Security Brief Daily

May 29, 2026 · #71


Listen Later

Episode 71

Security Brief Daily | 29 May 2026

In This Episode
  • Hackers exploit FortiClient EMS flaw to push infostealer malwareBleeping Computer
    Hackers are exploiting an authentication bypass vulnerability (CVE-2026-35616) in FortiClient Enterprise Management Server (EMS) to deliver an undocumented credential stealer called EKZ. The attacker disguised the malware as an update for Fortinet endpoints and executed it...
  • New Gogs zero-day flaw lets hackers get remote code executionBleeping Computer
    An unpatched zero-day vulnerability in the Gogs self-hosted Git service can allow attackers to gain remote code execution (RCE) on Internet-facing instances. Designed as an alternative to GitHub Enterprise or GitLab and written in Go, Gogs is often exposed online for remote...
  • Charter Communications data breach affects 4.9 million accountsBleeping Computer
    The ShinyHunters extortion gang stole personal information from 4.9 million accounts after hacking the U.S. telecom giant Charter Communications in early April, according to data breach notification service Have I Been Pwned. Charter has over 92,000 employees and provides...
  • Glassworm botnet disrupted after resilient C2 infrastructure takedownBleeping Computer
    The Glassworm botnet targeting developers in software supply-chain attacks has been disrupted after researchers took down its resilient command-and-control infrastructure relying on Solana blockchain transactions and the BitTorrent DHT network. ​In a coordinated operation...
  • Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential StealerThe Hacker News
    Threat actors are continuing to exploit a critical, now-patched security flaw impacting FortiClient Endpoint Management Server (EMS) deployments to deliver credential-stealing malware. "The campaign abused trusted endpoint management infrastructure to deliver malware across...
  • Gitea Vulnerability Exposes Private Container Images without AuthenticationThe Hacker News
    Cybersecurity researchers have disclosed a security flaw in Gitea, an open-source, self-hosted platform for version control, that allows unauthenticated remote attackers to pull private container images from Gitea deployments without requiring an account, password, or other...
  • Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code TunnelsThe Hacker News
    The North Korean state-sponsored threat actor known as Kimsuky (aka Velvet Chollima) has been attributed to a fresh set of cyber attacks targeting South Korean military and corporate entities through March and April 2026. "Kimsuky employed a range of tailored social...
  • Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android UsersThe Hacker News
    Latin America and Europe become the target of two banking trojan campaigns that are designed to infect Windows and Android devices with Grandoreiro and BTMOB malware, respectively. That's according to new findings from WatchGuard and ESET, which have observed the two malware...
  • Security Brief Daily is an AI-generated cybersecurity news podcast. Always verify critical information with primary sources.

    ...more
    View all episodesView all episodes
    Download on the App Store

    Security Brief DailyBy Security Brief Daily