BEGIN:VCALENDAR
VERSION:2.0
X-WR-CALNAME:BrightTALK Event
PRODID:-//BrightTALK//NONSGML BrightTALK Event Calendar//EN
CALSCALE:GREGORIAN
METHOD:REQUEST
BEGIN:VEVENT
UID:https://www.rapid7.com/about/events-webcasts/brighttalk?commid=671
 246
DTSTAMP:20260807T190725Z
ORGANIZER:MAILTO:no-reply@em.brighttalk.com
LOCATION:BrightTALK
URL:https://www.rapid7.com/about/events-webcasts/brighttalk?commid=671
 246&utm_campaign=user_webcast_register&utm_medium=calendar&utm_source=
 brighttalk-transact
DTSTART:20260812T020000Z
DTEND:20260812T021930Z
SUMMARY:Live webcast: [APJ] Real-World IR:  Uncovering FortiGate Attac
 k CVE-2025-59718
DESCRIPTION:Click here to attend: https://www.rapid7.com/about/events-
 webcasts/brighttalk?commid=671246&utm_campaign=user_webcast_register&u
 tm_medium=calendar&utm_source=brighttalk-transact\n\nPresenter: Eric C
 arey, Incident Responder, Rapid7 | Jose Romero, Detection & Response A
 nalyst, Rapid7\n\nNetwork edge devices like firewalls and VPN applianc
 es are prime targets for initial access, yet they remain some of the l
 east visible assets in modern IT environments. When attackers gain acc
 ess to these systems, the most important clues are often hidden within
  routine administrative activity, making effective investigation and t
 hreat hunting especially challenging. \n\nJoin Rapid7 incident respons
 e experts as they break down a retroactive threat hunt involving Forti
 Gate CVE-2025-59718. Drawing from real-world IR findings, we'll explor
 e how investigators reconstructed attacker activity, identified subtle
  indicators of persistence and connected seemingly benign events to un
 cover the broader scope of the attack. This session moves beyond explo
 it mechanics to focus on the investigative mindset, methodologies, and
  detection opportunities that matter most when auditing edge device co
 mpromises.\n\nWhy you should watch:\n– Identify the specific Indicator
 s of Compromise (IOCs) and log patterns associated with CVE-2025-59718
  exploitation\n– Understand why configuration exports and rogue accoun
 t creations are critical flags for perimeter persistence\n– See how pr
 oactive, retroactive threat hunts can catch sophisticated attackers be
 fore they impact internal operations
SEQUENCE:1786288267
END:VEVENT
END:VCALENDAR
