CRITICAL: Office Zero-Day + WordPress Admin Takeover + Chrome Extensions Stealing AI Chats | EP 60

CRITICAL: Office Zero-Day + WordPress Admin Takeover + Chrome Extensions Stealing AI Chats | EP 60

Author: Cipherceval January 29, 2026 Duration: 24:52

Microsoft just dropped an emergency patch for an Office zero-day being exploited in the wild. A WordPress plugin has a CVSS 10.0 vulnerability — that's the golden goose of hacking. 900,000 Chrome users had their ChatGPT conversations stolen by malicious extensions with Google's Featured badge. And two cybersecurity professionals pleaded guilty to moonlighting as ransomware affiliates.

Welcome to 2026. It's gonna be a fun year.

In this episode:

  • CVE-2026-21509: Microsoft Office zero-day (security feature bypass)
  • CVE-2026-23550: WordPress Modular DS critical vulnerability
  • Prompt Poaching: Chrome extensions stealing AI conversations
  • Brightspeed breach: Crimson Collective claims 1M+ records
  • Insider threat: Security pros turned BlackCat/ALPHV affiliates

Key takeaway: Update your stuff. A patch does you no good if it isn't installed.

Subscribe for weekly cybersecurity news, vulnerability breakdowns, and threat intelligence.

 

https://forgeboundresearch.com/podcasts/


Ever wonder how a hacker actually thinks when they're picking a digital lock? That's the kind of curiosity that drives Exploit Brokers By Forgebound Research. Hosted by Cipherceval, this isn't just a rundown of the week's scary headlines. Instead, it's a deep, analytical dive into the mechanics behind major cyber events. Each episode takes apart real-world incidents-from sprawling data breaches and clever malware to massive botnet takedowns-and walks through the how and why. The goal is practical: by understanding the tools and tactics used in an attack, we can all build smarter defenses. You'll find a mix of sharp commentary on breaking tech news and clear, insightful tutorials that demystify complex security concepts. Tune in for a perspective that goes beyond surface-level reporting, offering a genuine look into the mindset of both attackers and defenders. This podcast serves as a valuable resource for anyone from IT professionals to simply tech-curious listeners who want to move past fear and into comprehension.
Author: Language: en-us Episodes: 62

Exploit Brokers By Forgebound Research - Tech and Hacking News Commentary
Podcast Episodes
HN54 - Cybersecurity Experts Reveal LAZARUS GROUP's Hidden Secrets [not-audio_url] [/not-audio_url]

Duration: 29:54
Lazarus Group's Secret Admin Layer EXPOSED – Major Cybersecurity Discovery! 🔥💻 Security researchers have uncovered a hidden admin layer used by North Korea's Lazarus Group to manage their Command and Control (C2) servers…
HN53 - AI's Dirty Little Secret: Employees Leaking Data by Accident [not-audio_url] [/not-audio_url]

Duration: 24:46
In this episode, we're uncovering the darker side of Generative AI and the emerging threats lurking behind everyday tools like ChatGPT and Copilot. Learn how sensitive information—ranging from customer data to employee b…
HN50 - IoT Webcams Hacked & 900k+ Health Records Exposed [not-audio_url] [/not-audio_url]

Duration: 25:36
In this eye-opening episode, we uncover the disturbing reality of IoT webcam vulnerabilities and explore how hackers are leveraging outdated firmware and previously discovered but unpatched exploits to infiltrate persona…
HN48 - Hydra's Dark Web Empire CRUMBLES [not-audio_url] [/not-audio_url]

Duration: 21:26
Uncover the fascinating yet chilling story of Hydra Market, the dark web's largest illicit empire. Learn how this $1.35 billion platform operated, from smuggling narcotics and laundering money to offering hacking service…