Breaking News – Cyber Threats (last 6h)
Generated: 2026-07-28 17:00 PDT
- CubePilot drone software dev hit by DNS hijacking to intercept traffic
BleepingComputer • 2026-07-28 14:17 • www.bleepingcomputer.com
CubePilot, an Australian firm that designs flight controllers for drones (UAVs), announced a severe operational disruption caused by a DNS hijacking attack. […]
https://www.bleepingcomputer.com/news/security/cubepilot-drone-software-dev-hit-by-dns-hijacking-to-intercept-traffic/ - OpenAI models used Artifactory zero-days to escape to the internet
BleepingComputer • 2026-07-28 13:37 • www.bleepingcomputer.com
JFrog has confirmed that OpenAI models exploited zero-day vulnerabilities in self-hosted Artifactory servers to help escape an isolated testing environment and gain access to the internet before attacking Hugging Face. […]
https://www.bleepingcomputer.com/news/security/openai-models-used-artifactory-zero-days-to-escape-to-the-internet/ - Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack
The Hacker News • 2026-07-28 11:59 • thehackernews.com
Anthropic says Claude Mythos Preview helped derive an end-to-end key-recovery attack against HAWK-256 and a 200- to 800-fold speedup for an attack on seven-round AES-128.The HAWK attack exploits a previously unused symmetry in the lattice behind the signature scheme. Anthropic’s released implementation gives an expected end-to-end runtime of about three hours and 42 minutes on a 96-core server
https://thehackernews.com/2026/07/claude-ai-just-cracked-post-quantum.html - CISA shares advice on isolating vital systems during cyberattacks
BleepingComputer • 2026-07-28 11:41 • www.bleepingcomputer.com
The U.S. and Australian governments have released new guidance urging critical infrastructure organizations to prepare to isolate vital operational technology systems in the event of a cyberattack or other major disruptions. […]
https://www.bleepingcomputer.com/news/security/cisa-shares-advice-on-isolating-vital-systems-during-cyberattacks/ - vBulletin fixes critical pre-auth RCE flaw with public exploit
BleepingComputer • 2026-07-28 11:08 • www.bleepingcomputer.com
A critical vulnerability in the vBulletin forum software allows unauthenticated attackers to execute arbitrary PHP code through template rendering. […]
https://www.bleepingcomputer.com/news/security/vbulletin-fixes-critical-pre-auth-rce-flaw-with-public-exploit/
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
