Mmastodon TechnologyCybersecurity first seen 10 h ago, last 10 h ago, peak #8
FortiMail zero-day actively exploited with no patch available
Original: 2026-W40 — Weekly Threat Roundup 🔥 A zero-day in Fortinet FortiMail (CVE-2026-104286) is actively exploited with no patc
A weekly threat roundup reports that a zero-day vulnerability in Fortinet's FortiMail, tracked as CVE-2026-104286, is being actively exploited while no patch is available, forcing administrators to rely on interim workarounds. The same roundup notes Operation KillSwitch dismantled the KillSec ransomware group, allegedly run by a 16-year-old, with seizures reportedly carried out.
Why now: Security teams are sharing the roundup to alert organisations running FortiMail to an unpatched, actively exploited flaw.
FortinetFortiMailCVE-2026-104286KillSecOperation KillSwitch
Evidence
- 2026-W40 — Weekly Threat Roundup 🔥 A zero-day in Fortinet FortiMail (CVE-2026-104286) is actively exploited with no patch available yet, demanding immediate workarounds. 🏴☠️ Operation KillSwitch dismantled the KillSec ransomware gang, allegedly run by a 16-year-old, seizing… · threatnoir@infosec.exchange · 3
API: https://socialmediatrends-api.osmike.com/v1/trends/950512