<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>devtake.dev — #zero-day</title><description>Articles tagged zero-day on devtake.dev.</description><link>https://devtake.dev/</link><language>en-us</language><item><title>Google is patching an Android flaw that attackers are already exploiting in the wild</title><link>https://devtake.dev/article/android-june-2026-zero-day-patch/</link><guid isPermaLink="true">https://devtake.dev/article/android-june-2026-zero-day-patch/</guid><description>Google&apos;s June 2026 Android bulletin patches an actively exploited Framework privilege-escalation zero-day plus 123 other flaws. Here&apos;s who&apos;s at risk and what to do.</description><pubDate>Wed, 03 Jun 2026 11:45:00 GMT</pubDate><category>android</category><category>android</category><category>google</category><category>security</category><category>zero-day</category><category>cve-2025-48595</category><category>patch</category><category>pixel</category><author>naomi-park</author></item><item><title>GitHub banned the researcher dropping Windows zero-days. The code was already mirrored everywhere.</title><link>https://devtake.dev/article/github-bans-researcher-windows-zero-day/</link><guid isPermaLink="true">https://devtake.dev/article/github-bans-researcher-windows-zero-day/</guid><description>GitHub wiped Nightmare-Eclipse&apos;s account on May 23 after weeks of unpatched Windows exploits. The ban reopened the oldest fight in security: who decides what research gets hosted?</description><pubDate>Fri, 29 May 2026 06:50:00 GMT</pubDate><category>security</category><category>security</category><category>github</category><category>vulnerability-disclosure</category><category>zero-day</category><category>microsoft</category><category>windows</category><category>supply-chain</category><category>rce</category><author>luca-reinhardt</author></item><item><title>A USB stick now opens a BitLocker drive in 60 seconds. The researcher calls it a backdoor.</title><link>https://devtake.dev/article/yellowkey-bitlocker-zero-day-bypass/</link><guid isPermaLink="true">https://devtake.dev/article/yellowkey-bitlocker-zero-day-bypass/</guid><description>A pseudonymous researcher dropped two unpatched Windows zero-days on May 12. YellowKey bypasses BitLocker via WinRE; Microsoft has not acknowledged either bug.</description><pubDate>Thu, 14 May 2026 10:15:00 GMT</pubDate><category>security</category><category>security</category><category>bitlocker</category><category>microsoft</category><category>windows</category><category>zero-day</category><category>winre</category><category>tpm</category><category>full-disk-encryption</category><author>luca-reinhardt</author></item><item><title>A nine-year-old Linux kernel bug gives root in one command. No patch exists yet.</title><link>https://devtake.dev/article/linux-dirty-frag-kernel-privilege-escalation/</link><guid isPermaLink="true">https://devtake.dev/article/linux-dirty-frag-kernel-privilege-escalation/</guid><description>Dirty Frag chains two page-cache flaws in the ESP and RxRPC subsystems into a deterministic privilege escalation that hits every major distro. A PoC exploit is public.</description><pubDate>Sun, 10 May 2026 10:00:00 GMT</pubDate><category>security</category><category>security</category><category>linux</category><category>kernel</category><category>cve-2026-43284</category><category>privilege-escalation</category><category>zero-day</category><category>dirty-frag</category><author>luca-reinhardt</author></item><item><title>Adobe&apos;s Acrobat zero-day sat on VirusTotal for 136 days. Patch is APSB26-43.</title><link>https://devtake.dev/article/adobe-acrobat-reader-cve-2026-34621/</link><guid isPermaLink="true">https://devtake.dev/article/adobe-acrobat-reader-cve-2026-34621/</guid><description>CVE-2026-34621 is an actively exploited Acrobat and Reader bug that runs attacker JavaScript inside the PDF runtime. The first sample hit VirusTotal in November and went unflagged.</description><pubDate>Tue, 28 Apr 2026 15:30:00 GMT</pubDate><category>security</category><category>adobe</category><category>acrobat</category><category>cve-2026-34621</category><category>security</category><category>zero-day</category><category>virustotal</category><category>expmon</category><category>pdf</category><author>luca-reinhardt</author></item><item><title>Microsoft April 2026 Patch Tuesday: 167 fixes, two zero-days, and a SharePoint bug already in CISA&apos;s KEV</title><link>https://devtake.dev/article/microsoft-patch-tuesday-april-2026-sharepoint/</link><guid isPermaLink="true">https://devtake.dev/article/microsoft-patch-tuesday-april-2026-sharepoint/</guid><description>Microsoft&apos;s April 8 Patch Tuesday closes 167 CVEs. CVE-2026-32201 in SharePoint is being exploited and CISA added it the same day. Here&apos;s what to patch first.</description><pubDate>Mon, 27 Apr 2026 15:00:00 GMT</pubDate><category>security</category><category>microsoft</category><category>patch-tuesday</category><category>cve-2026-32201</category><category>sharepoint</category><category>defender</category><category>zero-day</category><category>security</category><category>cisa-kev</category><author>luca-reinhardt</author></item></channel></rss>