RandoriSec
Publications
Introduction FortiGate firewalls are first-choice targets for attackers; these devices are widely deployed by companies and are often Internet-facing to provide services such as VPN access. Recent years have shown many critical vulnerabilities affecting this solution, some of them (e.g. CVE-2024-21762, CVE-2023-27997) allowing pre-authentication remote code execution (RCE).
That’s why FortiGate is an important subject for vulnerability researchers.
Since last year, the vendor has made several attempts to make access to its firmware internals harder by introducing several cryptographic layers.