CubePilot OEM services and portals offline
Service Disruption
Summary
Hide ▲
Show ▼
CubePilot has taken OEM services, the community forum, the documentation portal, and the ERP portal offline while it investigates a security incident, cutting off access to core support and operational portals. The shutdown followed a July 24 DNS hijacking that exposed traffic to attacker-controlled infrastructure and raised the risk of credential capture. The disruption leaves users without normal access while integrity checks and recovery steps continue.
Related Happenings
CubePilot hit by cyberattack
Incident
H score26
First: 29.07.2026 00:17
Last: 29.07.2026 00:17
Sources 1
How related:
According to a status update published on CubePilot’s website, an attacker gained control of the cubepilot[.]org domain DNS settings on July 24, allowing them to intercept traffic intended for internal systems.
About this happening:
The CubePilot DNS hijacking incident exposed cubepilot[.]org traffic to attacker-controlled infrastructure, creating a risk that credentials entered on affected servic...
CubePilot hit by cyberattack
IncidentHow related: According to a status update published on CubePilot’s website, an attacker gained control of the cubepilot[.]org domain DNS settings on July 24, allowing them to intercept traffic intended for internal systems.
About this happening: The CubePilot DNS hijacking incident exposed cubepilot[.]org traffic to attacker-controlled infrastructure, creating a risk that credentials entered on affected servic...
Timeline
-
29.07.2026 00:17 1 articles · 2h ago
Attacker gains control of cubepilot[.]org DNS and intercepts traffic
Exploitation ObservedAn attacker gained control of the cubepilot[.]org DNS settings, redirected traffic intended for internal systems, and obtained TLS certificates covering every cubepilot.org subdomain, creating a risk that credentials entered on services such as the portal and forum on July 24 could be captured.
Show sources
- CubePilot drone software dev hit by DNS hijacking to intercept traffic — www.bleepingcomputer.com — 29.07.2026 00:17
-
29.07.2026 00:17 1 articles · 2h ago
CubePilot regains domain control and revokes fraudulent TLS certificates
Mitigation Patch UpdateCubePilot regained control of its domains on July 24, revoked the fraudulently issued certificates, preserved evidence, notified relevant providers, and reported the incident to the Australian Cyber Security Centre and law enforcement.
Show sources
- CubePilot drone software dev hit by DNS hijacking to intercept traffic — www.bleepingcomputer.com — 29.07.2026 00:17
-
29.07.2026 00:17 2 articles · 2h ago
CubePilot takes OEM services, forum, documentation portal, and ERP portal offline
Victim Impact UpdateCubePilot said all OEM services, the community forum, and the documentation portal are offline, and its ERP portal has also been taken offline as a precaution while it investigates the incident; the company is also evaluating firmware images downloaded on July 24-25 and warned users not to flash them until checks confirm they are safe.
Show sources
- CubePilot drone software dev hit by DNS hijacking to intercept traffic — www.bleepingcomputer.com — 29.07.2026 00:17
- CubePilot drone software dev hit by DNS hijacking to intercept traffic — www.bleepingcomputer.com — 29.07.2026 00:17