Roiese: FortiBleed-Sourced Resale of Access to Taiwanese Enterprises
An initial access broker operating as Roiese is selling network access to 96 Taiwanese enterprises on the dark web and Telegram. Cross-referencing Hudson Rock's public dataset indicates the data most likely originates from the June 2026 FortiBleed credential leak. The list is the attacker's own claim, and the sample alone cannot prove that any organization was breached. Organizations whose supply chain touches the affected domains should immediately rotate the relevant credentials to cut off password-spray abuse.