Startups

Apple patches nasty security bugs, HBO Max suddenly removes content, and a16z backs Neumann’s next thing

Comment

WeWork CEO Adam Neumann Visits Shanghai
Image Credits: Jackal Pan/Visual China Group / Getty Images

Hello hello! We’re back with another edition of Week in Review, the newsletter where we quickly recap the top stories to hit TechCrunch across the last seven days. Want it in your inbox? Sign up here. 

other stuff

a16z backs WeWork founder’s new thing: When a company implodes hard enough that it inspires a miniseries, would anyone back the founders again? It doesn’t seem to have dissuaded a16z, who recently put its biggest check ever into WeWork founder Adam Neumann’s next thing.

Black Girls Code founder fired by board: “Kimberly Bryant is officially out from Black Girls Code, eight months after being indefinitely suspended from the organization that she founded,” write Natasha Mascarenhas and Dominic-Madori Davis. Bryant has filed a lawsuit in response to the termination, alleging “wrongful suspension and conflict of interest.”

Google shutters IoT Core: Google’s IoT Core is a service meant to help device makers build internet-connected gadgets that connect to Google Cloud. This week, Google announced that they’re shutting it down, giving those device makers a year to figure out another solution.

Apple’s big security bug: Time to update your Apple devices! This week the company shipped critical patches that fix two (!) security issues that attackers seem to already be actively exploiting. The bugs involve Safari’s WebKit engine and can lead to an attacker having, essentially, full access to your device — so, really, go update.

HBO Max removing titles: HBO Max is merging with Discovery+, and for some reason this means a bunch of titles are getting the boot — and fast. I was going to tell everyone to go speed-binge their way through the incredible “Summer Camp Island” series before it’s gone, but apparently it already got removed. Find the full list of gone/soon-to-be-gone titles here.

TC battles stalkerware: Back in February, TechCrunch’s Zack Whittaker pulled back the curtain on a network of “stalkerware” apps that were meant to quietly gobble up a victim’s private text messages, photos, browsing history, etc. This week Zack launched a tool meant to help people determine if their Android phone — and thus, their private data — was impacted. We’ll hear more from Zack about this new tool below.

An illustration of a blue-lit phone with a location pointer over it, on a background of red and blue moving eyes.
Image Credits: Bryce Durbin / TechCrunch

audio stuff

What’s up in the world of TechCrunch podcasts? This week the Equity crew talked about why we need to “officially stop comparing Adam Neumann and Elizabeth Holmes,” and Burnsy talked with Ethena co-founder Roxanne Petraeus and Homebrew’s Hunter Walk about how to “sell the vision, not the business,” on TechCrunch Live.

additional stuff

What lies behind the TC+ paywall? Some really great stuff! Here’s a taste:

How does venture capital work?: It seems like a basic question, but it’s one we get…quite a lot. Haje, with his rare overlapping perspective as a reporter AND pitch coach AND former director at a VC fund, breaks it all down as only he can.

Planning to use your startup equity as collateral? Good luck: After years of work, you’ve managed to build up a ton of equity in the private company you’ve helped to build. Can you actually use it as collateral for anything? Compound’s Max Brenner walks us through the challenges.

writer spotlight: Zack Whittaker

Image Credits: Veanne Cao

This week we’re experimenting with a new section where we quickly catch up with one TechCrunch writer to hear a bit about them and the thing that’s on their mind this week. First up? The incredible, inimitable Zack Whittaker.

Who is Zack Whittaker? What do you do at TechCrunch?

Hi, I’m the security editor here, a.k.a. TechCrunch’s Bearer of Bad News, and I oversee the security desk. We uncover and report the big cybersecurity news of the day — hacks, data breaches, nation-state attacks, surveillance, and national security — and how it affects you, and the wider tech scene.

If you could snap your fingers and tell everyone in the world one thing about your beat, what would it be?

Think of cybersecurity as an investment for something you hope never happens, like a breach of your personal data. It’s better to get ahead of it now. Nowadays it’s easier than it’s ever been — and it’s never too late to start. Invest a small amount of time on three simple steps that make it so much tougher for hackers to break into your accounts or steal your data: Use a password manager, set up two-factor authentication everywhere you can, and keep your apps and devices up-to-date.

Tell me about this anti-stalkerware tool you launched this week

Back in February, TechCrunch revealed that a network of near-identical “stalkerware” apps share the same common security bug, which is spilling the private phone data of hundreds of thousands of Android device owners around the world. These malicious apps are planted by someone with access to your phone and designed to stay hidden, but silently steal a victim’s phone data, like messages, photos, call logs, location and more. Months later, we obtained a leaked list of every single device that was compromised by these apps. The data didn’t have enough information for us to identify or notify victims, so we built this lookup tool to allow anyone to check if their device was compromised — and how to remove the spyware, if it’s safe to do so.

Ugh. Okay. So someone grabs your phone, installs one of these sketchy apps while you’re not paying attention, the app rips your private data for the installer to snoop around… meanwhile, the app is leaking a bunch of data to anyone who knows where to look. Does it seem like the folks behind the stalkerware apps have any intention of stopping?

Not at all. The Vietnam-based group of developers behind the stalkerware network went to great lengths to keep their identities hidden (but not well enough). The number of compromised devices was growing daily, but with no expectation of a fix, we published our investigation to help alert victims to the dangers of this spyware. Nobody in civil society should be subject to this kind of invasive surveillance without their knowledge or consent.

Besides this tool (which is excellent!), what’s your favorite post you’ve written or thing you’ve done with TC?

In the four years I’ve been here? That’s tough! One I still think about often is the inside story of how two British security researchers in their early-20s helped to save the internet from the fast-spreading WannaCry ransomware malware in 2017, which spread around the world, locking up computers in NHS hospitals, shipping giants, and transport hubs, causing billions of dollars in damage. But when one of them found and registered a certain domain name in the malware’s code, the attack stopped dead in its tracks. They found the malware’s kill switch, making them overnight “accidental” heroes. But the only thing holding back another WannaCry outbreak was keeping the kill switch domain in their hands alive, despite efforts by bad actors to force it offline by overwhelming it with internet traffic. “Being responsible for this thing that’s propping up the NHS? Fucking terrifying,” one of the researchers told me at the time.

More TechCrunch

After Apple loosened its App Store guidelines to permit game emulators, the retro game emulator Delta — an app 10 years in the making — hit the top of the…

Adobe comes after indie game emulator Delta for copying its logo

Meta is once again taking on its competitors by developing a feature that borrows concepts from others — in this case, BeReal and Snapchat. The company is developing a feature…

Meta’s latest experiment borrows from BeReal’s and Snapchat’s core ideas

Welcome to Startups Weekly! We’ve been drowning in AI news this week, with Google’s I/O setting the pace. And Elon Musk rages against the machine.

Startups Weekly: It’s the dawning of the age of AI — plus,  Musk is raging against the machine

IndieBio’s Bay Area incubator is about to debut its 15th cohort of biotech startups. We took special note of a few, which were making some major, bordering on ludicrous, claims…

IndieBio’s SF incubator lineup is making some wild biotech promises

YouTube TV has announced that its multiview feature for watching four streams at once is now available on Android phones and tablets. The Android launch comes two months after YouTube…

YouTube TV’s ‘multiview’ feature is now available on Android phones and tablets

Featured Article

Two Santa Cruz students uncover security bug that could let millions do their laundry for free

CSC ServiceWorks provides laundry machines to thousands of residential homes and universities, but the company ignored requests to fix a security bug.

19 hours ago
Two Santa Cruz students uncover security bug that could let millions do their laundry for free

OpenAI’s Superalignment team, responsible for developing ways to govern and steer “superintelligent” AI systems, was promised 20% of the company’s compute resources, according to a person from that team. But…

OpenAI created a team to control ‘superintelligent’ AI — then let it wither, source says

TechCrunch Disrupt 2024 is just around the corner, and the buzz is palpable. But what if we told you there’s a chance for you to not just attend, but also…

Harness the TechCrunch Effect: Host a Side Event at Disrupt 2024

Decks are all about telling a compelling story and Goodcarbon does a good job on that front. But there’s important information missing too.

Pitch Deck Teardown: Goodcarbon’s $5.5M seed deck

Slack is making it difficult for its customers if they want the company to stop using its data for model training.

Slack under attack over sneaky AI training policy

A Texas-based company that provides health insurance and benefit plans disclosed a data breach affecting almost 2.5 million people, some of whom had their Social Security number stolen. WebTPA said…

Healthcare company WebTPA discloses breach affecting 2.5 million people

Featured Article

Microsoft dodges UK antitrust scrutiny over its Mistral AI stake

Microsoft won’t be facing antitrust scrutiny in the U.K. over its recent investment into French AI startup Mistral AI.

21 hours ago
Microsoft dodges UK antitrust scrutiny over its Mistral AI stake

Ember has partnered with HSBC in the U.K. so that the bank’s business customers can access Ember’s services from their online accounts.

Embedded finance is still trendy as accounting automation startup Ember partners with HSBC UK

Kudos uses AI to figure out consumer spending habits so it can then provide more personalized financial advice, like maximizing rewards and utilizing credit effectively.

Kudos lands $10M for an AI smart wallet that picks the best credit card for purchases

The EU’s warning comes after Microsoft failed to respond to a legally binding request for information that focused on its generative AI tools.

EU warns Microsoft it could be fined billions over missing GenAI risk info

The prospects for troubled banking-as-a-service startup Synapse have gone from bad to worse this week after a United States Trustee filed an emergency motion on Wednesday.  The trustee is asking…

A US Trustee wants troubled fintech Synapse to be liquidated via Chapter 7 bankruptcy, cites ‘gross mismanagement’

U.K.-based Seraphim Space is spinning up its 13th accelerator program, with nine participating companies working on a range of tech from propulsion to in-space manufacturing and space situational awareness. The…

Seraphim’s latest space accelerator welcomes nine companies

OpenAI has reached a deal with Reddit to use the social news site’s data for training AI models. In a blog post on OpenAI’s press relations site, the company said…

OpenAI inks deal to train AI on Reddit data

X users will now be able to discover posts from new Communities that are trending directly from an Explore tab within the section.

X pushes more users to Communities

For Mark Zuckerberg’s 40th birthday, his wife got him a photoshoot. Zuckerberg gives the camera a sly smile as he sits amid a carefully crafted re-creation of his childhood bedroom.…

Mark Zuckerberg’s makeover: Midlife crisis or carefully crafted rebrand?

Strava announced a slew of features, including AI to weed out leaderboard cheats, a new ‘family’ subscription plan, dark mode and more.

Strava taps AI to weed out leaderboard cheats, unveils ‘family’ plan, dark mode and more

We all fall down sometimes. Astronauts are no exception. You need to be in peak physical condition for space travel, but bulky space suits and lower gravity levels can be…

Astronauts fall over. Robotic limbs can help them back up.

Microsoft will launch its custom Cobalt 100 chips to customers as a public preview at its Build conference next week, TechCrunch has learned. In an analyst briefing ahead of Build,…

Microsoft’s custom Cobalt chips will come to Azure next week

What a wild week for transportation news! It was a smorgasbord of news that seemed to touch every sector and theme in transportation.

Tesla keeps cutting jobs and the feds probe Waymo

Sony Music Group has sent letters to more than 700 tech companies and music streaming services to warn them not to use its music to train AI without explicit permission.…

Sony Music warns tech companies over ‘unauthorized’ use of its content to train AI

Winston Chi, Butter’s founder and CEO, told TechCrunch that “most parties, including our investors and us, are making money” from the exit.

GrubMarket buys Butter to give its food distribution tech an AI boost

The investor lawsuit is related to Bolt securing a $30 million personal loan to Ryan Breslow, which was later defaulted on.

Bolt founder Ryan Breslow wants to settle an investor lawsuit by returning $37 million worth of shares

Meta, the parent company of Facebook, launched an enterprise version of the prominent social network in 2015. It always seemed like a stretch for a company built on a consumer…

With the end of Workplace, it’s fair to wonder if Meta was ever serious about the enterprise

X, formerly Twitter, turned TweetDeck into X Pro and pushed it behind a paywall. But there is a new column-based social media tool in town, and it’s from Instagram Threads.…

Meta Threads is testing pinned columns on the web, similar to the old TweetDeck

As part of 2024’s Accessibility Awareness Day, Google is showing off some updates to Android that should be useful to folks with mobility or vision impairments. Project Gameface allows gamers…

Google expands hands-free and eyes-free interfaces on Android