Skip to content
cyberMEDIUM2026-05-05 13:25 UTC

Analysis malicious DLL

Because of CVE-2026-21643, a customer's FortiEMS was compromised. Users got pushed a powershell command downloading a fake patch through some obfuscation. The URL is   ! careful, this is active malware ! http://83.138.53.110/FortiEMS/Endpoint-Patch.2.4.9/FortiEndpoint_Patch.2.4.9.exe It's stil

ORIGINAL SOURCE →via Reddit r/cybersecurity
ADVERTISEMENT
⚡ STAY AHEAD

Events like this, convergence-verified across 689 sources, land in your inbox every Sunday. Free.

GET THE SUNDAY BRIEFING →

RELATED · cyber