Tag: united states
320 articles

Air Force Seeks AI to Streamline Minuteman III Missile Fleet Data
The Air Force is on a mission to modernize its Minuteman III missile fleet by harnessing the power of artificial intelligence to unify the vast amounts of data scattered across 60 disparate systems. By streamlining this data, the Air Force aims to gain centralized control and improve the efficiency of its aging intercontinental ballistic missile fleet.

Ex-NSA Chief Warns of Water System Cyber Risks
Retired General and ex-NSA chief Paul Nakasone warns that water systems are vulnerable to cyber threats, urging stricter defenses and cautioning that PLCs should be kept offline. He calls for higher standards and new partnerships to protect critical infrastructure.

Pentagon Expands Nuclear Options in Posture Review
The Pentagon is launching a classified review of its nuclear posture, aimed at providing more options for the White House, with Undersecretary of Defense for Policy Elbridge Colby stressing that no changes have been made so far. This reexamination of employment guidance is tied to the responsibilities of the commander of STRATCOM and the authorities of the defense secretary.

Ransomware Attacks Surge 20% as New Gangs Target Finance, Healthcare
Ransomware attacks are on the rise, surging 20% in July with a staggering 799 incidents reported, with finance, healthcare, and tech industries becoming prime targets for new gangs. The alarming increase marks the second-busiest month of the year so far, with the US leading the list of targeted countries.

Thousands of U.S. Water System Controllers Remain Exposed Online
A recent scan revealed over 4,000 vulnerable water system controllers exposed to the public internet, including 22 in cities that have already faced cyberattacks on their water and wastewater systems. This alarming discovery highlights the urgent need for increased security measures to protect these critical systems.

Senate Intel Chair Urges Treasury to Bolster OT Security with Tax Code Tweaks
The US is under attack, with recent breaches hitting community water systems in Minnesota and Iran-backed threats targeting critical infrastructure, prompting Sen. Tom Cotton to urge the Treasury Department to take action. He’s calling on Treasury Secretary Scott Bessent to use tax code tweaks to boost investment in operational technology security.

Snowflake hacker pleads guilty to massive data extortion scheme
In a major win for justice, Connor Moucka, a Canadian national, has pleaded guilty to masterminding a massive data extortion scheme targeting Snowflake customer environments, a case that could put him behind bars for up to 32 years. The guilty plea marks a significant milestone in one of the most expansive data-theft-and-extortion campaigns of 2024.

Snowflake Breaches Expose 100 Million People as Hacker Pleads Guilty
A massive data breach at Snowflake has left a staggering 100 million people vulnerable, after hackers exploited stolen credentials to access sensitive records at over 165 organizations. The mastermind behind the breach, Connor Riley Moucka, has pleaded guilty to multiple charges, including computer fraud and identity theft.

Kali365 Exploits Microsoft Authentication in US Firms
Meet Kali365, a sneaky device-code phishing kit that's exploiting Microsoft authentication to infiltrate US firms, with over 80 public sessions compromised weekly. By masquerading as trusted services, Kali365 tricks victims into handing over access to their Microsoft 365 email, documents, and cloud resources.

White House Charts Course to Secure AI with Flexible Framework
The White House is taking a bold step towards securing AI, with National Cyber Director Sean Cairncross emphasizing the importance of speed, adaptability, and partnership with private-sector defenders to protect the country's systems. By striking a balance between responsible use, security, and mutual benefit, the administration aims to foster a flexible framework that prioritizes collaboration over regulation.

Trump Orders Overhaul of White House Helipad Project
The White House has long needed a helipad of its own to safely land Marine One and preserve the South Lawn's pristine grass, but President Trump's vision for the project has just taken a dramatic turn. He's ordered contractors to start over from scratch, reportedly due to concerns over the helipad's appearance and slope.

Phishing Service Greatness Exploits RingCentral to Target Microsoft 365 Accounts
A recent security bulletin from RingCentral may have inadvertently given hackers a blueprint for a phishing campaign, as a notorious phishing service known as Greatness has begun targeting Microsoft 365 accounts with sophisticated attacks. Greatness, a phishing-as-a-service platform, has upgraded its tactics to include advanced threats like adversary-in-the-middle attacks and device-code phishing flows.

Congressional Candidate Targets License Plate Cameras
Meet Adam Lee Heimerman, an independent congressional candidate with a bold - and potentially costly - stance against license plate cameras, who now faces four felony vandalism charges for allegedly destroying four automated license plate reader cameras in Tennessee. His campaign to represent the state's 2nd Congressional District just got a lot more complicated.

Chinese Threat Actor Exploits Leaked DarkSword Kit to Deploy GHOSTBLADE on iOS Devices
A Chinese threat actor has cleverly exploited a leaked DarkSword kit to deploy GHOSTBLADE on iOS devices, with hosting concentrated in Hong Kong but reaching as far as Japan, the US, and Europe. This surprising attack follows the kit's public leak, which has been rapidly reused to target Apple devices running iOS versions 18.4 through 18.7.

Forum Vigilance Bolsters Online Security Discussions
Meet 2nd Lt. Garret Burgess, a nuclear and missile operations officer who's on high alert 24/7, as captured in a gripping photo inside a launch control center at Malmstrom Air Force Base. He stands guard behind a blast door that safeguards access to the underground control center.

CMMC Pause Spurs Urgent Gap Assessments
The Department of Defense's sudden pause on CMMC Phase 2 has created an urgent need for gap assessments, especially for small and non-traditional businesses struggling to meet compliance requirements. This 60-day review aims to ease the burden, but existing obligations, including Phase 1 self-assessment requirements, remain in force.

Army Launches Reveille Forge for Air Defense Integration Testing
The Army has launched Reveille Forge, a cutting-edge facility that unites military, industry, and academic teams to revolutionize air defense integration testing. Located at Redstone Arsenal in Alabama, this game-changing environment enables seamless collaboration and integration of innovative solutions with existing defense systems.

Analog Devices Exposes Data Breach, Probes Incident
Analog Devices recently uncovered a data breach, swiftly springing into action to contain the incident and minimize damage after detecting unauthorized access to its systems on June 23. The company has launched a thorough investigation, working with cybersecurity experts and law enforcement to understand the breach and prevent future threats.

US Navy Decommissions Key Missile Submarine Amid Capability Gap
The US Navy is bidding farewell to one of its most powerful submarines, the USS Georgia, a nuclear-powered missile submarine that's served for over 42 years, as it begins its formal inactivation on July 31. This marks the start of the end of its service life, with the submarine ultimately headed for recycling.

Tech Giants Form Alliance to Bolster Open-Source AI Models
In a bid to revolutionize AI security, 37 tech giants, led by NVIDIA, have joined forces to form the Open Secure AI Alliance, championing the development of open-source AI models that boost cybersecurity and foster customization. By uniting behind open models, harness, and tools, the alliance aims to safeguard infrastructure and empower defenders to adapt and deploy robust protections.

Ransomware Breach Exposes Fairlife's Data, Disrupts Production
Fairlife has bounced back from a ransomware attack, with Coca-Cola confirming that the majority of production has resumed at its four US facilities. The breach, which involved unauthorized access and data theft, has had a minimal impact on the retail availability of Fairlife products.

CISA Faces Industry Pushback on Cyber Incident Reporting Rule
Industry leaders are pushing back on a proposed cyber incident reporting rule, arguing it casts too wide a net, with one critic saying it would ensnare far too many companies. The rule, aimed at bolstering national security, has sparked concerns about its broad scope and reporting requirements.

Tech Giants Push Open-Source AI to Bolster Cybersecurity Defenses
Microsoft and over two dozen tech giants are calling on policymakers to back open-source AI, believing it can strengthen America's cybersecurity defenses and foster a vibrant tech ecosystem. By embracing open-source AI, the US can avoid relying on just a few closed systems and instead build a robust and diverse technological landscape.

OnTrac Data Breach Exposes Customer Information After Network Hack
OnTrac recently suffered a network hack, resulting in a data breach that exposed customer information, with the incident detected on March 23 after an intrusion occurred between March 20-22. Fortunately, the company has no evidence of the stolen information being misused or published.