85Articles
7Categories
2026-04-06Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-35616 - Fortinet FortiClient EMS Improper Access Control Vulnerability This type of vulnerability is a frequent attack vector for malicio…
KEV
🚨
CVE-2026-35616: Fortinet FortiClientEMS improper access control vulnerability exploited in the wildExploitation has been observed for CVE-2026-35616, a critical improper access control zero-day vulnerability affecting Fortinet FortiClientEMS devices. Key takeaways: CVE-2026-35616, an improper access control vulnerability, has been exploited in the wild as a zero-day.   Pu…
KEV
🐛
2,000+ FortiClient EMS Instances Exposed Online as Attackers Exploit Active RCE Flaw
🐛
Critical Dgraph Database Flaw Allowed Attackers to Bypass Authentication
🐛
6 ways attackers abuse AI services to hack your business
🐛
New multilingual severity classifiers for vulnerability analysis
🐛
Iranian-Affiliated Cyber Actors Exploit Programmable Logic Controllers Across US Critical Infrastructure
KEV
🐛
ZDI-26-257: (0Day) Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
🐛
ZDI-26-256: (0Day) Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
🐛
ZDI-26-255: (0Day) Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
🐛
ZDI-26-254: (0Day) Labcenter Electronics Proteus PDSPRJ File Parsing Type Confusion Remote Code Execution Vulnerability
⚠️
Germany Doxes “UNKN,” Head of RU Ransomware Gangs REvil, GandCrab
⚠️
36 Malicious Strapi npm Packages Deliver Redis RCE, Persistent C2 Malware
⚠️
Google DeepMind Flags New Threat as Malicious Web Content Puts AI Agents at Risk
⚠️
Hackers Breach ILSpy WordPress Domain to Deliver Malware
⚠️
Apache Traffic Server Flaw Allowed Attackers to Trigger Denial-of-Service Attacks
⚠️
How often are redirects used in phishing in 2026?, (Mon, Apr 6th)
⚠️
Escaping the COTS trap
⚠️
Battling payment fraud with tokenization and executive interviews from RSAC 2026 - ESW #453
⚠️
Fortinet Rushes Emergency Fixes for Exploited Zero-Day
⚠️
Google’s Bug Bounty Program Hits Record $17 Million in 2025 Payouts
⚠️
Authentication is broken: Here’s how security leaders can actually fix it
⚠️
Critical Claude Code Flaw Silently Bypasses User-Configured Security Rules
⚠️
North Korea’s Modular Malware Strategy Hides Attribution, Defies Takedowns
⚠️
North Korean hackers abuse LNKs and GitHub repos in ongoing campaign
⚠️
Hackers exploit React2Shell in automated credential theft campaign
⚠️
A Vulnerability in Fortinet FortiClientEMS Could Allow for Arbitrary Code Execution
⚠️
Your KnowBe4 Fresh Compliance Plus Content Updates | March 2026
⚠️
Google Brings Lazy Loading to Media Files in New Chrome Release
⚠️
⚡ Weekly Recap: Axios Hack, Chrome 0-Day, Fortinet Exploits, Paragon Spyware and More
⚠️
Google DeepMind Researchers Map Web Attacks Against AI Agents
⚠️
CISA orders feds to patch Fortinet flaw exploited in attacks by Friday
KEV
⚠️
North Korea’s hijack of one of the web’s most used open source projects was likely weeks in the making
⚠️
Storm-1175 focuses gaze on vulnerable web-facing assets in high-tempo Medusa ransomware operations
⚠️
Microsoft links Medusa ransomware affiliate to zero-day attacks
⚠️
New Mexico’s Meta Ruling and Encryption
⚠️
Disgruntled researcher leaks “BlueHammer” Windows zero-day exploit
⚠️
Microsoft links Medusa ransomware affiliate to zero-day attacks
⚠️
[local] Desktop Window Manager Core Library 10.0.10240.0 - Privilege Escalation
⚠️
[webapps] WBCE CMS 1.6.4 - Remote Code Execution
⚠️
[webapps] RiteCMS 3.1.0 - Authenticated Remote Code Execution
🔥
Threat Actors Weaponize Fake Microsoft Teams Domains to Target Users
🔥
BKA Identifies REvil Leaders Behind 130 German Ransomware Attacks
🔥
Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR Tools
🔥
Alleged REvil Leader ‘UNKN’ Identified by German Authorities in New Takedown Effort
🔥
Drift Protocol Hit in $286M Suspected North Korea-Linked Crypto Heist
🔥
Trojanized PyPI AI Proxy Steals Claude Prompt, Exfiltrates Data
🔥
Why Simple Breach Monitoring is No Longer Enough
🔥
Social Engineering Fraud Explodes
🔥
Multi-OS Cyberattacks: How SOCs Close a Critical Risk in 3 Steps
🔥
Why Simple Breach Monitoring is No Longer Enough
🔥
New GPUBreach attack enables system takeover via GPU rowhammer
🔥
German authorities identify REvil and GangCrab ransomware bosses
🔥
German authorities identify REvil and GandCrab ransomware bosses
🕵️
ISC Stormcast For Monday, April 6th, 2026 https://isc.sans.edu/podcastdetail/9880, (Mon, Apr 6th)
🕵️
ResokerRAT Hijacks Telegram API to Command Infected Windows PCs
🕵️
Poisoned Axios Package Spreads Cross-Platform Malware via Phantom Dependency
🕵️
Google Wants to Transition to Post-Quantum Cryptography by 2029
🕵️
North Korean Hackers Target High-Profile Node.js Maintainers
🕵️
Guardarian Users Targeted With Malicious Strapi NPM Packages
🕵️
Fake GitHub CI Update Steals Secrets and Tokens
🕵️
GitHub-Backed Malware Spread via LNK Files in South Korea
🕵️
Traffic violation scams switch to QR codes in new phishing texts
🕵️
How LiteLLM Turned Developer Machines Into Credential Vaults for Attackers
🕵️
Detection and Prevention of Misdirected Emails: What to Know
🕵️
Hackers Using Fake "Microsoft Teams" Domains to Attack Users Via Malicious Payload
🕵️
Watch this video of how a job interviewer exposes a North Korean fake IT worker
🕵️
Adobe modifies hosts file to detect whether Creative Cloud is installed
🕵️
Inside an AI‑enabled device code phishing campaign
🕵️
Your Behavior Can Expose Fraud
🌐
Convicted spyware maker Bryan Fleming avoids jail at sentencing
🌐
A week in security (March 30 – April 5)
📡
Ticket savings of up to $500 this week for TechCrunch Disrupt 2026
📡
Drift $280M crypto theft linked to 6-month in-person operation
📡
DPRK-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South Korea
📡
Microsoft removes Support and Recovery Assistant from Windows
📡
Microsoft fixes Classic Outlook bug causing email delivery issues
📡
Anthropic Claude Mythos Preview: The More Capable AI Becomes, the More Security It Needs
📡
[local] is-localhost-ip 2.0.0 - SSRF
📡
[webapps] Fortinet FortiWeb v8.0.1 - Auth Bypass
📡
[local] Windows Kernel - Elevation of Privilege
📡
[webapps] ASP.net 8.0.10 - Bypass
📡
[webapps] Grafana 11.6.0 - SSRF
📡
[webapps] Zhiyuan OA - arbitrary file upload leading
📡
[webapps] WordPress Madara - Local File Inclusion