Two Zero-Days Before Coffee episode artwork

EPISODE · Jun 1, 2026

Two Zero-Days Before Coffee

from CyberPulse · host Tushar Vartak

Google released emergency Chrome updates for two actively exploited zero-days — CVE-2026-3909 (Skia out-of-bounds write) and CVE-2026-3910 (V8 arbitrary code execution), both CVSS 8.8. The GlassWorm supply chain campaign escalated with 72+ malicious Open VSX extensions discovered targeting developers and AI coding assistants using transitive dependency poisoning. The medical technology wiper incident continues with no restoration timeline as the Intune weaponization is confirmed. And the Coruna iOS exploit kit has been traced to exploits originally developed by a defense contractor — closing the loop on the proliferation story from government-commissioned tools to mass criminal deployment.

Episode metadata supplied by the publisher feed · Published Jun 1, 2026

Embed this episode

NOW PLAYING

Two Zero-Days Before Coffee

0:00 0:00

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

When was this CyberPulse episode published?

This episode was published on June 1, 2026.

Can I download this CyberPulse episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!