Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    CubePilot drone software dev hit by DNS hijacking to intercept traffic

    July 28, 2026

    Apple’s iMessage Scanning Flagged a Video of My Friend’s Dog as Nudity

    July 28, 2026

    ‘I Would Never Do This To You:’ Protesting Flock, Arizona Man Presents Plan to Surveil Government Officials

    July 28, 2026
    Facebook X (Twitter) Instagram
    • Demos
    • Technology
    • Gaming
    • Buy Now
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Canadian Cyber WatchCanadian Cyber Watch
    • Home
    • News
    • Alerts
    • Tips
    • Tools
    • Industry
    • Incidents
    • Events
    • Education
    Subscribe
    Canadian Cyber WatchCanadian Cyber Watch
    Home»News»CubePilot drone software dev hit by DNS hijacking to intercept traffic
    News

    CubePilot drone software dev hit by DNS hijacking to intercept traffic

    adminBy adminJuly 28, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    CubePilot drone software dev hit by DNS hijacking to intercept traffic

    CubePilot, an Australian firm that designs flight controllers for drones (UAVs), announced a severe operational disruption caused by a DNS hijacking attack.

    Hijacking domain name system (DNS) records allows threat actors to redirect users to their infrastructure, diverting traffic intended for a legitimate service. This exposes users to dangerous scenarios such as sensitive data interception, malware delivery, and phishing.

    According to a status update published on CubePilot’s website, an attacker gained control of the cubepilot[.]org domain DNS settings on July 24, allowing them to intercept traffic intended for internal systems.

    image

    The attacker also obtained TLS certificates covering all cubepilot.org subdomains, meaning users visiting affected services would have seen valid HTTPS connections while unknowingly landing on attacker-controlled infrastructure.

    “The certificates obtained by the attacker covered every cubepilot.org subdomain, so credentials entered on any of our services on 24 July may have been captured — the portal and the forum included,” reads the announcement.

    “If you used the same password anywhere else, change it there now,” warned CubePilot.

    CubePilot said it regained control of its domains on July 24, revoked the fraudulently issued certificates, preserved evidence, notified relevant providers, and reported the incident to the Australian Cyber Security Centre and law enforcement.

    Also, the company promised to notify affected entities directly where impact is confirmed through its investigation.

    CubePilot designs “autopilots” and navigation hardware for UAVs used in surveying, search and rescue, agriculture, and also defense and government applications.

    Previously, the company publicly announced its support for Ukraine, and its products have been delivered in the country, including as part of an Australian government assistance package.

    Currently, all OEM services, the community forum, and the documentation portal are offline.

    CubePilot’s CEO, Philip Rowse, stated on LinkedIn that the platform’s ERP portal has also been taken offline as a precaution while an investigation into the incident is underway.

    Regarding the integrity of the published firmware images, CubePilot is currently evaluating them and advised not to flash images downloaded on July 24-25 until checks to confirm their safety are completed.

    Firmware obtained before July 24 is currently considered safe to use.

    Finally, clients who receive payment requests claiming to be from CubePilot are advised not to take any action and instead to confirm them over the phone with their usual contact.


    article image

    Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.

    The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.

    Get the whitepaper



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleApple’s iMessage Scanning Flagged a Video of My Friend’s Dog as Nudity
    admin
    • Website

    Related Posts

    News

    Apple’s iMessage Scanning Flagged a Video of My Friend’s Dog as Nudity

    July 28, 2026
    News

    ‘I Would Never Do This To You:’ Protesting Flock, Arizona Man Presents Plan to Surveil Government Officials

    July 28, 2026
    News

    ‘The Government Hopes To Set a Precedent’: An Interview With the Man Charged for Allegedly Wiping His GrapheneOS Phone

    July 28, 2026
    Add A Comment

    Comments are closed.

    Demo
    Top Posts

    Catchy & Intriguing

    March 17, 202677 Views

    IP Address Investigations and Local OSINT

    March 20, 202639 Views

    The Canadian Password Playbook: Navigating Compliance and Building Strong Passwords

    March 25, 202635 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    85
    Featured

    Pico 4 Review: Should You Actually Buy One Instead Of Quest 2?

    January 15, 2021 Featured
    8.1
    Uncategorized

    A Review of the Venus Optics Argus 18mm f/0.95 MFT APO Lens

    January 15, 2021 Uncategorized
    8.9
    Editor's Picks

    DJI Avata Review: Immersive FPV Flying For Drone Enthusiasts

    January 15, 2021 Editor's Picks

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Demo
    Most Popular

    Catchy & Intriguing

    March 17, 202677 Views

    IP Address Investigations and Local OSINT

    March 20, 202639 Views

    The Canadian Password Playbook: Navigating Compliance and Building Strong Passwords

    March 25, 202635 Views
    Our Picks

    CubePilot drone software dev hit by DNS hijacking to intercept traffic

    July 28, 2026

    Apple’s iMessage Scanning Flagged a Video of My Friend’s Dog as Nudity

    July 28, 2026

    ‘I Would Never Do This To You:’ Protesting Flock, Arizona Man Presents Plan to Surveil Government Officials

    July 28, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • Home
    • Technology
    • Gaming
    • Phones
    • Buy Now
    © 2026 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.