This day 02:04 06:05 10:05 14:05 18:05 22:06
Info  2026-07-28 22:06Z · last 4h · 10 findings · glm-5.2:cloud

Threat Brief — 2026-07-28 — AI Breaks Crypto, Drones Hijacked

Executive summary. A DNS hijacking attack against CubePilot, an Australian drone flight-controller vendor, disrupted software distribution and intercepted developer traffic — a supply-chain concern for any organisation relying on UAV components. Separately, Anthropic disclosed that Claude derived a working key-recovery attack against the HAWK-256 post-quantum scheme and accelerated a 7-round AES-128 attack, signalling that AI is now materially advancing cryptanalysis. Two analysis pieces on AI agent sandbox containment and LLM cognitive safety monitoring round out today's intelligence.


Top items


Themes

AI as both weapon and shield. Today's findings show AI simultaneously breaking cryptographic primitives (HAWK-256, AES-128), proposing new safety-monitoring techniques, and demonstrating that sandbox containment still depends on fundamentals. The dual-use trajectory is accelerating — defensive teams should assume adversaries will apply the same AI-assisted analysis to their systems.

Supply-chain surface expanding into niche hardware. The CubePilot DNS hijack follows a week of supply-chain and third-party compromises (E&Y/ShinyHunters, Steam Workshop malware, GitHub Pyi defences). UAV and IoT vendors with lightweight DNS infrastructure are soft targets for traffic-interception attacks that can poison software distribution.


Public exploits · latest from the exploit feed

ArcadeDB < 26.7.2 Cross-Database Authorization Bypass (IDOR) 2026-08-02 15:45Z · RSS:cxsecurity-wlb Linux Kernel 7.0-7.0.8 & 7.0-rc-7.0-rc7 - Use After Free Exploit 2026-08-02 15:45Z · RSS:cxsecurity-wlb MODX.3.2.1 TLS cookie without secure flag set - COOKIE PHPSESSID HIJACK 2026-08-02 15:45Z · RSS:cxsecurity-wlb Linux Kernel 7.0 DRM UAF LPE Exploit published for CVE-2026-46215 CVE-2026-46215 2026-07-22 14:05Z · CXSecurity / Exploit-DB (RSS) ZTE ZXHN H188A V6 Authentication Bypass 2026-07-22 13:28Z · RSS:cxsecurity-wlb OpenEMR 7.0.2 Arbitrary File Read 2026-07-22 13:28Z · RSS:cxsecurity-wlb PHP Link Directory (phpLD) 2.1.3 - SQL Injection, IDOR, CSRF 2026-07-22 13:28Z · RSS:cxsecurity-wlb KNX visualisering - Broken Access Control 2026-07-22 13:28Z · RSS:cxsecurity-wlb D-Link DSL2600U rom-0 Admin Password Disclosure 2026-07-22 13:28Z · RSS:cxsecurity-wlb Windows Defender (MsMpEng.exe) Race Condition -> LPE / SYSTEM / Use-After-Free -> Crash 2026-07-22 13:28Z · RSS:cxsecurity-wlb