Apple Sends Lock Screen Alerts to Outdated iPhones Over Active Web-Based Exploits

2026-03-27T19:24:22Z50dc62a4bbff7a265fac6a457faec554f15d052d654f5ea69afa9eb12e061c32
AitM-phishingBPFDoor','GlassWorm','Solana-dead-drops','malvertising','Screen4BearlyfyCloudflare-Turnstile-evasionKICSOAuthPyPITeamPCPTrivyanthropicclaude-extensioncorunadevice-code-phishingiOS-exploitslangchainlanggraphlitellmopen-vsxransomwarered-menshensupply-chaintelnyxvulnerability-bypassweb-skimmerwebrtc-skimmer

What happened

Multiple high-impact supply‑chain and active-exploitation incidents were reported: TeamPCP pushed malicious versions of telnyx (PyPI) and backdoored litellm via a Trivy/KICS CI compromise to steal credentials and enable lateral movement; researchers disclosed an Open VSX pre‑publish scanning bug that allowed a malicious VS Code extension to bypass vetting; and Apple is issuing Lock Screen alerts for active web‑based iOS/iPadOS exploits. Additional critical findings include LangChain/LangGraph flaws that can expose files and secrets, a zero‑click XSS/prompt‑injection flaw in Anthropic’s Claude‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
50dc62a4bbff7a265fac6a457faec554f15d052d654f5ea69afa9eb12e061c32
Enrichment time
2026-03-27T19:24:22Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.