Security Digest

Three-Day Deadlines, Hack-Back Licenses, and Sanctioned Gas

Issue 028 covers CISA's three-day patch mandate for an actively exploited remote-code-execution flaw in the Ray AI framework (CVE-2025-62593), and how that once-exceptional window became routine, the White House's authorization of private hack-back operations against foreign cybercriminals, a SafePal wallet breach exposing nearly 40,000 users' order data, Ukraine's combined cyberattack-and-drone-swarm campaign against Wildberries, and a Greek shipping loophole shielding over a fifth of Russian LNG exports to the EU from sanctions, alongside Ukraine's largest drone offensives of the war and an Iranian bounty on US troops amid the collapsed Hormuz ceasefire deadline.

Security Digest 028 — Audio

Listen to the audio version of this digest, voiced by Brian.

0:00 0:00

This Week in Brief

Issue 028 runs from 12 through 19 August, picking up cleanly where issue 027 left off on 12 August. Four stories carry the week. CISA gave federal civilian agencies three days to patch an actively exploited remote-code-execution flaw in the open-source Ray AI framework, tracked as CVE-2025-62593 — and the notable part is that three days is no longer exceptional. Under BOD 26-04 it has become the routine window, appearing 78 times in 2026 alone. The White House authorized vetted private US companies to conduct offensive hack-back operations against foreign cybercriminals, a policy shift with untested legal footing. Ukraine’s military intelligence combined a cyberattack on Wildberries’ payment and customer-service systems with a roughly 600-drone strike against the same company’s warehouse network, treating Russia’s largest e-commerce operator as a legitimate dual cyber-and-kinetic target. And a Greek shipping loophole let more than a fifth of all Russian LNG reaching the EU dodge sanctions in the first seven months of 2026, a detail with direct bearing on Norway’s position as Europe’s other major gas supplier.

The EU AI Act’s general application date, 2 August, is now 18 days behind us. Most high-risk-system obligations are formally in force across the bloc, though implementation and enforcement mechanics in individual member states remain unsettled, worth watching closely as the first real compliance disputes start to surface.

Security

CISA’s Three-Day Mandate for the Ray AI Framework Flaw (CVE-2025-62593)

CISA added CVE-2025-62593, a code-injection and remote-code-execution vulnerability in the open-source Ray AI framework, to its Known Exploited Vulnerabilities catalog on 17 August, with a remediation deadline of 20 August — the day this issue publishes. Read against the catalog itself rather than the coverage, the three-day window is not a record: it appears 78 times in 2026 alone, roughly two in five of this year’s KEV additions, and the catalog also contains four two-day windows and six one-day windows. Under BOD 26-04, three days is the standard tier, and the real story is that a deadline which would once have been extraordinary is now ordinary (CISA KEV catalog v2026.08.19, checked directly; reporting from The Register, Wired, Dark Reading, TheNextWeb, Nextgov).

Operational read: CISA’s own catalog entry describes a developer-facing exposure, not a server one — “developers using Ray as a development tool may be exposed to this vulnerability exploitable through Firefox and Safari.” That points at engineering laptops and local dashboards reached from a browser, which is a different patching population from the production clusters the framework’s name suggests, and an easier one to miss because those machines are rarely in the server patch cycle. A KEV listing means active exploitation is already documented, not theoretical. Anyone running Ray should apply the vendor fix (GHSA-q279-jhrf-cc6v), sweep developer workstations as well as cluster nodes, and check for locally bound Ray dashboards reachable from a browser session.

SafePal Wallet Breach Exposes Nearly 40,000 Users’ Order Data

Binance-backed hardware wallet vendor SafePal disclosed on 16 August that a Broken Object Level Authorization flaw in a third-party order-tracking plugin on its e-commerce portal exposed 39,798 customers’ order data, names and shipping addresses, over roughly 13 months, from September 2025 through April 2026. The root cause was a failed automated cleanup script that should have purged old order records and did not. Wallet keys, seed phrases and funds were unaffected (CoinDesk, Gizmodo, U.Today, FinanceFeeds, Yahoo Finance).

Operational read: the wallet’s cryptography held, the bolted-on web shop did not, a recurring pattern across the hardware-wallet sector. Anyone who ordered a SafePal device in the exposure window should treat their name and address as burned, watch for phishing that references a real order number to build false legitimacy, and remember a clean seed phrase means little if the shipping label attached to it is now public.

White House Authorizes Private Hack-Back Operations

The Trump administration issued a policy authorizing vetted private US companies to conduct offensive cyber operations against foreign-based cybercriminals, dated 13-14 August (NPR, WSJ Pro Cybersecurity, Fast Company, GovTech, Star-Advertiser, TechTimes). Details on the vetting process and any oversight body remain thin across all six outlets.

Operational read: the legal liability question is untested in US courts, and any firm that takes this up exposes its own staff to retaliation from state-linked actors who observe none of the same rules of engagement. It also complicates deconfliction with law enforcement, a private hack-back operation can trample an ongoing FBI or Europol investigation without knowing it exists. Incident-response and threat-intel firms should treat this as a future liability question rather than a present capability, and hold off on any client conversation that assumes offense is authorized.

Ukraine’s Hybrid Cyberattack-and-Drone Campaign Against Wildberries

Ukraine’s military intelligence agency, HUR, hacked Wildberries’ payment and customer-service systems on 10-11 and again on 15 August, disrupting checkout and remote support for Russia’s largest e-commerce platform. The cyberattacks ran alongside a roughly 600-drone strike against the same company’s warehouse network. Ukraine has hit an estimated 20 to 23 Wildberries facilities since July, and Russian officials have confirmed a resulting shortage of drone interceptors (bne IntelliNews, TechTimes, Independent).

Operational read: this pairs deliberate cyber disruption with kinetic destruction against civilian commercial infrastructure treated as a legitimate wartime target, disable the systems first, then hit the buildings while the operator is still recovering. Expect the template to spread. Critical-infrastructure and large-retail defenders elsewhere should start modeling combined cyber-plus-kinetic threat scenarios rather than treating cyber and physical security as separate disciplines.

Shorter Items

China’s Z.ai says its GLM-5.3 model edged past Anthropic’s Mythos 5 on cyber-defense benchmarks, not merely approached it: on CyberGym, which tests whether a model can inspect source code, find vulnerabilities and verify them, Z.ai reports GLM-5.3 at 84.5% against Mythos 5 at 83.8% and OpenAI’s GPT-5.6 Sol at 83.6% (KrASIA, 17 August; also MSN, NewsBytesApp, The Hindu). The figures are Z.ai’s own and the margin is well inside the noise of a single benchmark. Independent replication has not been reported, so treat it as vendor marketing until it is — but note the claim is a lead, not a near-miss.

Sheffield IT firm Resolve says it identified a new attack technique that abuses trust in ChatGPT as a source, but only one syndicated report (MSN) could be located, no independent outlet has corroborated it. Unconfirmed for now.

Norway and the Nordics

Spectra Defense Technologies Opens Expanded Oslo Facility

Spectra Defense Technologies Norway opened an upgraded facility in Skøyen, Oslo, on 18 August, roughly 2,300 square metres, more than doubling its engineering, production and customer-support capacity for C5ISR systems supplied to European and allied forces. The announcement ran as a company press release syndicated across wire outlets (GlobeNewswire via Globe and Mail, Business Insider markets wire, Finanznachrichten.de) rather than independent reporting, treat the capacity figures as company-stated until verified elsewhere. The expansion lands as European militaries keep scaling C5ISR procurement amid the war in Ukraine, positioning the Oslo site as a regional production and support hub rather than a satellite office.

The Nordic energy-security thread flagged in issue 027 keeps compounding. This week’s Strait of Hormuz disruption (see Conflicts) and the Greek LNG sanctions carve-out (see Regulatory) both land on Norway’s exposure as a major European energy exporter, worth tracking together rather than as isolated stories.

Regulatory and Policy

Greek Shipping Loophole Shields Russian LNG From EU Sanctions

Greek shipping company Dynagas delivered €2.35 billion, about $2.72 billion, of Russian LNG to EU customers in the first seven months of 2026, over a fifth of all Russian LNG reaching Europe, under a sanctions exemption Greece secured during EU negotiations. The exemption runs ahead of the EU’s planned full ban on Russian LNG imports, effective January 2027. Analysis originally from Urgewald (Kyiv Independent, Financial Times, Guardian, 18 August).

Operational read: the carve-out is a live case study in how one member state’s negotiated exception can undercut a bloc-wide sanctions regime. Worth watching as a precedent as the January 2027 ban approaches and other states look for exemptions of their own, and as a factor shaping how much of the vacated Russian volume Norwegian gas realistically has to fill.

EU Weighs Roughly a Third More Sanctioned Russian Entities

EU foreign policy chief Kaja Kallas is reportedly planning to propose expanding the roster of sanctioned Russian entities by about a third this autumn, described as the most far-reaching sanctions push since the war began (Guardian, 17 August). This is a single-source report from the Guardian’s Ukraine war briefing, not yet independently corroborated as a formal proposal, worth confirming before treating it as policy.

Epstein

Anthropic CEO’s Wife Sought Epstein Investment After His Conviction

Cami Clark, wife of Anthropic CEO Dario Amodei, sought investment from Jeffrey Epstein for two ventures — a self-described “free luxury porn” company aimed at women, and a women’s health startup — in a March 2012 email exchange, four years after Epstein’s 2008 conviction for soliciting prostitution and his registration as a sex offender. She was introduced to him in March 2011 by literary agent John Brockman. There is no indication in the files that Epstein invested (Wall Street Journal, reporting on emails in the Epstein files; also Forbes, 14 August).

Provenance matters here and the wire coverage blurred it. This is not a new congressional release: the emails were already in the published Epstein files, and the news is the Journal’s reporting on them. Aggregator write-ups that describe it as a fresh tranche are compressing two different things.

No wrongdoing is alleged against Clark or Amodei, and presumption of innocence applies to everyone named in connection with Epstein throughout this coverage. The relevance to this publication is narrow and specific: the Journal describes Clark as a “sounding board and strategic adviser” to her husband and to Anthropic, which is what moves a fourteen-year-old introduction from gossip into the governance column. What the documents show is contact and a funding request, nothing more. No Nordic figure appears in any sourced claim this week.

Conflicts

Ukraine Launches Largest Drone Offensives of the War on the Moscow Region

Ukraine ran successive drone waves against Russia from 16 to 18 August: over 130 drones hit Russian territory on 16 August, followed by a wave of 600 to 637, then a reported wave of around 800 targeting the Moscow region and Wildberries infrastructure on 17-18 August. These are successive waves, not one event counted twice — the roughly 600-drone figure attached to the Wildberries warehouses is the second wave, and the ~800 is the third; the totals should not be added together to reach a week’s figure. Casualties were reported on both sides across the week, in Kryvyi Rih, Kyiv, the Moscow region and Rostov. Russia claimed a record 1,478 intercepted drones in 24 hours on 17 August — more than Ukraine is reported to have launched (Guardian, CBS News, DW, Firstpost, AP).

Russia Escalates “Weaponize Winter” Campaign Against Ukraine’s Energy Grid

Naftogaz reported 13 Russian strikes on its facilities in one week, and an attack on a DTEK mine killed one worker. More than 300 attacks on Naftogaz infrastructure have been recorded since the start of the year. President Zelensky said Ukraine now has “virtually no intact thermal power plants” left (Guardian, AP, 17-18 August).

Iran Announces Bounty on US Troops, Trump Threatens Oman Over Hormuz Shipping Deal

Iran’s army commander-in-chief, General Amir Hatami, announced a $30,000 bounty for killing or capturing US military personnel, doubling to $60,000 if carried out by a woman, on 16-17 August. The claim traces to Iranian state media outlet Mehr News and is reported multi-outlet from there (OANN, NewsX, ABP Live), treat the bounty figure as single-source-origin even though it is widely syndicated. Separately, the 60-day US-Iran ceasefire and negotiation deadline expired without a deal, a vessel was struck by an unidentified projectile in the Strait of Hormuz, and Trump threatened to bomb Oman over its Iran shipping arrangement (Outlook India, MSN, HelsinkiTimes, SAN). We could not confirm a Reuters or AP report of the Oman threat and have removed that attribution rather than leave a slashed wire credit standing on the strongest claim in the paragraph. Treat the Oman threat as uncorroborated pending a named primary outlet.

Operational read: three escalation tracks are running in parallel, the drone war intensifying on both sides, Ukraine’s civilian grid entering another winter under direct attack, and a Gulf shipping corridor now sitting one incident away from a wider confrontation. None of these de-escalate on their own, and Norway’s energy and shipping exposure touches two of the three directly.

By the Numbers

Metric Figure
CISA patch deadline for CVE-2025-62593 3 days (added 17 Aug, due 20 Aug)
3-day KEV windows in 2026 78 of 187 additions
SafePal accounts exposed 39,798
SafePal exposure window ~13 months (Sep 2025–Apr 2026)
Wildberries facilities hit since July 20–23
Wildberries drone strike, mid-August (2nd wave) ~600 drones
Peak Ukraine drone wave, 17-18 Aug (3rd wave) ~800 drones
Russia’s claimed interceptions, 24h 1,478 drones
Naftogaz strikes, one week 13
Russian LNG reaching EU via Greek loophole >20% (€2.35bn / ~$2.72bn, Jan–Jul 2026)
EU sanctioned-entity list, proposed growth ~33%
Iran bounty on US troops $30,000 ($60,000 if by a woman)
Days since EU AI Act general application date 18

What to Do This Week

  1. Patch or isolate any Ray framework deployment now. CVE-2025-62593 is under active exploitation regardless of whether your organisation falls under CISA’s federal mandate.
  2. If you or a client ordered a SafePal device between September 2025 and April 2026, flag the leaked name and address as burned and watch for order-referencing phishing.
  3. Before any incident-response engagement touches offense, confirm the hack-back authorization’s vetting requirements actually exist and apply. The legal exposure is real and untested.
  4. Model combined cyber-plus-kinetic scenarios for e-commerce and warehouse infrastructure. The Wildberries campaign is a working template, not a one-off.
  5. Energy and shipping clients with Russia-adjacent exposure should track the January 2027 Russian LNG ban and the Greek exemption precedent now, ahead of the deadline rather than after it.
  6. Treat the Strait of Hormuz as a live flashpoint and review contingency plans for anything routed through it.

This issue draws on open-source reporting cross-checked against named outlets, researched directly against the local SearXNG instance. Sources referenced above include the CISA Known Exploited Vulnerabilities catalog (checked directly), the Wall Street Journal, Forbes, KrASIA, The Register, Wired, Dark Reading, TheNextWeb, Nextgov, CoinDesk, Gizmodo, U.Today, FinanceFeeds, Yahoo Finance, NPR, WSJ Pro Cybersecurity, Fast Company, GovTech, Star-Advertiser, TechTimes, bne IntelliNews, Independent, GlobeNewswire, Globe and Mail, Business Insider, Finanznachrichten.de, Kyiv Independent, Financial Times, Guardian, CBS News, DW, Firstpost, AP, OANN, NewsX, Mehr News, ABP Live, Outlook India, HelsinkiTimes, SAN, MSN, NewsBytesApp, and The Hindu. Single-source and contested claims are marked in the text, and claims this desk could not independently corroborate are named as such. Presumption of innocence applies throughout the Epstein coverage.

Issue 028, week of 12–19 August, 20 August 2026

AI disclosure

This article is generated by an automated pipeline that handles source collection, summarisation, and drafting end-to-end. Human review is light-touch and limited to publication gating. Editorial responsibility: Thomas A. Kleppestø.

Pipeline stages: fetch, summarise, draft.