📰 DAILY THREAT BRIEFING
Monday, April 6, 2026
12 News Items
HN · BleepingComputer · Krebs · Dark Reading · SANS · THN Intel · Unit 42 · Security.com

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of April 6, 2026.

  1. Traffic violation scams switch to QR codes in new phishing texts
    — Bleeping Computer

    Scammers are sending fake "Notice of Default" traffic violation text messages impersonating state courts across the U.S., pressuring recipie…
  2. New FortiClient EMS flaw exploited in attacks, emergency patch released
    — Bleeping Computer

    Fortinet has released an emergency weekend security update for a new critical FortiClient Enterprise Management Server (EMS) vulnerability t…
  3. $285 Million Drift Hack Traced to Six-Month DPRK Social Engineering Operation
    — The Hacker News

    Drift has revealed that the April 1, 2026, attack that led to the theft of $285 million was the culmination of a months-long targeted and…
  4. Hackers exploit React2Shell in automated credential theft campaign
    — Bleeping Computer

    Hackers are running a large-scale campaign to steal credentials in an automated way after exploiting React2Shell (CVE-2025-55182) in vulnera…
  5. 36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent Implants
    — The Hacker News

    Cybersecurity researchers have discovered 36 malicious packages in the npm registry that are disguised as Strapi CMS plugins but come with d…
  6. Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMS
    — The Hacker News

    Fortinet has released out-of-band patches for a critical security flaw impacting FortiClient EMS that it said has been exploited in the wil…
  7. When an Attacker Meets a Group of Agents: Navigating Amazon Bedrock's Multi-Agent Applications
    — Unit 42

    Unit 42 research on multi-agent AI systems on Amazon Bedrock reveals new attack surfaces and prompt injection risks. Learn how to secure you…
  8. Inconsistent Privacy Labels Don't Tell Users What They Are Getting
    — Dark Reading

    Data privacy labels are a great idea for mobile apps, but the current versions just aren't good enough.
  9. Apple Breaks Precedent, Patches DarkSword for iOS 18
    — Dark Reading

    Even organizations with users unwilling or unable to adopt iOS 26 can now protect themselves from a severe mobile OS-cracking tool.
  10. Blast Radius of TeamPCP Attacks Expands Amid Hacker Infighting
    — Dark Reading

    As organizations disclose breaches tied to TeamPCP's supply chain attacks, ShinyHunters and Lapsus$ are getting involved, taking credit, and…
  11. TeamPCP Supply Chain Campaign: Update 006 – CERT-EU Confirms European Commission Cloud Breach, Sportradar Details Emerge, and Mandiant Quantifies Campaign at 1,000+ SaaS Environments, (Fri, Apr 3rd)
    — SANS ISC

    This is the sixth update to the TeamPCP supply chain campaign threat intelligence report, "When the…
  12. ISC Stormcast For Friday, April 3rd, 2026 https://isc.sans.edu/podcastdetail/9878, (Fri, Apr 3rd)
    — SANS ISC

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

Generated by CryptXNet.ai Threat Intelligence Platform · April 6, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC, THN Threat Intel, Unit 42, Security.com