20attack%20-1.webp
ImgSrc: blogger.googleu

Share: bluesky twitterx--v2 facebook--v1 threads


References :
  • BleepingComputer: A large-scale brute force password attack using almost 2.8 million IP addresses is underway, attempting to guess the credentials for a wide range of networking devices, including those from  Palo Alto Networks, Ivanti, and SonicWall.
  • www.bleepingcomputer.com: Massive brute force attack uses 2.8 million IPs to target VPN devices
  • Anonymous ???????? :af:: A large-scale brute force password attack using almost 2.8 million IP addresses is underway
  • BleepingComputer: Massive brute force attack uses 2.8 million IPs to target VPN devices
  • Troy Hunt: Infosec.exchange post about the large-scale brute-force attack targeting networking devices.
  • bsky.app: BleepingComputer post on the brute-force attack targeting Palo Alto, Ivanti and Sonicwall devices.
  • bsky.app: BleepingComputer mentions the attack in a news summary.
  • www.scworld.com: Millions of IP addresses leveraged in ongoing brute force intrusion
  • gbhackers.com: Massive brute force attacks targeting VPNs and firewalls have surged in recent weeks, with cybercriminals using as many as 2.8 million unique IP addresses daily to conduct relentless login attempts.
  • securityboulevard.com: Security Boulevard report on Major brute force attack
Classification:
  • HashTags: #BruteForce #VPN #Firewall
  • Company: ShadowServer
  • Target: Networking Devices
  • Product: Palo Alto Networks, Ivanti, SonicWall
  • Feature: Brute Force
  • Type: Hack
  • Severity: Medium