“Olá, Prepare Seu Conjunto! 50k Firewalls Fortinet Totalmente Abertos – GadgetLad”

Fortinet Firewalls Wide Open – Get It Together, Lads

The Vulnerability Wide as the Tyne Tunnel

Listen up: Fortinet’s management interfaces are as safe as leaving your front door ajar with a mat saying “Welcome, burglars.” A zero-day vulnerability – CVE-2023-XXXX for those who like the details – was disclosed last week, and surprise, surprise, nearly 50,000 firewalls are still out there exposed like a Geordie lad at the Bigg Market in January.

If you’re sitting there thinking, “It should be alright,” it won’t be. This exploit allows hackers to treat your firewall like their personal amusement park, and they’ll be in faster than you can say “Newcastle Amber Ale.”

Patch Your Gear, Ya Mugs!

Now, Fortinet did their part – fair play to them – by rolling out a patch on October 6. But here we are, a week later, and seemingly half the Internet can’t be bothered to press update. What are you lot doing? Binge-watching Netflix and munching crisps instead of securing your firewalls? Sort it out.

Seriously, come on, it’s not complex. Firewalls are meant to protect you – it’s right there in the name, isn’t it? Neglecting them is like hiring a bouncer for your bar and letting him take tea breaks during closing hours. Pointless.

Problems Brewing in Cyberspace

Some brainiac over at Shodan (a search engine for devices linked to the Internet – not some mystical hero in a Marvel flick) probed the web, and guess what? They discovered 50,000 Fortinet firewalls still vulnerable. That’s like finding out half the town left their cars unlocked with the keys dangling in the ignition. It’s a hacker’s paradise.

Fortinet’s advisory mentioned that attackers could exploit this flaw to execute unauthenticated code or, as I prefer to call it, the “You’ve Just Been Robbed Online Special.” If you’re not updating your gear, you’re practically rolling out the welcome mat for hackers to bust in.

Whose Fault Is It: You, Fortinet, or Both?

Look, I’m not saying Fortinet’s infallible. They’ve had their fair share of blunders in the past. But when they provide you with the means to rectify an issue, and you still can’t be bothered, who’s truly to blame? It’s like whining about the Council when your bin’s overflowing because you ignored collection day.

That said, Fortinet could definitely be a bit more forceful in shouting “PATCH THIS NOW OR ELSE” to their users. Perhaps they need a Geordie on their crew to knock some sense into people. (Hit me up, Fortinet. I’m cheap – just cover my pints on the weekends.)

How to Protect Yourself from Digital Pickpockets

If you genuinely want to steer clear of becoming the next target of this exploit, here’s what you need to do:

1. Update your Fortinet gear. Do it. Now. Go on, I’m waiting.
2. If you’re not utilizing external management interfaces, turn them off. There’s no need for access to your firewall from halfway around the world unless it’s for nefarious purposes.
3. Change your passwords. Make them better than “password123.” Consider using a quality password manager while you’re at it.
4. Have a pint afterward. You’ve earned it.

Fortinet’s Reaction: Technical Jargon or Just Empty Words?

Fortinet’s advisory was a whole lot of “blah, blah, memory corruption vulnerability, blah.” The typical jargon designed to put you to sleep before you get to the key points. Here’s the TL;DR for the average person: If you don’t patch your firewall, bad actors will seize control of it and do nasty things. It’s as straightforward as that.

They’ve outlined steps to rectify it, but let’s be honest – if you’re still reading this and haven’t patched yet, you probably need a bigger nudge than I can provide via this blog.

Big Numbers, Bigger Issues

Researchers estimate that at least 40,000 to 50,000 units are exposed. That’s about the same number of folks you’d find at St James’ Park when Newcastle’s putting on a show. Only instead of cheering fans, this is a gathering of unhappy sysadmins who are about to face a very tough day when hackers start knocking.

Summary: Patch Up or Stay Quiet

I don’t want to be dramatic, but if you’re operating a Fortinet firewall and you haven’t patched it yet, you’re less clever than someone trying to navigate Westgate Hill in the snow without winter tyres. Get it together, patch your gear, and let’s not make it easy for the bad guys, alright? Or don’t – it’s your loss. But if it all goes wrong, don’t come crying to GadgetLad.

Swing by gadgetlad.co.uk if you want the latest tech news, reviews, and me rambling about various topics!