Security Brief Daily

Jun 04, 2026 · #76


Listen Later

Episode 76

Security Brief Daily | 04 Jun 2026

In This Episode
  • CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV CatalogThe Hacker News
    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical flaw impacting Mirasvit Cache Warmer, a popular Magento full-page cache extension, to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation in...
  • Acer working to patch max severity zero-days in Wave 7 routersBleeping Computer
    Acer confirmed that it's working to address two maximum-severity zero-day vulnerabilities affecting its Wave 7 mesh routers. According to a Friday security advisory , the two security flaws were reported by security researcher Gergo Pap and affect Wave 7 routers running...
  • U.S. sanctions Nobitex crypto exchange used by Iranian ransomware actorsBleeping Computer
    The U.S. Treasury's Office of Foreign Assets Control (OFAC) has announced sanctions against Nobitex, Iran's largest cryptocurrency exchange, for facilitating payments related to terrorist activities. Nobitex is believed to have helped evade economic sanctions and also...
  • VS Code zero-day lets hackers steal GitHub tokens in one clickBleeping Computer
    A security researcher has released exploit code for a Visual Studio Code (VS Code) zero-day vulnerability that allows attackers to steal GitHub authentication tokens by tricking users into clicking a link. Microsoft classifies a software flaw as a zero-day if it is publicly...
  • Google June 2026 Android Update Patches 124 Flaws, One Actively ExploitedThe Hacker News
    !j> u5 C! Ζ$3OˠƏ9X8Kj| S Ee3NDD)&EʖcUqV-K%6YӹIڣxUow-ʗWwp%AٱZws- s2^c IRE-=]Gp=2T...
  • CISA warns of active attacks exploiting Android, Linux bugsBleeping Computer
    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are exploiting vulnerabilities in the Linux kernel and Android operating system. The most recent flaw the agency added to its Known Exploited Vulnerabilities (KEV) catalog,...
  • Oracle WebLogic CVE-2024-21182 Added to KEV Catalog After Active ExploitationThe Hacker News
    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity security flaw impacting Oracle WebLogic Server to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. The vulnerability, CVE-2024-21182...
  • Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RATThe Hacker News
    Cybersecurity researchers have flagged a new malspam campaign that makes use of Google's DoubleClick domain as a way to evade detection and ultimately deliver a remote access trojan (RAT) named DesckVB RAT. "Before the victim ever reaches attacker-controlled infrastructure,...
  • Security Brief Daily is an AI-generated cybersecurity news podcast. Always verify critical information with primary sources.

    ...more
    View all episodesView all episodes
    Download on the App Store

    Security Brief DailyBy Security Brief Daily