Episode 44
Security Brief Daily | 02 May 2026
In This Episode
Trellix Confirms Source Code Breach With Unauthorized Repository Access — The Hacker News
Cybersecurity company Trellix has announced that it suffered a breach that enabled unauthorized access to a "portion" of its source code. It said it "recently identified" the compromise of its source code repository and that it began working with "leading forensic experts" to...15-year-old detained over French govt agency data breach — Bleeping Computer
French authorities have detained a 15-year-old suspected of selling data stolen in a cyberattack on France Titres (ANTS), the country’s agency for issuing and managing administrative documents. The government agency confirmed the breach and the authenticity of the data...US ransomware negotiators get 4 years in prison over BlackCat attacks — Bleeping Computer
Two former employees of cybersecurity incident response companies Sygnia and DigitalMint were sentenced to four years in prison each for targeting U.S. companies in BlackCat (ALPHV) ransomware attacks. 40-year-old Ryan Clifford Goldberg (a former Sygnia incident response...FBI links cybercriminals to sharp surge in cargo theft attacks — Bleeping Computer
The U.S. Federal Bureau of Investigation (FBI) warned the transportation and logistics industry of a sharp rise in cyber-enabled cargo theft, with estimated losses in the United States and Canada reaching nearly $725 million in 2025. This represents a 60% surge in losses...Edu tech firm Instructure discloses cyber incident, probes impact — Bleeping Computer
Instructure, the company behind the widely used Canvas learning platform, has disclosed that it recently suffered a cybersecurity incident and is now investigating its impact. The U.S.-based education technology company is best known for developing Canvas, a widely used...30,000 Facebook Accounts Hacked via Google AppSheet Phishing Campaign — The Hacker News
A newly discovered Vietnamese-linked operation has been observed using a Google AppSheet as a "phishing relay" to distribute phishing emails with an aim to compromise Facebook accounts. The activity has been codenamed AccountDumpling by Guardio, with the scheme selling the...Anti-DDoS Firm Heaped Attacks on Brazilian ISPs — Krebs on Security
A Brazilian tech firm that specializes in protecting networks from distributed denial-of-service (DDoS) attacks has been enabling a botnet responsible for an extended campaign of massive DDoS attacks against other network operators in Brazil, KrebsOnSecurity has learned. The...Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential Theft — The Hacker News
A new software supply chain attack campaign has been observed using sleeper packages as a conduit to subsequently push malicious payloads that enabled credential theft, GitHub Actions tampering, and SSH persistence. The activity has been attributed to the GitHub account...Security Brief Daily is an AI-generated cybersecurity news podcast. Always verify critical information with primary sources.