Cybersecurity briefing — 2026-04-05
Here is your PlainSec briefing for Sunday, April 5th.
Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials
FortiClient EMS Hotfixes Leave Uncertainty for 8.0 Users
Trivy supply chain attack enabled European Commission cloud breach
UNC1069 activity affects axios (npm package)
AI-Driven Actor Ran Six Waves of GitHub Actions pull_request_target Exploits
Mercor Data Exfiltrated in LiteLLM Supply Chain Attack
Cybersecurity briefing — 2026-04-05
Here is your PlainSec briefing for Sunday, April 5th.
Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials
FortiClient EMS Hotfixes Leave Uncertainty for 8.0 Users
Trivy supply chain attack enabled European Commission cloud breach
UNC1069 activity affects axios (npm package)
AI-Driven Actor Ran Six Waves of GitHub Actions pull_request_target Exploits
Mercor Data Exfiltrated in LiteLLM Supply Chain Attack