SourcesCheck Point Claude Code CVE-2025-59536 and CVE-2026-21852 Triple AttackCheck Point Research·high signalXBlueskyLinkedInCopy linkHooks RCE via settings.json, MCP consent bypass, API key exfiltration via ANTHROPIC_BASE_URL override. Untrusted repos are attack surface.SourceSource pageCheck Point Research↳ Follow the threadShared entity / Stack layerCline Desktop 0.0.25 lets Claude Code and Codex CLI providers start sessions with no API key, and caps Codex models at real backend budgetsGitHub ReleasesShared entity / Stack layerDeepSeek released V4.1-Flash: a 552B causal encoder-decoder that activates 8B params on prefill and 16B on decodeDeepSeek (Hugging Face model card)Shared entity / Stack layerClaude Code 2.1.267 adds a hard effort ceiling and a flag that stops reusing the recorded system promptClaude Code changelogShared entity / Stack layerPattern: git worktrees became table stakes across three agent harnesses in four daysGitHubShared entity / Stack layertigerless-labs/agent-memory is holding ~130 stars a day with a no-API-key markdown memory runtimeGitHubShared entity / Stack layerA skill whose entire job is stopping coding agents from burying the answer gained 4,650 stars in one dayGitHub TrendingShared entity / Stack layerClaude Code MCP servers configured as `http` never connected if the server only spoke legacy HTTP+SSEGitHubShared entity / Stack layerSomeone built a chatroom for people waiting on Claude Code, and it hit 876 upvotes in r/ClaudeAIr/ClaudeAI