Skip to content
← All briefings

Briefing · Jul 19

Apple's lawsuit against OpenAI notably omits Jony Ive amid tangled personal ties

AI

Claude Code ships with unreleased Rust-rewritten version of Bun bundled inside

Simon Willison flagged an unusual discovery inside the Claude Code CLI: the binary quietly ships with an unreleased version of Bun that has been rewritten in Rust, meaning users who installed Claude Code are already running pre-release Bun software without knowing it. Willison shared terminal commands that let users inspect the bundled runtime and confirm its version, and followed up with a blog post walking through the finding in more detail.

Consumer Tech & Gadgets

Apple's lawsuit against OpenAI notably omits Jony Ive amid tangled personal ties

Apple's massive lawsuit against OpenAI is drawing attention not just for what it includes, but for who it leaves out: legendary designer Jony Ive, whose absence from the complaint is conspicuous given his central role in the AI story. Gurman reports that the overlapping personal relationships surrounding the case add further complexity, most notably the position of Laurene Powell Jobs, who is both a close friend of Tim Cook and a key figure in Apple's history, while simultaneously being even closer to Ive — putting her at an unusual crossroads in the dispute.

The web of overlapping loyalties — Cook, Ive, Powell Jobs, and OpenAI — makes the litigation unusually personal for a corporate legal action and raises questions about how Apple shaped the scope of its complaint.

Apple quietly discontinued Mac Pro after scrapping plans for far more powerful successors

Apple had significantly more ambitious plans for the Mac Pro before pulling the plug on the product line earlier this year, according to Mark Gurman. Those scrapped plans included a chip that would have delivered double the performance of the M-series Ultra, an M3 Ultra variant of the machine, and — early in the Apple Silicon transition — even a final Intel-based version. The revelations paint a picture of a product that Apple struggled to find a clear future for as its chip roadmap evolved.

Apple piloting AI transcription system at Genius Bar retail appointments

Apple is testing an AI-powered recording and live transcription system at select retail stores, using it to automatically document Genius Bar support sessions. Staff can let the system transcribe conversations with customers in real time, then use those notes to log details about the appointment. The pilot raises questions about customer awareness and consent, as well as how Apple plans to store and use the data generated from those in-store interactions.

Dev Tools & Infrastructure

GitHub Copilot CLI v1.0.58 adds session, issues, PRs, and gists view

GitHub shipped Copilot CLI v1.0.58, adding the ability to view your session details, issues, pull requests, and gists directly within the CLI interface. The update is available now and users need to upgrade to v1.0.58 or higher to access the new features.

Gaming

Splatoon Raiders launches July 23 with Nintendo pushing cosmetic customization

Nintendo of America announced that Splatoon Raiders arrives on July 23, promoting the game's emphasis on unique character customization for Inklings and Octolings. Pre-orders are now live ahead of the release later this week.

Pokémon Go's exclusive 10th anniversary Mewtwo surfaces on eBay, angering community

Pokémon Go players are expressing outrage after attendees hand-picked for an ultra-exclusive 10th anniversary event at Times Square began listing their one-of-a-kind Mewtwo on eBay. The backlash centers on the perceived exploitation of a rare invitation that many fans would have valued for personal play.

Security

SonicWall SMA 1000 Zero-Days Chained in Active Exploitation, Patching Alone May Not Suffice

Two SonicWall SMA 1000 zero-day vulnerabilities were exploited in the wild before public disclosure, with researchers at Rapid7 attributing the activity to a threat cluster tracked as UTA0533. Attackers chained the flaws to gain root access to internet-facing VPN appliances, then extracted active session databases, credentials, and TOTP seed configurations to entrench persistent access. The compromised appliances were then weaponized as internal pivot points, with attackers making VPN-less Active Directory logins directly from the SMA device's own IP using its integrated LDAP service account, while also passively sniffing unencrypted LDAP credentials and planting custom malware.

SonicWall has warned that patching alone may be insufficient for already-compromised devices, advising affected organizations to consider full re-imaging of appliances alongside mandatory password changes and TOTP seed resets to eliminate any backdoor footholds left by attackers.

Russian Hackers Use Fake CAPTCHAs and Security Apps to Deploy Malware Against Ukrainian Targets

Russian state-backed threat actors are running a campaign against Ukrainian targets that uses fake CAPTCHA verification prompts to socially engineer victims into executing malware on their own Windows systems. The same operation also distributes trojanized security applications to backdoor Android devices, combining social engineering on desktop and mobile into a single coordinated attack chain.

Australian Crypto Regulation Forces Troy Hunt to Remove Donation Addresses from Have I Been Pwned

Troy Hunt, creator of the breach-notification service Have I Been Pwned, announced he is removing all cryptocurrency donation addresses from the site after concluding that new Australian government requirements around crypto payments are impossible to comply with for a solo-operated public-interest project. Hunt indicated the site will revert to PayPal as its sole donation channel.