Cybersecurity Daily: News & Threats
(00:00:00) VS Code OAuth Exploit, 76% Finance Ransomware Surge & DarkSword iPhone Kit (00:00:48) VS Code OAuth Token Theft Flaw (00:01:23) Financial Ransomware Up 76 Percent (00:02:30) DarkSword iPhone Exploit Kit (00:03:26) Ultrahuman Breach and India Cloud Gaps (00:04:08) Key Signals to Watch Responsible disclosure is fracturing. Researcher Ammar Askar published a working exploit for a Microsoft Visual Studio Code vulnerability just one hour after private disclosure, citing repeated failures by Microsoft's Security Response Center to act in good faith. It echoes the Nightmare Eclipse leaks that preceded it — and the pattern is hardening into a norm. The VS Code flaw itself is serious: attackers can steal OAuth tokens via malicious repository recommendations combined with Jupyter Notebook popups, potentially granting access to any GitHub repository the victim can reach — including production environments. The social engineering surface inside a trusted development tool is wide. On the financial threat front, Q1 2026 data shows direct ransomware attacks on financial institutions rose 76% year over year. Investment firms now account for 41.6% of incidents, overtaking banks as the primary target. Qilin alone claimed 59 financial incidents in the past year. More alarming: critical vendor vulnerabilities across the financial sector surged 387% between 2024 and 2025, and over half carry actively exploited CVEs. Researchers also uncovered DarkSword, a copy-paste iPhone exploit kit targeting iOS 18.4 through 18.6.2 via watering hole attacks, with an estimated exposure window of up to 270 million devices. Attribution remains unknown. Apple responded by launching its new Background Security Improvement system and patching over 60 CVEs in May alone. Finally, two Indian data exposure incidents raise regulatory questions: wearable company Ultrahuman delayed breach notification for over two months, and 366,000 JEE Advanced 2026 records were exposed through unauthenticated cloud storage — following a near-identical CBSE portal exposure days earlier. This episode includes AI-generated content.
73 episoder
Kommentarer
0Vær den første til at kommentere
Tilmeld dig nu og bliv en del af Cybersecurity Daily: News & Threats-fællesskabet!