From our Jun 2026 archive. Details reflect the original publication date.

What was reported

Reports concerning Fortinet firewalls put attention on devices that sit at the edge of organisational networks. These systems control access between internal services and the internet, so weaknesses can have consequences beyond the appliance itself.

The important distinction is between owning a security product and operating it securely. Configuration, administrator credentials, updates and the services exposed to the internet all affect the protection a device provides.

Why it matters

A firewall may stay in place for years while the people, applications and network around it change. That makes clear ownership important: someone needs to know which device is running, how it is configured and who is responsible for maintaining it.

An incident report should lead to a check of the exact model, software version and relevant vendor advisories. A product name alone does not establish that every installation is affected in the same way.

The practical takeaway

For teams managing these systems, the first questions are whether the asset inventory is accurate, whether administrative access is appropriately restricted and whether updates are being evaluated and applied.

Logs and recovery plans also matter. Finding unexpected activity is more useful when there is a clear process for investigating it and restoring service. Specific remediation should follow the vendor guidance for the affected version and configuration, rather than a general headline. For your own files, plan a separate backup as part of recovery preparation.

Back to news