The Berlin Bassline Brief logo

The Berlin Bassline Brief

Archives
Log in
Subscribe
September 2, 2026

Berlin Bassline Brief #17: agentic git status hijinks, more on screen sharing CVEs, whistleblowing in NIS2 and CRA, stream Qwen3.8-Flash-Next on underprovisioned Silicon, HomeKit camera security

Berlin Bassline Brief #17: git-status hijack risk in coding agents, macOS Screen Sharing CVE deep dive, whistleblowing/NIS2 paper, slotstream local LLM tool, HomeKit Camera security concept.

"The first and most important field of philosophy is the application of principles such as 'Do not lie.' Next come the proofs, such as why we should not lie. The third field supports and articulates the proofs, by asking, for example, 'How does this prove it? What exactly is a proof, what is logical inference, what is contradiction, what is truth, what is falsehood?' Thus, the third field is necessary because of the second, and the second because of the first. The most important, though, the one that should occupy most of our time, is the first. But we do just the opposite. We are preoccupied with the third field and give that all our attention, passing the first by altogether. The result is that we lie - but have no difficulty proving why we shouldn't."

Welcome to September!

Security, General:

Several agents will run git status before controls are in place, and in an untrusted repo that has implications (patching progress varies): https://www.manifold.security/blog/ai-coding-agents-git-hijack

Security, Apple Platforms:

I mentioned this ongoing story about macOS Screen Sharing CVEs recently, but after sending, I changed the BBB web version link to an article instead of the original writeup I had chosen, because I wasn't sure if the original writeup was the right explanation for this newsletter, which is intended to be for engineers with an interest in this platform who want to know what's happening in their security milieu. Now, Csaba Fitzl has written the in-depth writeup of my dreams about this multiphase (and, to a very small extent, multidrama) bug variant and CVE series, which I think should be interesting to anyone engineering on this platform, so, without further ado, Screen Sharing part 2: https://www.iru.com/blog/inside-the-screensharingd-bugs-how-macos-screen-sharing-went-from-root-file-access-to-pre-auth-compromise

Interesting Paper:

“Reporting the breach, protecting the reporter: whistleblowing at the intersection of NIS2, the Cyber Resilience Act and Directive (EU) 2019/1937” by Fabian Teichmann: https://link.springer.com/article/10.1365/s43439-026-00174-8

Interesting Tool:

I'm really enjoying these rude "stream the experts from an SSD and run a way-too-many-parameters model somewhat slowly on underprovisioned Silicon" local LLM optimization hacks, so here is slotstream, for doing it with Qwen3.8-Flash-Next with MLX, and it looks like it supports MTP too: https://github.com/carloslfu/slotstream

Apple Platforms Security Concept of the Week:

HomeKit Camera Security https://support.apple.com/en-euro/guide/security/sec525461d19/1/web/1

Berlin Bassline Brief concept of the week:

I have an announcement of my own, which is that Cate Huston from DRI Your Career (and so much more) and I have developed a course called Breaking Into the Security Mindset. It is a values-first approach to getting to grips with the new application security realities, for engineers and engineering managers, and if this sounds like a topic you've been wondering about lately, you can check it out right here: https://www.driyourcareer.com/security

See you next week!




The Berlin Bassline Brief is curated and commentated by Halle Winkler, CEH, Berlin – get in touch if you could use security consulting, fractional AppSec leadership, or team training in the area of iOS and macOS secure development.

Check out my course Breaking Into the Security Mindset, for engineers and engineering managers, to get to grips with the new application security landscape: https://www.driyourcareer.com/security

RSS

Don't miss what's next. Subscribe to The Berlin Bassline Brief:
← Newer Berlin Bassline Brief #18: mass agentic anti-human deception, no more macOS keychain copying between machines, ACM takes on recommender badness, microharness Older → Berlin Bassline Brief #16: swiftCon, deciding AI authority, phishing iPhone passcodes with voice AI agents, reward hacking survey paper, abliteration without the weights, Lost Mode
Halle Winkler on LinkedIn
Powered by Buttondown, the easiest way to start and grow your newsletter.