Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A critical authentication bypass vulnerability in Fortinet FortiClient Enterprise Management Server (versions 7.4.5 and 7.4.6) is being actively exploited to deliver EKZ, a previously undocumented infostealer. EKZ harvests browser-saved credentials, session cookies, and payment card data by disguising itself as a legitimate Fortinet software update pushed through VPN scripting workflows. Organizations running internet-exposed FortiClient EMS instances face immediate risk of credential theft and session hijacking that could enable broader network compromise.

Author

Tech Jacks Solutions