
The protocol controlling US train brakes authenticates commands with a checksum. CVE-2025-1727, CVSS 7.2. A software-defined radio can forge the packet. Every DOT mode has a version of this problem. https://na2.hubs.ly/H07GCQG0
Post summary
The text announces CVE‑2025‑1727, a checksum authentication flaw in U.S. train braking protocols that allows packet forging via software‑defined radio; it provides basic technical details but no PoC, exploit code, patch, or evidence of active exploitation.


