LC-2 · Software Danger Reports
LrrK Kinematic Software Danger Report
Source-imported record. This page is not a QSVFF-sealed filing or a verification certificate.
# LrrK Kinematic Software Danger Report **LRRK Watch / Software Assurance** — Monthly filing. | Field | Value | | --- | --- | | Collection cutoff | 30 November 2016 | | Platform | Quiet Systems | | Series | DKSR-M-2016-11 | | Status | short | | Data label | Open-source intelligence // LRRK analytic product | | Handling | Public-source material. Retrospective monthly. Image rights require separate verification before publication. | ## Executive read ### BLUF Archival IEEE record of the June Bebop ARDiscovery findings. Date the paper. Do not invent a second vuln. ### Key judgments 1. **[Assessment — High confidence]** MILCOM 2016, Baltimore, 1–3 November 2016. IEEE Xplore date 1 November 2016. 2. **[Assessment — High confidence]** Same Parrot Bebop ARDiscovery / Wi-Fi AP case as 2016-06-A. No CVE. 3. **[Inference — Moderate confidence]** Authors assert the class is systemic in Wi-Fi Parrot UAVs — that is assertion, not a new ID. ### Analytic labels - **Fact** — verified reporting or primary record - **Assessment** — analytic judgment - **Inference** — reasoned but not directly observed - **Uncertainty** — unresolved information gap ### Source grades - **A1** — authoritative primary record / directly confirmed - **B1–B2** — generally reliable and corroborated - **C3** — useful but requires caution ## 01. Hooper et al.: MILCOM paper on Bebop ARDiscovery *Event / publication dates: MILCOM 2016, 1–3 November 2016. IEEE Xplore 1 November 2016* | Field | Value | | --- | --- | | Component | firmware | | Product | Parrot Bebop UAV (ARDiscovery + Wi-Fi AP) | | CVE / advisory | no CVE | | Patch | none found as a Parrot CVE | | Exploit status | public writeup | | Taxonomy | CAPEC-115 · ATT&CK ICS T0860 · T1692.001 (T0855) · OWASP IoT I1 · I2 · EMB3D TID-406 | **Verified record — [Fact — A1] DOI 10.1109/MILCOM.2016.7795496. https://doi.org/10.1109/milcom.2016.7795496** **Exposure.** DoS, buffer overflow, ARP cache poisoning. Same Move/Act path as June. **Intelligence assessment.** [Assessment — High confidence] 1–3 November 2016. Same case family as 2016-06-A. **Opportunity.** Cite the paper. Keep first-public dating on June. **LRRK relevance.** Control Fabric. **Confidence.** High. ## Forward indicators 1. Later Parrot ANAFI CVEs (2019+) — out of window; do not back-date. > **Collection integrity.** Same research line as 2016-06. Not a second vuln. Not padded. No exploit steps. *LRRK — security assurance for systems that sense, move, and act.* <p align="right"><span style="opacity:0.35;letter-spacing:0.18em;font-size:0.8em">L-C2</span></p>