Fortinet's emergency hotfix for CVE-2026-35616 blocked the attack path without fixing the flaw, and the complete patch that followed needed its own re-release.
Six agencies detailed Gunra's Fortinet entry, its forticloud-sync backdoor and an MFA bypass planted in a VDI server. Here is how to turn that into detection coverage.