• A devastating zero-day vulnerability in Palo Alto Networks firewalls is under active exploitation by suspected state-sponsored hackers, allowing unauthenticated attackers to seize complete control of enterprise security infrastructure. The flaw, tracked as CVE-2026-0300 with a critical CVSS score of 9.3, targets the User-ID Authentication Portal service in PAN-OS software and has been weaponized since at […]

    The post Palo Alto Firewalls Hit by Zero-Day Allowing Arbitrary Code Execution as Root appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Hackers linked to the long-running FrostyNeighbor cyber‑espionage group have intensified attacks against Ukrainian government organizations, deploying updated techniques that rely on scheduled tasks for stealthy persistence and server-side validation to evade detection. FrostyNeighbor also tracked as Ghostwriter, UNC1151, and TA445 has been active since at least 2016 and is widely believed to operate in alignment […]

    The post Hackers Exploit Scheduled Tasks for Persistence in FrostyNeighbor Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A faulty update to Dell’s SupportAssist Remediation service is triggering widespread system crashes, forcing thousands of Dell and Alienware devices into continuous Blue Screen of Death (BSOD) loops. Affected systems repeatedly crash with the “CRITICAL_PROCESS_DIED” error, often every 30 minutes, severely disrupting productivity and system stability. Dell has acknowledged the issue and confirmed that its […]

    The post Dell SupportAssist Update Forces Windows Systems Into BSOD Loop appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A widely used npm package with more than 822,000 weekly downloads has once again become the center of a serious supply chain attack, raising fresh concerns across the JavaScript ecosystem. Security researchers at Socket have uncovered multiple malicious versions of the popular node-ipc library containing stealthy credential-stealing malware and backdoor capabilities. The affected versions, node-ipc@9.1.6, […]

    The post Popular node-ipc npm Library Hit by Supply Chain Attack, Impacting 822K Weekly Downloads appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Golden Dome’s defenders are downplaying a new $1.2 trillion estimate for Donald Trump’s ambitious missile-defense plan, though they declined to detail just how they disagree with the Congressional Budget Office’s report.

    Space Force Gen. Michael Guetlein, the program’s leader, said the CBO report released Wednesday relied on outdated cost estimates for existing technology and didn’t account for the missile shield’s undisclosed mix of technology and weapons.

    “They did not estimate the architecture that we're building. Why is that? Well, first of all, they didn't come and ask us what we're building,” Guetlein said Thursday morning during the Inside the Dome event in Washington, D.C. “More importantly, we have not been putting a lot of information out in the public [about] exactly what we're doing, because the intelligence threat is so high.”

    CBO officials declined to comment when asked whether they reached out to Guetlein, the Pentagon, or the Golden Dome office when working on the report.

    The report says its $1.2 trillion estimate is based on the Golden Dome vision laid out in a January 2025 executive order, which President Trump said would cost about $185 billion: “Because DoD has not provided details about its objective architecture for GDA, CBO used the language in the executive order as a guide to determine what components to include in its notional NMD [national missile defense] system.”

    Earlier CBO reports have indicated that the Defense Department, under the Trump administration, has not responded to researchers’ requests for information.

     A Golden Dome spokesperson told reporters after Guetlein’s public comments that the general is looking for ways to reduce costs by using artificial intelligence and existing technology.  she declined to provide details.

    “You can't just take what we've done in the past and multiply it forward, or you're going to get large numbers like CBO got,” Guetlein said during the event.

    During a subsequent panel, Rep. Jeff Crank, the head of the all-Republican Golden Dome Caucus, criticized the CBO’s estimates and claimed the nonpartisan research agency’s findings would be used by political enemies of the president. 

    “I think it's very unfortunate that it came out,” Crank, R-Colo., said. “Some of the folks that are opposed to Golden Dome for whatever reason, for whatever political reason, they can continue to bury their heads in the sand…and they will use the CBO support as a wedge, as a tool, to say, hey, look, we can't afford this. But I think, as a country, we've got to confront this.”

    When asked what the biggest threat to Golden Dome is, Rep. Mark Messmer, R-Ind., agreed it was politics, but said he was optimistic the program could get support across the aisle.

    “It's unfortunate that, I mean, because it's the president's idea, we have people that object and fight it just because of that,” Messmer said. “But we've got to be consistent, we've got to continue to make the real threat deterrence that our country faces.”

    CBO’s two-decade estimate is larger than the nearly $80 billion the administration plans to spend in the Golden Dome for America account over the next five years. But, so far, the missile defense program has been backed through heavily partisan reconciliation funding measures. 

    Golden Dome netted $24 billion in Congressionally-approved reconciliation funds in last year’s budget, and another $17 billion has been requested through the same method this year. 

    Guetlein acknowledged that it’s unclear what future funding and final size of the project will look like, but said components of the system will still be necessary for homeland security. 

    “No matter what we look like, no matter how we're organized, no matter how well we are or not funded, the threat is not going away,” he said. “So when you start talking about longevity, we're here to stay. You may call me something different next month, or you may rewicker some of the funding, but we're here to stay because we have to protect the homeland.”

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Flying and downing drones are becoming part of many U.S. soldiers’ jobs, so over the last few weeks in Lithuania, infantry units worked to add drone warfare to their ground-combat expertise.

    During the fifth iteration of Project Flytrap, a U.S. Army-NATO exercise in Europe, members of the 2nd Cavalry Regiment joined international partners in testing more than 20 pieces of equipment with Strykers and unmanned ground vehicles.

    “So what I saw from the squadron level, with my main command post and these new systems, was understanding the battlefield architecture, where things are not just on the ground, but their effects in the sky,” Lt. Col. Jason Kruck, who commands 2nd Squadron, 2nd Cavalry Regiment, told reporters Thursday.

    Where traditional infantry operations would send up drones to spot targets for indirect fire, they now must also have to be aware of what’s flying above them and how they might shoot it down or move around the battlefield to avoid being seen.  

    “Well, now with the counter-UAS detect systems, we could identify that there is an enemy air drone coming through our sector, and then we developed new [tactics, techniques and procedures] on how we counter that,” Kruck said. “What are the options, and how does that balance between intelligence collection, the fires element—who now also has to cover down on that counter-UAS viewpoint? And then over to the maneuver side, and how that synergy between those three portions of warfighting work together.” 

    To do that, soldiers used reconnaissance drones, first-person view attack drones, jammers, and AI-enabled operating systems to help find and target the enemy. 

    This most recent exercise focused on the troop and squadron level—the cavalry equivalent of a company and battalion, the regimental executive officer said.

    “So I think with each one of the Flytraps, what I think we've seen a trend of is…we're always increasing scaling,” said Maj. Galen King. “So both the level of unit that we are testing, we are also talking scaling of the amount of UAS that are flying, and then we're always increasing the realism and complexity of both the scenario and the [opposition force].”

    Though his unit is still gathering lessons from 5.0, the expectation is that 6.0 will be even bigger.

    “We will move beyond the troop and the squadron headquarters that we were really focused on this time and continue to create an environment with a more realistic enemy, which is flying more UAS, using more electronic warfare, and continuing to provide increasing amounts of this kind of multi-layered counter-UAS approach for friendly forces as part of this scenario,” King said.

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Two leaders have been tapped by the Office of the Director of National Intelligence to coordinate spy agencies' efforts to track and thwart threats to the 2026 midterm elections, according to a congressional source and a second person familiar with the matter. 

    Dave Mastro serves on the National Intelligence Council, which uses intelligence-community findings to produce intelligence assessments, including for Congress and senior policymakers. James Cangialosi serves as deputy director of the National Counterintelligence and Security Center. 

    Mastro and Cangialosi are part of “an expansive team of professionals at ODNI focused on carrying out President [Donald] Trump’s and [Director of National Intelligence Tulsi] Gabbard’s election integrity efforts,” ODNI spokesperson Olivia Coleman said in a statement.

    The office is also “providing robust briefings, on par with efforts traditionally carried out during election years, to protect election integrity this midterm cycle,” Coleman said.

    It had been unclear for months whether ODNI had named election-threats executives. Both sources requested anonymity to communicate the appointments.

    The Record first reported the appointments.

    The Foreign Malign Influence Center was established in 2022 to coordinate spy agencies’ efforts to identify and assess foreign influence and disinformation threats against elections. But ODNI argued that the FMIC raised constitutional concerns about coordination with social media companies. Last summer, an ODNI reorganization shifted many of the center’s responsibilities to the National Counterintelligence and Security Center and the National Intelligence Council

    The election-threats executive—created in 2019, during Trump’s first term—typically oversees an “Experts Group” that analyzes intelligence on foreign interference efforts. 

    Election threats can include cyberattacks on voting systems, foreign influence operations, and disinformation campaigns aimed at undermining public trust in elections.

    Gabbard has faced criticism over her involvement in the White House’s broader review of election-security outcomes, including scrutiny from Democrats tied to her presence during an FBI raid on a Georgia election office and ODNI-led examinations of voting machines in Puerto Rico.

    For the first time in nearly a decade, this year’s annual intelligence assessment of worldwide threats to the U.S. did not mention foreign threats to elections.

    Trump has continued to falsely claim the 2020 election was stolen from him. 

    The appointments also come amid broader changes to the federal government’s election-security apparatus ahead of the 2026 midterms. In recent months, Democrats and state election officials have raised concerns about cuts to election-focused programs at the Cybersecurity and Infrastructure Security Agency, which has lost around a third of its workforce in the last year.

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Quantum Space is building its first satellite, but the Maryland-based company is already planning its first large manufacturing facility in Tulsa. Why there? Location and propulsion testing. 

    The state government is “building a hypergolic test stand in Oklahoma that will be owned and operated by Agile Space Industries—that's for in-space propulsion. And of course, those are the thrusters that we're going to use on Ranger and they're going to be tested there at the hypergolic test facility,” Quantum Space CEO Jim Bridenstine told Defense One

    “Because if you're going to sustain maneuver, you've got to have high energy thrust to get out of the way of threats…to look at threats to get out of the way of debris. This is what Ranger, our satellite, is capable of…So all of this means we need the ability to use thrust and we're going to have thrust in levels and capabilities that others in the market don't have. And all that thrust has to be tested…in Tulsa.”

    Bridenstine, who is a former NASA administrator and U.S. congressman for Oklahoma, said his company already has a government customer for the Ranger Prime satellite, which will maneuver quickly in orbit using technologies currently under development. The plan is to fly Ranger in 2027. 

    Read a Q&A with Bridenstine here

    Welcome

    You’ve reached the Defense Business Brief, where we dig into what the Pentagon buys, who they’re buying from, and why. Send along your tips, feedback, and song recommendations to lwilliams@defenseone.com. Check out the Defense Business Brief archive here, and tell your friends to subscribe!

    As private capital flows toward defense, Michael Cadenazzi, the Pentagon’s industrial policy chief, wants some of the funding to underpin expansions of the gritty foundation of manufacturing: critical minerals, material sciences, factories, he said last week at the Special Competitive Studies Project’s annual AI Expo

    • "We'd love for industry to invest in the lower tiers of the supply chain. There are a lot of things that are dirty and explosive and made of metal, that are not exciting investments and aren't going to generate your 60 percent [rate of] returns. I get that's what everybody wants. But at the end of the day, we need a certain portion of the portfolio invested in these things at the lower end, supply chain, chemicals, castings, forging, kind of old school metallic things. I can't fire [software-as-a-service] rounds and fight, sorry. Maybe in 80 years or so. Right now, I still need things that are rocket propelled and explode,” Cadenazzi said. 
    • “So for us, seeing continued investments into the mineral space, into the material space, that is a big thing. The more of those we see in, the more commercial capital we have and unlocks there, the better off we're going to be settled for the future.”
    • AI should be used to fine-tune what’s happening on the factory floor, he said, “and not worry so much about giving me the next dashboard. I got plenty of dashboards.” 
    • “We really need to get these tools deployed to the legacy factories, the organic industrial base, which have been historically under invested in,” and many of which haven’t been upgraded in decades.
    • “I'm really excited about seeing a focus on these sort of dirty industrial areas,” Cadenazzi said, noting that the rare-earths challenge isn’t just China dependence, but that the process is dirty and AI could help make it cleaner.
    • “It's chemicals. There's a lot of waste. And so what we need to do is actually get the next wave of science developed to go ahead and do that in a cleaner way. Which has always been the success of America is we come up with a dirty way to do something, and then we throw our brains at in our smartest minds, we use a combination of industrial potential on the commercial side, government funding, labs, universities, and we create a better, cheaper, faster way to do it, in this case, cleaner.” 

    Making moves and other news

    • Anduril raised $5 billion in a Series H funding round led by Thrive Capital and Andreessen Horowitz. The company is now valued at $61 billion. 
    • A medical brigade in the Army’s 18th Airborne Corps tested autonomous medical resupply during a recent exercise using Soaring’s M25 drones. 
    • Former Army CIO Leonel Garciga is now a senior executive advisor at Booz Allen Hamilton. Here’s his last interview with Defense One here.
    • The USS Cleveland—the final Freedom-classlittoral combat ship, LCS 31—will be commissioned on May 16. Watch the livestream here.
    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Cisco has released updates to address a maximum-severity authentication bypass flaw in Catalyst SD-WAN Controller that it said has been exploited in limited attacks. The vulnerability, tracked as CVE-2026-20182, carries a CVSS score of 10.0. “A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Hackers are using Fake interview apps to spread JobStealer malware on macOS and Windows to steal crypto wallets, browser data, and passwords.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶