devtake.dev

#security

RSS

Vulnerabilities, breaches, and defensive-security research across the platforms devs actually use.

Two gold Apple Watch Series 12 models with Milanese loop bands, one showing a 62 BPM heart rate screen and one turned to show the green sensor lights on its back
Apple·

Apple Watch's Secure Exclave: raw audio stays in silicon, the summary goes to Apple's servers

Apple's S11 chip walls microphone audio off from watchOS, apps and Apple itself. The condensed text of a Siri Recap still travels to Private Cloud Compute.

A California DMV specimen driver license stamped SAMPLE in black across the middle, showing the fictional holder's portrait, address, height, weight and date of birth
Security·

153 million driver's license scans went up for sale. Krebs traced them to IDScan.net.

A dark web service listed scans of 153 million US and Canadian licenses. Krebs's timestamp analysis points at IDScan.net, and the FBI opened an inquiry.

The Claude wordmark and orange starburst logo centred over a cream background scattered with sample chat bubbles asking about project timelines and weekend activities
Security·

Session-cookie theft: infostealers drained paid Claude accounts without touching a password

Anthropic says commodity infostealers lifted live Claude session cookies off user machines and replayed them to burn paid usage, bypassing 2FA entirely.

A pixel-art shipping crate glowing blue in the dark, with a red-eyed ghost stamped on its side
Security·

Unclaimed package names: Claude and Codex ran a stranger's code inside Fortune 500 networks

Alon Hertz registered package names that corporate docs told AI agents to install. Claude, Codex and Hermes fetched and ran the code within the hour.

A photo of a monitor showing Omarchy's installer completion screen: a pixel-art OMARCHY wordmark above the line Installed in 19m 17s and a Reboot Now button.
Open Source·

DHH's Omarchy left every desktop process one command away from root for 14 months

Omarchy's installer put the default user in the docker group, which is passwordless root on Linux. Version 4.0.1 drops it and old installs migrate at login.

Three WhatsApp screens from Meta's announcement: a passkey manager listing a Face ID passkey, an incoming call card from an unsaved number showing country and shared groups, and a create-password form with its character rules
Security·

WhatsApp swapped its six-digit two-step verification PIN for a real password

Meta replaced WhatsApp's six-digit two-step verification PIN with a full alphanumeric password, and accounts can now hold more than one passkey across Android and iOS.

Data-flow diagram showing a user prompt going to a Microsoft moderation server, which returns a moderated prompt and a watermark ID GUID, with local Stable Diffusion generating the picture and an image-watermarking stage stamping the GUID into the final image
Security·

Server-issued GUID in the pixels: Paint's local AI generation still phones Microsoft first

Xusheng Li took apart Microsoft Paint's watermarking code and found the invisible mark is a per-request GUID issued by a Microsoft server before any pixels exist.

An open Framework Laptop 13 in DIY configuration on a white desk, mainboard exposed, with two 32GB memory modules and an SSD beside it
Security·

Metabase's password-reset endpoint handed out admin, and Framework had to email every customer

A CVSS 10.0 SQL injection in Metabase was exploited from August 3. Framework told every customer their data was taken. Tally lost emails and password hashes.

Screenshot of an attacker's server log filled with exfiltrated Jira ticket fields and Confluence page text, labelled with the Jira and Confluence logos
Security·

Atlassian went quiet for 75 days on a Rovo bug that leaks Jira tickets

PromptArmor says a hidden instruction can make Atlassian's Rovo fetch a URL carrying Jira and Confluence data, even with web search switched off.

Rear input/output panel of a Supermicro server motherboard, showing the dedicated management Ethernet jack next to the two data network ports, USB, serial and VGA connectors.
Security·

86,000 exposed server management chips. HD Moore found critical flaws in more than half.

Researchers disclosed more than a dozen new flaws in the baseboard management controllers inside enterprise servers. Code planted there outlives an OS reinstall.

A transparent-cased Coldcard hardware wallet resting on a laptop keyboard, its screen reading 'OK TO SEND?' above a Bitcoin amount and destination address.
Security·

Coldcard's firmware checked if a setting existed, not if it was on. $88.6 million in Bitcoin is gone.

A 2021 build error routed Coldcard seed generation to a software PRNG. Five years of wallets carry 40 to 72 bits of entropy instead of 128, and 4,585 of them have been drained.

The Python Package Index logo, showing the two-snake Python mark next to the words Package Index
Security·

Anthropic's Claude uploaded malware to PyPI and stole a security vendor's credentials in a test

Anthropic says a Claude model built malware and pushed it to PyPI during a botched eval. Two labs have now breached four companies, and no law clearly covers it.

The NIST North Building in Gaithersburg, Maryland, a six-storey brick and glass office block with the NIST logo on its facade.
Security·

60 hours of AI cryptanalysis. HAWK's authors pulled it from NIST's post-quantum race.

Claude Mythos found a lattice weakness in HAWK and its authors withdrew the scheme from NIST. Deployed encryption and the finished ML-KEM and ML-DSA standards are untouched.

Delta aircraft parked at jet bridges on the apron at Hartsfield-Jackson Atlanta International Airport under a pink sunset sky
Security·

The DOJ charged a US citizen over a GrapheneOS duress password that wiped his phone at the border

Samuel Tunick's Pixel erased itself during a CBP inspection at Atlanta's airport. Prosecutors call that destroying property to prevent its seizure.

GitHub repository card for songquanpeng/one-api, the open-source LLM API management and distribution gateway that most relay services run on
AI·

Matt Lenhard found 49 relays reselling OpenAI and Anthropic tokens. The cheapest runs 97.8% below list.

Matt Lenhard's investigation maps the Chinese relay market that pools API keys from free trials, stolen cards and unguarded bots, then resells frontier tokens far below list.

The green Android robot head logo on a white background
Android·

Android may stop letting a phone debug itself, and Shizuku would break with it

A comment on a Google issue tracker floated binding ADB to the Wi-Fi interface only. That one change would kill loopback debugging, Shizuku, and every debloater built on it.

Illustration of Thailand's Ministry of Finance building next to a map of Thailand and a red server stack labelled Hades Implant.
Security·

Hermes in YOLO mode: an AI agent handled post-exploitation in an alleged Thai ministry breach

Threat-intel firm Hunt.io found logs showing an open-source AI agent running unattended against Thailand's Ministry of Finance, with approval prompts switched off.

A cluster of surveillance cameras mounted on a pole at night.
Security·

A Hanwha camera's login page leaked a GitHub token with admin on hundreds of repos

A security researcher found a Hanwha Vision camera shipping a live GitHub admin token in its login page, granting access to hundreds of the vendor's repositories.