Germán Fernández[verified]@1ZRR4HGeneral
The tweet references two FortiWeb CVEs and suggests a potential exploitation platform with an uncertain C2 server, but it lacks specific technical, patch, or active exploitation details.
Team Cymru Research[verified]@teamcymru_S2Active Exploitation
The tweet enumerates the top 25 CVE exploitation attempts identified by Team Cymru, showing active exploitation of those vulnerabilities over a 14‑day period.
إبراهيم بوحيمد | Ibrahim Buhaimed[verified]@buhaimediPoC
Researchers discovered multiple PoC repositories (ChocoPoC) that include severe CVEs such as FortiWeb CVE‑2025‑64446, React2Shell CVE‑2025‑55182, MongoBleed CVE‑2025‑14847, and PAN‑OS CVE‑2026‑0257.
Rıdvan Yağlı[verified]@ridvanyagliPoC
The tweet announces CVE-2025–64446, providing a proof-of-concept for an authentication-bypass flaw in FortiWeb with a link to the code, but it lacks exploitation details, patch info, or evidence of active attacks.
BT Haberler[verified]@BTHaberlerActive Exploitation
ChocoPoC revealed that fake PoC exploits for CVE‑2025‑64446 and CVE‑2026‑50751 are actively used in the wild, deploying a RAT that steals credentials and can run arbitrary Python code.
Crowdfense@crowdfenseGeneral
The feed lists three CVEs with brief vulnerability type descriptors, offering no deeper technical details, exploit availability, or mitigation information.
reverseame@reverseameDisclosure
An authentication bypass flaw (CVE-2025-64446) in Fortinet FortiWeb is disclosed, involving path traversal and user impersonation possibilities.
BBWriteup@bbwriteupPoC
A proof‑of‑concept for CVE‑2025‑64446, an authentication bypass flaw in FortiWeb, is shared via a Medium post.