Skip to content Skip to navigation Skip to footer

FortiGuard Labs

Fortinet Threat Intelligence and Research Organization

Latest Outbreak Alert News


Visibility + Innovation = Actionable Threat Intelligence

FortiGuard Labs is the threat intelligence platform and research organization at Fortinet. It is comprised of experienced threat hunters, researchers, analysts, engineers, and data scientists. Its mission is to provide customers with the industry’s best threat intelligence platform to protect them from malicious cyberattacks. It has three areas of focus:

  • FortiGuard Labs – Its threat intelligence efforts keep Fortinet security products armed with the best threat identification and protection information available. Its threat research keeps our customers informed of the latest threats, campaigns, actors, and trends so they can take proactive measures to better secure their environments.
  • FortiGuard Security Subscriptions – These are different security options you can choose to add on to your Fortinet devices, enabling you to tailor your security choices to your environment. FortiGuard Labs provides the security detections and prevention capabilities to these security options.
    Download the Data Sheet

FortiGuard Security Services

To break the attack sequence and protect your organization, you need to detect and rapidly adjust your security posture to newly discovered attacks across ever expanding attack surface.

FortiGuard Security Services is a suite of market-leading, AI-enabled security capabilities that provide  content, web, device, and user security that continuously assesses risks and automatically adjusts protection across the Fortinet Security Fabric. This enables coordinated and consistent real-time defense for the latest attacks


Why FortiGuard

security fabric SMB


You can only protect against what you see, and in places that you can influence the enforcement in real time. We close the security gaps.

  • Be everywhere. Coordinated and consistent security detection and response across the attack surface and cycle with the largest portfolio of products supporting hybrid models of hardware, software and as-a-service.
  • Impact everything. The largest technology and threat intelligence ecosystem with native and API based integration.

Quality of the Analysis

Quality of the analysis

AI and analytics systems are only as good as the inputs and training that go into them. We deliver credible security analysis results based on a unified data set.

  • Trainers matters. Our AI is trained by one of the largest and most experienced security research organizations in the industry the FortiGuard Labs.
  • Data matters. Our AI is trained on one of the largest and most diverse datasets in the industry spanning intelligence from endpoints, networks and clouds.
  • Scale matters. Our platform ingests and analyzes more then 100 billion events every day, on average, to deliver over one billion security updates daily across the Fortinet security Fabric and ecosystem
  • Community matters. We see and protect you against millions of events from our global fabric deployments and from our partners preventing a “second” Patient Zero for community known threats

Time to protection for newly discovered threats

You can only break the attack sequence if you can update your security posture, in time. We deliver coordinated and automated protection in near real time.

  • Break the Sequence. We generate in near real time holistic set of new protection for all relevant security technologies, enabling coordinated enforcement that is tailored for the attack sequence
  • Have the Reach. We automatically distribute the newly created protections, adjusting the Fortinet Security Fabric and ecosystem with coordinated market leading defense
  • Empower. We continually invest in advanced SOC and NOC tools, training and capabilities making sure that your teams are set for success.


Faster time to activation is key in supporting the pace of digital innovation. We deliver easy to choose, attach and consume high performing security.

  • Operation. Mixes and match security capabilities to fit your diverse set of use cases across the organization, attached them to the desire product across HW, VM and As-A-Service models. Rest assure that they are all designed from the ground up to work together in synergy. Leverage our Fabric management center to gain unified view across your deployment.
  • Purchasing. We provide you with the freedom of choose a-la-care, optimized bundles for NGFW, cloud, mail, endpoint, etc. AND Enterprise Agreement.
Learn more

Integrated Market Leading Security Capabilities

Web Security

Optimized to monitor and protect data and applications against web-based attack tactics while assisting you with meeting compliance

Content Security

Optimized to monitor and protect against file-based attack tactics, while assisting you with meeting compliance

Device Security

Optimized to monitor and protect against device and vulnerability -based attack tactics while assisting you with meeting compliance.

Advanced Tool

From our threat researchers to yours. Continuously evaluate and advanced your security posture and set your team for success

Learn more about our market leading security capabilities
& How we deliver our context aware coordinated security across our Fabric and Ecosystem

Proactive Threat Research


In-depth research for security professionals on new malware and variants, zero-day exploits, targeted systems, and critical vulnerabilities being exploited in the wild. They include detailed analysis of the malware/vulnerability/exploit, the impact of the situation, mitigation suggestions, and any Fortinet product-based protections that are available.


Threat Signals provide insight on emerging issues within the threat landscape. They offer technical details about the issue, mitigation recommendations, and a perspective from the FortiGuard Labs team in an FAQ format.


Researchers proactively analyze third-party products and software applications for weaknesses and exploitable vulnerabilities. When a vulnerability is found, the team creates protective measures and updates the appropriate elements of the Fortinet Security Fabric. FortiGuard Labs is an industry leader in zero-day discoveries with over 1,000 vulnerabilities discovered to date.


FortiGuard Labs uses its industry-leading global infrastructure of threat sensors, honeypots, and collectors to provide a weekly recap of the incidents and threats trending in cyberspace.


Threat experts from FortiGuard Labs provide insight and commentary on trending threat intelligence issues and the ever-evolving cyber threat landscape.


Experts from FortiGuard Labs discuss topical and trending cybersecurity subjects, providing insight from their back-end intelligence operations and the extensive experience of the team.

Why FortiGuard Labs

What sets the FortiGuard Labs team apart are three key differentiators: breadth of visibility into the threat landscape, ground-breaking use of innovation, and rapid delivery of actionable threat intelligence to the Fortinet Security Fabric. Some specifics:

What sets the FortiGuard Labs team apart are three key differentiators: breadth of visibility into the threat landscape, ground-breaking use of innovation, and rapid delivery of actionable threat intelligence to the Fortinet Security Fabric. Some specifics:

  • Telemetry gathered from Fortinet’s millions of sensors (5.6M+ devices deployed globally) give FortiGuard Labs visibility into the actual real-world threats our customers face and covers threats found in the network, endpoint, IoT devices, in emails, applications, and web threat vectors.
  • The Fortinet Distribution Network is an innovative bi-directional network that both collects telemetry threat data from Fortinet and was also designed to efficiently distribute actionable security protection updates to the Fortinet Security Fabric components deployed in customer networks around the world several times each day.
  • Zero-day research demonstrates the effectiveness of our research and provides proactive analysis and actionable intelligence on discovered vulnerabilities before they become discovered exploits. The over 900 discovered vulnerabilities to date set us apart from of our competitors.
  • Our industry and information-sharing leadership comes out of our early use or AI and the belief that sharing intelligence with other threat intelligence organizations improves protection for customers as well as the effectiveness of the entire cybersecurity industry. Highlights include:
    • Co-founded the Cyber Threat Alliance (CTA) in 2014
    • Co-founder of the World Economic Forum’s Center for Cybersecurity created in 2018
    • Member of the computer incident response organization FIRST since 2012
    • Contributor to the development of STIX/TAXII protocols, as well as the MISP platform. Receives and processes over 200 individual sources of threat intelligence from partners

Independent Third-party Validation

Independent, third-party tests provide a critical and impartial measure of the quality of a product, and a reliable reference for customers making a purchase decision. Fortinet is committed to participation in unbiased credible testing so customers can see how Fortinet solutions compare to other vendors and select the solution that is right for their needs.

See Product Certifications

FortiGuard Security Subscriptions

Want to know how you can leverage FortiGuard Labs to optimize performance and maximize the protection of your Fortinet solutions? Simply add the appropriate FortiGuard Subscriptions and Services to your Fortinet Security Fabric deployments. Available as both individual and bundled subscriptions.

AI-Driven Security Operations

Want more information about FortiGuard Labs’ proven artificial intelligence and machine learning systems ?



FortiGuard Labs Threat Map