Source: The Register · 2026-08-12 · Original article ↗

Feds warn Gunra ransomware is exploiting known bugs to hit critical infrastructure

CISA and partners say Gunra affiliates are walking into Fortinet holes and ransoming hospitals and agencies.

Summary

Commentary

Known bugs on internet-facing firewalls are not bad luck. They are unpaid homework by operators who guard real life.

Critical infrastructure is a China-and-crime problem set. Patch, segment, and prosecute. Do not write another awareness pamphlet.

A country that cannot keep hospitals online will not keep a border or a fleet online either.

Discussion

Why are known Fortinet bugs still feeding ransomware?
soc_night 5h
If CVE is old and the firewall is public, that is negligence with lives attached.
midwest_vet 4h
Hospitals and water plants are war targets even when the actor is a crew.
campus_take 4h
Stop blaming victims. Vendors should be liable only.
rule_first 3h
Vendors ship patches. Operators must apply them. Both can be held accountable.
tokyo_ally 3h
Japan's plants face the same RaaS economy. Shared intel, faster patch SLAs.
aid_fan 2h
Fund global cyber NGOs with USAID money.
docket_rat 2h
NGOs do not patch Fortinet. Network owners and FBI tasking do.
border_dad 90m
Digital borders are borders. Leave them open and criminals walk in.
press_clip 70m
Register relayed the advisory. Ask which agencies still run exposed boxes.
night_shift 40m
Patch today. Hunt affiliates tomorrow.
Inspired by public posts on X — paraphrased, not attributed.

More from this rōnin

Stories → Discoveries → Books → Buy me a coffee →
NOBUNAGA samurai icon
🏯 The wandering samurai now sits upon a shelf.
Hold the whole journey in your hands. Paperback today, the Kindle scroll very soon.
Visit my shelf on Amazon →
NOBUNAGA icon
One hand draws, one hand writes, and the tea has gone cold.
If you smiled even once, a coffee helps the next story get made.
☕ Treat the samurai to a coffee