<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>devtake.dev — #oauth</title><description>Articles tagged oauth on devtake.dev.</description><link>https://devtake.dev/</link><language>en-us</language><item><title>VS Code&apos;s webview sandbox leaks GitHub tokens that read and write every private repo</title><link>https://devtake.dev/article/vscode-zero-day-github-token-theft/</link><guid isPermaLink="true">https://devtake.dev/article/vscode-zero-day-github-token-theft/</guid><description>A disclosed VS Code zero-day lets one click on a malicious github.dev notebook steal a GitHub OAuth token with full read-write access to every private repo.</description><pubDate>Wed, 03 Jun 2026 13:15:00 GMT</pubDate><category>security</category><category>security</category><category>github</category><category>credential-theft</category><category>dev-tools</category><category>rce</category><category>supply-chain</category><category>oauth</category><author>luca-reinhardt</author></item><item><title>Vercel got breached through a third-party AI tool&apos;s OAuth app. Here&apos;s what leaked.</title><link>https://devtake.dev/article/vercel-breach-april-2026/</link><guid isPermaLink="true">https://devtake.dev/article/vercel-breach-april-2026/</guid><description>A Context.ai compromise let attackers take over a Vercel employee&apos;s Google Workspace. Non-sensitive env vars were exposed, and a ShinyHunters persona is asking $2M.</description><pubDate>Mon, 20 Apr 2026 09:00:00 GMT</pubDate><category>security</category><category>vercel</category><category>data-breach</category><category>oauth</category><category>supply-chain</category><category>context-ai</category><category>shinyhunters</category><category>google-workspace</category><author>luca-reinhardt</author></item></channel></rss>