The recently discovered financially-motivated FortiBleed campaign has been attributed to INC and Lynx ransomware operations, indicating that the verified, stolen credentials were…
An information stealer deployed via exploitation of CVE-2026-35616 in Fortinet FortiClient EMS, targeting credentials from Chromium-based browsers and Firefox.
Cybersecurity researchers at Lumen's Black Lotus Labs have identified a significant expansion of the JDY botnet, a covert network linked to China-nexus…
Threat actors are actively exploiting three security vulnerabilities in Fortinet FortiSandbox, according to threat intelligence firm Defused Cyber. The flaws include CVE-2026-39813…
Active DirectoryAI-generated exploitcommand injectioncredential harvesting
A critical flaw in Fortinet FortiClient EMS (CVE-2026-35616, CVSS score: 9.1) exploited by threat actors to deploy EKZ Stealer for credential harvesting…