The infamous Black Basta ransomware actors created an automated framework for brute-forcing firewalls, VPNs, and other edge networking devices.
Their tool, called BRUTED, has been in use since 2023 and is used for large-scale credential stuffing and brute-force attacks.
BRUTED targets several VPNs and firewalls, including SonicWall NetExtender, Palo Alto GlobalProtect, Cisco AnyConnect, and more.
To protect against such attacks, businesses should ensure strong, unique passwords, enforce multi-factor authentication, and apply zero-trust network access.