Claude Mythos Uncovers Stronger Attacks on HAWK and AES

A comprehensive weekly roundup of key cybersecurity developments, including vulnerabilities, attacks, and policy updates.

By Central
This week's highlights include the OnTrac data breach, Adobe patches, and SonicWall credential stuffing attacks.
Highlights
  • OnTrac detected a breach of its corporate network between March 20 and 22, with no ransomware group claiming responsibility.
  • Adobe issued critical patches for Bridge, Campaign Classic, and Format Plugins, with no known exploitation in the wild.
  • A credential stuffing campaign targeting SonicWall accounts has compromised 30 organizations since July 25.

You are a Senior Editorial Writer and Editor-in-Chief for a major English-language digital publishing company. Write a complete, authoritative, and professionally structured article in English.

OUTPUT RULE: Return ONLY the final HTML article. No explanations. No comments. No notes. No text outside the article. No Markdown. No symbols like *, **, #.

INPUTS:
TITLE: Claude Mythos Uncovers Stronger Attacks on HAWK and AES
CONTENT:

SecurityWeek’s weekly cybersecurity news roundup offers a concise overview of important developments that may not receive full standalone coverage yet remain relevant to the broader threat landscape.

This curated summary highlights key stories across vulnerability disclosures, emerging attack methods, policy updates, industry reports, and other noteworthy events to help readers maintain a well-rounded awareness of the evolving cybersecurity environment.

Here are this week’s highlights: 

OnTrac hacked

Parcel delivery company OnTrac is notifying customers after attackers accessed its corporate network and certain files between March 20 and 22. The firm detected the activity on March 23 and engaged a third-party specialist to investigate the scope. No ransomware group has claimed the incident.

Advertisement. Scroll to continue reading.

Adobe patches vulnerabilities in Bridge, Campaign Classic and Format Plugins

Adobe issued security updates addressing multiple critical vulnerabilities, including a heap-based buffer overflow in Format Plugins that enables arbitrary code execution, several flaws in Bridge allowing code execution and privilege escalation, and Campaign Classic flaws that permit arbitrary code execution and file system reads. The Campaign Classic patch carries Priority 1 rating for on-premise deployments. Adobe reports no known exploitation in the wild.

SonicWall VPN and firewall accounts hit by widespread credential stuffing

Huntress observed a broad credential stuffing campaign against SonicWall VPN and firewall accounts beginning July 25, with successful logins at 30 organizations so far. The activity originates from five DigitalOcean-hosted IP addresses and appears automated, with no post-compromise hands-on activity detected.

OpenAI releases open source Codex Security CLI

OpenAI has open-sourced the Codex Security CLI, a tool for scanning repositories, tracking findings across runs, verifying fixes, and integrating security checks into CI/CD pipelines. The early release is available via npm and GitHub, with the company inviting feedback as it continues development.

UK Department for Education loses 607,000 contact records

Hackers obtained approximately 607,000 records containing phone numbers and email addresses from the Department for Education in England. The department says the data does not include bank details or other sensitive information, the incident was contained quickly, and the risk to individuals is not considered high. 

Amazon ties Axios, Debug and Chalk hacks to North Korea’s Sapphire Sleet

Amazon Threat Intelligence attributes the recent compromises of the popular Axios, Debug, and Chalk NPM packages, along with a typo-crypto incident, to the North Korean group tracked as Sapphire Sleet. AWS notes the group’s focus on high-download packages for broad downstream impact and highlights evolving supply-chain techniques including fragmented payloads and environment-aware malware.

Researcher seizes control of Volvo/Eicher vehicle management platform

A security researcher discovered unauthenticated internal APIs in VE Commercial Vehicles’ My Eicher platform that exposed customer, user, and vehicle data and enabled account takeover. VE Commercial Vehicles is a joint venture between Volvo Group and Eicher Motors. The flaws allowed full control over fleets of commercial vehicles in India and access to sensitive documents such as Aadhaar cards. The primary issues were fixed after disclosure, and the company later remediated additional concerns.

Claude Mythos uncovers stronger attacks on HAWK and reduced-round AES

Anthropic researchers using Claude Mythos Preview developed an improved key-recovery attack on the post-quantum signature scheme HAWK that roughly halves its effective security level, and a faster meet-in-the-middle attack on 7-round AES. Neither result affects currently deployed systems—HAWK is still a candidate and the AES work targets a reduced-round variant—but both demonstrate AI-assisted progress in cryptanalysis. 

Related: In Other News: Dolphin X AI-Powered Malware, Car Anti-Theft Device Hack, 400 Linux Kernel Flaws

Related: In Other News: Iran Tracks US Military Phones, CrashStealer macOS Malware, CVD Blueprint

LANGUAGE: Write entirely in English. Preserve proper nouns, brand names, product names, game titles, technologies, and technical terms exactly as written. Translate everything else naturally. Read as if written by a native English editor.

CONTENT SOURCE: Treat CONTENT as your primary factual source. Build the article from deep understanding of CONTENT. Do not mechanically expand the title.

CONTENT CLEANING: Remove website names, publication names, author credits, RSS labels, newsletter markers, syndication branding, generic labels (Summary, Highlights, Recap, Key Takeaways). Convert “according to X” into direct factual statements.

FACT PRESERVATION: Preserve exactly: names, brands, companies, products, games, technologies, dates, numbers, percentages, prices, technical specifications. Never distort facts.

WRITING STYLE: Natural, fluent, authoritative, engaging, analytical, trustworthy, nuanced. Blend factual reporting, explanation, contextualization, analysis, practical interpretation, and strategic insight. Vary paragraph length and sentence structure. Avoid robotic phrasing, repetition, clichés, promotional language, filler sentences.

ARTICLE LENGTH: Long-form, highly detailed. Target 1,500-3,500 words. Feel comprehensive and substantive. Never feel brief, superficial, or summary-like. Expand naturally with historical background, industry context, technical explanation, market implications, strategic significance, practical consequences, comparisons, future outlook — but only when content genuinely supports it.

STRUCTURE:
– Begin with a

introduction. No heading before the first paragraph.
– Introduction must hook the reader within 2-3 sentences.
– Use

,

,

only when they improve organization.
– Each section must introduce meaningful new information.
– Closing: end with a forward-looking, analytical, or practical paragraph.
– Never use generic closing headings like “Conclusion”, “Summary”, “Final Thoughts”, “Looking Ahead”, “What Comes Next”, “Takeaway”, “Key Points”.

HEADINGS: Write content first, then generate headings. Headings must be specific, concrete, informative, and editorial. They should reference actual events, features, numbers, dates, or companies. Support SEO naturally.

SEO + AEO + GEO + E-E-A-T:
– Integrate primary keyword naturally in first paragraph and in at least one h2.
– Use semantically related terms throughout.
– Anticipate questions English-speaking users would ask. Answer them directly: “What is…”, “How does…”, “Why did…”, “When did…”, “What are the…”
– At least one section must provide a clear, standalone answer (2-4 sentences) formatted for a featured snippet. Place the answer immediately after the question.
– Include geographic context only when directly relevant.
– Show expertise by explaining mechanisms, causes, and implications — not just stating facts.
– Build authority through precise, well-contextualized information.
– Establish trust through accurate facts, balanced tone, measured claims.
– Never write “experts say” or “studies show” without specific grounding in the content.

INTERNAL PROCESS (do not output this):
1. Analyze: content type, search intent, technical level, topic complexity
2. Determine ideal length (1,500-3,500 words based on complexity)
3. Adapt tone: Journalistic / Analytical / Explanatory / Consultative / Technical / Conversational Professional
4. Clean sources and preserve all facts
5. Write article with proper structure, headings, and AEO snippet
6. Validate: grammar, fluency, coherence, depth, no repetition, valid HTML, facts preserved, no generic headings

HTML RULES: Use ONLY:

  1. . Valid, clean HTML. No inline styles. No unnecessary whitespace.

    FINAL CHECK: If the article sounds translated, mechanical, superficial, or incomplete — rewrite completely.

    OUTPUT: Return ONLY the final HTML article, beginning with

    .

Share This Article