source&pool
A daily wire of long-form journalism, video, and discourse — filed, tagged, and laid out flat.
VOL. I·NO. 01
SATURDAY, OCTOBER 3, 2026
Hacker News3412X 主题热门3297CNBC141PANews77YahooFinance74Channel News Asia56ChainCatcher51aihot47Coinness42Verge419to5Google36SouthChinaMorningPost35IGN34TechCrunch33Crypto.news309to5Mac29Engadget27MacRumors27Guardian24Kotaku23PushSquare22Cointelegraph20FoxBusiness20Eurogamer19Decrypt17ArsTechnica16CoinDesk16TechPowerUp16Variety16AndroidAuthority15Gematsu15NBC15Polygon14Investor'sBusinessDaily13Mashable13Gizmodo12SeekingAlpha12NintendoLife10NPR10GameInformer9XBOXWire9WIRED9bgr8DW8Fortune8GSMArena8Wccftech8AlJazeera7BitcoinMagazine7BusinessInsider7CNN7GameGPU7NewYorkPost7PureXbox7CBS6DigitalFoundry6Motor16VideoCardz6VideoGamesChronicle6AMBCrypto5AndroidPolice5BBC World5Deadline5DroidLife5Fox5NintendoEverything5Notebookcheck5Yahoo5TechSpot5Tom'sGuide5WarhammerCommunity5Yahoo5ABC4AppleInsider4Draftsim4MotleyFool4Futurism4GamesIndustry.biz4GAMINGbible4Jalopnik4LosAngelesTimes4NYT4CrudeOilPricesToday4Space4Hacker4Register4USAToday4WindowsCentral4CNET3Electrek3Euronews3HollywoodReporter3Nature3Pokemon3politico.eu3SamMobile3SeattleTimes3404Media2AndroidCentral2Anthropic2Autonocion2BuzzFeed2EIA2FierceBiotech2GameRant2Hackaday2Independent2KOMO2mtgrocks2MyNorthwest2PetaPixel2Phoronix2RockPaperShotgun2ScreenRant2SEC2SlashGear2Slate2YahooTech2Autopian2Conversation2Drive2TweakTown2WhatHi-Fi?2ynetnews224/7WallSt.180Level1WXLV1AboutAmazon1Aftermath1AFTVnews1airlive1AJC1AlaskaBeacon1AndroidHeadlines1AUTOMATON1AVClub1AviationWeek1AWealthofCommonSense1Barron's1BikeRadar1BleacherReport1BleepingComputer1BlockClubChicago1BoingBoing1BostonGlobe1YahooLifestyleCanada1CarandDriver1Carscoops1ChromeUnboxed1CnEVPost1comicbookmovie1SanDiegoCountyCenter1Currently1DCRainmaker1Deseret1DSOGaming1DiarioAS1Endpoints1Federal Reserve1Finbold1FOX13Seattle1Futurity1GameFile1GamesBeat1garymarcus.substack1GearPatrol1GeekyGadgets1Hodinkee1How-ToGeek1HuffPost1iLovetheUpperWestSide1InsiderGaming1I/OFund1KCRA1Livingetc1magic.gg1Magic:Gathering1MakeUseOf1Minecraft1MP1st1MyNintendo1NBCBayArea1NBC7SanDiego1Newser1SemiAnalysis1Newsshooter1NoemaMagazine1Nokiamob1OregonPublicBroadcasting1PageSix1PCGamesN1PCMag1PCWorld1PokeBeach1PokémonGOHub1QuantaMagazine1qz1RichmondTimes-Dispatch1Richmonder1RoadtoVR1ScienceDaily1SearchEngineRoundtable1SimpleFlying1statnews1svg1TampaBayTimes1DailyBeast1NextWeb1TimeExtension1https://tipswatch.com/1MobileReport1TMZ1UploadVR1WeatherChannel1WindowsLatest1WrestlingInc.195.5WSB1WWD1ZDNET1
  1. 001HackerOCT · 02English

    Apple CoreGraphics PoC Emerges as WhatsApp PDF Checks Hint at Possible Delivery Path

    Security researchers published a proof-of-concept for CVE-2026-86950, an Apple CoreGraphics vulnerability in PDF processing that crashes iPhones and Macs via malicious embedded fonts. Apple patched the flaw on September 28 after Meta Product Security discovered it, noting potential use in sophisticated attacks. Researchers from Calif found new PDF font-checking code in WhatsApp updates, suggesting it as a possible delivery vector, though no complete exploit chain has been demonstrated.

    By The Hacker News
  2. 002Hacker NewsOCT · 01English

    An in-the-wild iOS bug with a possible WhatsApp zero-click path

    Apple patched a CoreGraphics vulnerability (CVE-2026-86950) in iOS 26.7.1 that was exploited in the wild against targeted individuals. Researchers identified a unit conversion error in font rendering that allows out-of-bounds writes via malicious PDFs, with evidence suggesting exploitation through WhatsApp's attachment handling.

    By metrofun
  3. 003Hacker NewsOCT · 01English

    I built a WhatsApp client for Emacs without an API

    A developer built a WhatsApp client for Emacs on macOS by reading the app's local SQLite database and using the macOS Shortcuts app to send messages, avoiding Meta's lack of official API while keeping the account secure.

    By Andros Fenollosa
  4. 004Hacker NewsSEP · 30English

    CVE-2026-86950: An in-the-wild iOS bug with a possible WhatsApp zero-click path

    Apple patched CVE-2026-86950, a unit conversion error in CoreGraphics triggered by malicious PDFs with crafted fonts, causing out-of-bounds memory writes. The vulnerability was exploited in the wild targeting specific individuals and may have a zero-click WhatsApp attack vector. Meta researchers discovered the bug through patch analysis and found WhatsApp added strict PDF validation to detect malformed fonts.

    By ni5arga
  5. 005Hacker NewsSEP · 30English

    Show HN: Preserve.Chat – Turn WhatsApp chats into sharable link. Free and Secure

    Preserve.Chat is a free tool that converts WhatsApp chat exports into shareable, readable web links. Users can upload exports, search for specific messages, select a date range or message range to share, and customize the display style while controlling privacy by excluding sensitive details.

    By AsDivyansh
  6. 0069to5GoogleSEP · 30English

    Android 17 QPR2 enables Pixel 11 Pro HiLight for messages

    Android 17 QPR2 Beta 6.1 adds HiLight message notification support to Pixel 11 Pro devices, allowing the LED to glow when favorite contacts send messages through Google Messages and WhatsApp. The feature is accessible via Settings and marks a significant addition ahead of the stable December release.

    By Abner Li
  7. 007Hacker NewsSEP · 29English

    Using Device Linking to Eavesdrop on WhatsApp and Signal

    Germany's Customs Office has exploited device linking features in WhatsApp and Signal to eavesdrop on suspects by connecting police-controlled computers to their accounts without cracking encryption. The technique requires physical phone access or intercepting verification codes through phishing or SMS interception. Security experts advocate for displaying connected devices to help users detect unauthorized access.

    By Bruce Schneier
  8. 008Hacker NewsSEP · 26English

    Meta Expands Private Processing Confidential Computing to AI Glasses

    Meta is expanding its Private Processing confidential computing infrastructure to AI glasses, enabling cloud-based AI models to process user requests without Meta accessing the data. The system uses Trusted Execution Environments to encrypt data in use, implements anonymous credentials and third-party relays to prevent metadata leakage, and includes public verifiability through a transparency ledger. Meta previously deployed Private Processing for WhatsApp and Meta AI in 2025.

    By Mira Kellan; AI Ethics; Governance Specialist; AI Research Agent