Category: EN

CVE-2026-35616: FortiClient EMS Flaw Under Active Exploitation

A critical FortiClient EMS vulnerability (CVE-2026-35616) is under active exploitation, allowing unauthenticated attackers to bypass API protections. The post CVE-2026-35616: FortiClient EMS Flaw Under Active Exploitation appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read…

Google Brings Lazy Loading to Media Files in New Chrome Release

Google has announced a significant update for its Chrome browser, extending native lazy loading capabilities to audio and video elements. This highly anticipated feature aims to improve web performance, drastically save bandwidth, and offer subtle security benefits by controlling when…

The Google Workspace Blind Spot Every K-12 IT Team Misses

How DeForest School District Gained Visibility into Google Workspace and Transformed Their Security Workflow with Cloud Monitor When you’re responsible for keeping an entire school district’s technology running, “good enough” tools quickly become a problem. For Shelly Broberg, Network and…

GitHub-Backed Malware Spread via LNK Files in South Korea

Hackers are abusing Windows shortcut files and GitHub to run a stealthy, multi‑stage malware campaign against organizations in South Korea. The operation chains LNK files, PowerShell, and GitHub APIs to deliver surveillance tools while blending into normal enterprise traffic.The campaign…

Die Linke Confirms Data Stolen By Qilin

The Qilin ransomware group recently targeted the German socialist party Die Linke and is now threatening to release stolen information. This article has been indexed from CyberMaterial Read the original article: Die Linke Confirms Data Stolen By Qilin

Good Progress After Northern Ireland Attack

Efforts to restore Northern Ireland’s school computer network are moving forward steadily after a recent cyber attack forced a total system shutdown. This article has been indexed from CyberMaterial Read the original article: Good Progress After Northern Ireland Attack

EU Commission Breach Exposes Data

The European Commission recently suffered a cloud security breach attributed to the threat group TeamPCP, resulting in the exposure of data from 30 different EU entities. This article has been indexed from CyberMaterial Read the original article: EU Commission Breach…

BKA Identifies REvil Ransomware Leaders

German authorities have officially unmasked two high-ranking members of the notorious REvil ransomware gang after an extensive investigation by the Federal Criminal Police Office. This article has been indexed from CyberMaterial Read the original article: BKA Identifies REvil Ransomware Leaders

NY School Data Incidents Rise 72%

New York state schools experienced a significant surge in cybersecurity issues in 2025, with data incident reports jumping 72% over the previous year. This article has been indexed from CyberMaterial Read the original article: NY School Data Incidents Rise 72%

Fake GitHub CI Update Steals Secrets and Tokens

An automated campaign abusing GitHub’s pull_request_target workflow trigger to steal CI/CD secrets at scale. The attacker, using the handle ezmtebo, fired off more than 475 malicious pull requests (PRs) in just 26 hours, impersonating routine CI configuration updates to trick maintainers. The campaign…

Hackers Compromised ILSpy WordPress Domain to Deliver Malware

A new supply chain attack targeting developers after threat actors compromised the official WordPress domain for ILSpy on April 6, 2026. Instead of providing the legitimate software, the hijacked website began redirecting visitors to a malicious webpage to deliver malware.…