FortiClient EMS zero-day exploited, emergency hotfixes available (CVE-2026-35616)Help Net Security·Jun 24, 10:28 UTC · Jun 24, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-2164360
CVE-2026-35616: FortiClient EMS Flaw Actively Exploited in Malware AttacksSecurity Affairs·May 29, 09:02 UTC · May 29, 2026Vulnerability in the wildCVE-2026-3561660
CVE-2026-35616: Fortinet fixes actively exploited highSecurity Affairs·Apr 6, 13:07 UTC · Apr 6, 2026Vulnerability in the wildCVE-2026-35616CVE-2026-2164360
New infostealer reaches enterprise devices through FortiClient EMS vulnerabilityHelp Net Security·May 29, 00:00 UTC · May 29, 2026VulnerabilityCVE-2026-3561660
Fortinet Patches Actively Exploited CVE-2026The Hacker News·Apr 6, 17:04 UTC · Apr 6, 2026Vulnerability in the wildCVE-2026-35616CVE-2026-2164360
U.S. CISA adds a flaw in Fortinet FortiClient EMS to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 7, 09:02 UTC · Apr 7, 2026Exploit / PoC in the wildCVE-2026-3561660
⚡ Weekly Recap: Axios Hack, Chrome 0-Day, Fortinet Exploits, Paragon Spyware and MoreThe Hacker News·Apr 6, 12:46 UTC · Apr 6, 2026Malware in the wildCVE-2026-5281CVE-2026-3502CVE-2026-35616+1 CVEs60
June 2026 CVE LandscapeRecorded Future·Jul 17, 00:00 UTC · Jul 17, 2026Ransomware in the wildCVE-2026-35616CVE-2026-25939CVE-2020-17103+53 CVEs60
Week in review: Infostealer dropped via FortiClient EMS flaw, exploited Trend Micro Apex One flawHelp Net Security·May 31, 00:00 UTC · May 31, 2026Malware in the wildCVE-2026-45659CVE-2026-34926CVE-2026-3561660
Fortinet customers confront actively exploited zeroCyberScoop·Apr 6, 21:12 UTC · Apr 6, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-2164360
Singapore, US warn of latest Fortinet bug being exploited in wildThe Record·Apr 6, 16:25 UTC · Apr 6, 2026Exploit / PoC in the wildCVE-2026-3561660
Week in review: Axios npm supply chain compromise, critical FortiClient EMS bugs exploitedHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-21643CVE-2026-20093+2 CVEs160
FortiBleed Credential Theft Linked to INC and Lynx Ransomware OperationsThe Hacker News·Jul 2, 13:05 UTC · Jul 2, 2026RansomwareCVE-2026-3561660
Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last WeekThe Hacker News·Jun 19, 13:44 UTC · Jun 19, 2026Vulnerability in the wildCVE-2026-39813CVE-2026-39808CVE-2026-25089+1 CVEs60
Fortinet Warned as Three Critical FortiSandbox Bugs Come Under AttackSecurity Affairs·Jun 16, 14:26 UTC · Jun 16, 2026Vulnerability in the wildCVE-2026-39813CVE-2026-39808CVE-2026-25089+1 CVEs60
China-Linked JDY Botnet Expands to 1,500+ Devices for Cyber ReconnaissanceThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026MalwareCVE-2023-20118CVE-2022-32548CVE-2023-24738+2 CVEs60
JDY Botnet Evolves After KV Takedown, Targets Military NetworksSecurity Affairs·Jun 11, 07:46 UTC · Jun 11, 2026MalwareCVE-2026-3561635
April 2026 CVE LandscapeRecorded Future·Jun 3, 00:00 UTC · Jun 3, 2026Ransomware in the wildCVE-2026-33032CVE-2026-39987CVE-2009-0238+30 CVEs60
Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential StealerThe Hacker News·May 31, 12:13 UTC · May 31, 2026MalwareCVE-2026-3561660
PAN-OS GlobalProtect Authentication Bypass (CVE-2026The Hacker News·May 31, 12:13 UTC · May 31, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-3561660
Security Affairs newsletter Round 572 by Pierluigi PaganiniSecurity Affairs·Apr 12, 08:34 UTC · Apr 12, 2026Ransomware in the wildCVE-2026-35616CVE-2026-2576960
Fortinet Releases Emergency Patch After FortiClient EMS Bug Is ExploitInfosecurity Magazine·Apr 7, 09:26 UTC · Apr 7, 2026Vulnerability in the wildCVE-2026-35616CVE-2026-2164360