× EU ICT Risk Newsroom DORA News On the Horizon ΑΙ Cybersec Space Cyber Alerts GDPR News EU CERT Advisories ICT Governance ESA/NCAs Contact

Hackers exploit FortiClient EMS flaw, deploy infostealer malware

Hackers are exploiting an authentication bypass vulnerability (CVE-2026-35616) in FortiClient Enterprise Management Server (EMS). This flaw is being used to deliver an undocumented credential stealer, which has been identified by the name EKZ. This malicious activity highlights a significant security risk for users of the FortiClient EMS system.

Hackers exploit FortiClient EMS flaw, deploy infostealer malware
Hackers are exploiting an authentication bypass vulnerability (CVE-2026-35616) in FortiClient Enterprise Management Server (EMS). This flaw is being used to deliver an undocumented credential stealer, which has been identified by the name EKZ. This malicious activity highlights a significant security risk for users of the FortiClient EMS system.

Subscribe for EU DORA and Banking ICT Risk news and insights