Cybersecurity briefing — 2026-04-04
Here's your PlainSec briefing for Saturday, April 4th.
Trivy supply chain attack enabled European Commission cloud breach
Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials
Chinese Hackers Exploit TrueConf Auto-Update to Deploy Espionage Tools
Active Zero-Day in FortiClient EMS Enables Unauthenticated API Bypass and Code Execution
Active Dawn Zero-Day in Chrome Enables Sandbox Escape
Axios npm Maintainer Account Hijacked to Push Self-Cleaning RAT
New Progress ShareFile flaws can be chained in pre-auth RCE attacks
Chinese APT TA416 Resumes Stealthy Espionage on European Diplomats
FCC Targets Voice Provider for Routing Fraudulent Financial Robocalls
AI-Driven Actor Ran Six Waves of GitHub Actions pull_request_target Exploits
Mercor Data Exfiltrated in LiteLLM Supply Chain Attack
Qilin Ransomware Targets German Political Party with Data Theft and Extortion
Cybersecurity briefing — 2026-04-04
Here's your PlainSec briefing for Saturday, April 4th.
Trivy supply chain attack enabled European Commission cloud breach
Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials
Chinese Hackers Exploit TrueConf Auto-Update to Deploy Espionage Tools
Active Zero-Day in FortiClient EMS Enables Unauthenticated API Bypass and Code Execution
Active Dawn Zero-Day in Chrome Enables Sandbox Escape
Axios npm Maintainer Account Hijacked to Push Self-Cleaning RAT
New Progress ShareFile flaws can be chained in pre-auth RCE attacks
Chinese APT TA416 Resumes Stealthy Espionage on European Diplomats
FCC Targets Voice Provider for Routing Fraudulent Financial Robocalls
AI-Driven Actor Ran Six Waves of GitHub Actions pull_request_target Exploits
Mercor Data Exfiltrated in LiteLLM Supply Chain Attack
Qilin Ransomware Targets German Political Party with Data Theft and Extortion