FortiGuard Labs Threat Research

From ClickFix to Command: A Full PowerShell Attack Chain

A regionally targeted PowerShell-based campaign used phishing lures, obfuscation, and RAT delivery to infiltrate Israeli organizations. Learn how the attack chain worked—and how Fortinet blocked it.

By Elad Damari August 11, 2025

Business and Technology

5 Steps to Building a Unified SASE Architecture

Fortinet helps you build a unified SASE strategy in five simple steps to consolidate tools, enforce identity-based access, and streamline operations at a global scale.)

By Nirav Shah August 08, 2025

Business and Technology

Lacework FortiCNAPP Award-Winning Approach Sets New Standard for Cloud Security

FortiCNAPP was named Best Cloud Workload Protection Solution at the 2025 SC Awards. Learn how its latest innovations deliver real-time threat detection, agentless Windows scanning, automated compliance, and unified cloud visibility.

By Tom Clavel August 07, 2025

FortiGuard Labs Threat Research

Unveiling a New Variant of the DarkCloud Campaign

FortiGuard Labs has uncovered a stealthy new variant of DarkCloud malware that leverages phishing emails, obfuscated JavaScript, PowerShell loaders, and process hollowing to exfiltrate credentials, payment data, and email contacts—all without dropping a file to disk.

By Xiaopeng Zhang August 07, 2025

FortiGuard Labs Threat Research

Malicious Packages Across Open-Source Registries: Detection Statistics and Trends (Q2 2025)

Malware threats continue to infiltrate open-source software registries. FortiGuard Labs’ Q2 2025 analysis reveals persistent tactics used in malicious NPM and PyPI packages, including credential theft, obfuscation, and install-time payloads. Learn how threat actors exploit OSS and how to stay protected.

By Jin Lee August 04, 2025