Fortinet customers confront actively exploited zero-day, with a full patch still pending

2026-04-07T08:51:47Z4b057f16635196377538f0d3673ab7e219c20b604abdb95ac1cfbaf14510475b
CISACVE-2026-35616TA416actively-exploitedakiracyberespionagecybersecurity-workforceelectionsforticlientfortinethandalahotfixparagonpatch-pendingpcTattleTaleransomwarespywarestalkerwarestrykervoter-databasevulnerabilitywiperzero-day

What happened

News roundup: Fortinet customers face an actively exploited FortiClient EMS zero-day (CVE-2026-35616) — two critical defects have been weaponized in the wild; Fortinet has issued an immediate hotfix while a full patched release is still pending and users are urged to apply mitigations now. Other notable items: pcTattleTale developer sentenced (stalkerware case), proposed Trump budget would cut CISA funding, Senator Wyden warns SSA involvement in a federal voter database, House Democrats criticize ICE use of Paragon spyware, Halcyon reports Akira ransomware can reach encryption in under an hour

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cyberscoop
Record identifier
4b057f16635196377538f0d3673ab7e219c20b604abdb95ac1cfbaf14510475b
Enrichment time
2026-04-07T08:51:47Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Fortinet customers confront actively exploited zero-day, with a full patch still pending · Baitaphish