Russia's Bureau 1440 has launched 32 Rassvet satellites in two batches this year, but none have reached their intended 500-mile orbit. Tracking data shows most satellites topped out near 300 miles, several stopped maneuvering entirely, and at least three have already reentered or appear headed for reentry.
A federal grand jury in California indicted 40-year-old Searzhudin Tamirlanovich Aktulaev, extradited from Cyprus in May 2025, over a phishing scheme that used 255 fake accounts to send malicious Excel attachments to roughly 80,000 freelancers on an unnamed job platform between 2016 and 2017. The attachments deployed TVRAT and DarkVNC malware, giving the defendant remote access to victims' machines and letting him steal e-commerce credentials and personal data for fraud.
Hackers are actively exploiting CVE-2026-0768, a critical unauthenticated remote code execution flaw in the open-source Langflow AI development platform, to steal cloud and API credentials. VulnCheck's honeypots recorded roughly 50 exploitation attempts over a weekend, mostly from Russian IP addresses, with the count climbing to 360 attacks within days. The flaw lets attackers run arbitrary Python code with root privileges by abusing improper input validation in Langflow's code validator.
Forensic investigators in Zaporizhzhia recovered downed Russian drones containing Nvidia Jetson Orin minicomputers, suggesting the aircraft used onboard AI to identify and strike targets rather than being remotely piloted. The drones lacked antennas or radio signals, and Ukrainian officials say one struck propane tanks near a gas station with precision consistent with autonomous targeting. UN and Red Cross leaders separately warned this week that autonomous weapons targeting humans cross a dangerous moral line.
Nation-state hacking groups linked to Russia have shifted their phishing campaigns away from email and toward messaging apps like Signal and WhatsApp to target European Union officials. In response, EU governments are reportedly working to move away from these popular consumer messaging platforms for sensitive communications.
Ukraine has granted Elon Musk its highest state honor in recognition of Starlink's role supporting the country's military and communications. The move comes as Ukrainian officials continue pressing Musk to extend Starlink coverage into Russian territory.
Ukrainian long-range drones set fire to a Wildberries warehouse in Russia's Tambov region on Wednesday, destroying it completely, according to local officials. This marks the second strike on the facility in five weeks, following a July 18 attack that killed seven people and began a broader Ukrainian campaign against the retailer's facilities nationwide. Separately, Ukraine's military said it struck a Lukoil refinery in Nizhny Novgorod region overnight, sparking a fire at the plant.
OpenAI removed a network of ChatGPT accounts traced to Russia after investigating AI-generated social media posts that led to a wider covert influence operation. The campaign centered on a website featuring plagiarized academic content and a 'sovereignty index' favorable to Russia, with operators using VPNs to mask their location since OpenAI blocks access within Russia.
VK, formerly Mail.ru Group, has filed a lawsuit against Apple in a Moscow arbitration court after Apple pulled VK apps like VKontakte, VK Messenger, and Mail Cloud from the App Store in June to comply with EU sanctions. VK is demanding the apps be reinstated and is seeking daily penalties of roughly $696,000 if Apple refuses, which would total over $250 million annually.
In March 2024, three Romanian nationals attacked Iran International presenter Pouria Zeraati outside his London home, stabbing him in the leg before fleeing to Bucharest via Geneva. Investigators say the assault is part of a broader Iranian strategy of paying foreign criminals—including Russian mobsters, Hells Angels members, and Swedish teenagers—to target dissidents and journalists abroad, allowing Tehran to deny direct involvement.
Slovak investigators reportedly discovered a hidden backdoor of Russian origin embedded in the country's traffic speed camera systems. The finding raises concerns that the compromised devices could have been used for surveillance or remote manipulation without operator knowledge.
Slovakia's national security agency NBU issued an alert stating that NERO R-ONE traffic cameras purchased for a €30 million EU-funded monitoring project contain a hidden backdoor allowing shell and network access via SMS from hardcoded Russian phone numbers. The agency found the devices are rebranded versions of a Russian camera made by St. Petersburg-based Semicon, following opposition claims that the Interior Ministry bought them through a Cyprus shell company using fake certifications.