• Gen. Randy George, the Army’s chief of staff, is stepping down early from his position at the request of Defense Secretary Pete Hegseth, CBS News first reported Thursday. 

    While spokespeople for the service and George did not immediately return requests for comment, a Defense official confirmed to Defense One that the service had been waiting for the other shoe to drop since the Army’s vice chief of staff was pushed out late last year.

    “This shift was widely anticipated the moment Gen. [Jim] Mingus was let go,” said the official, who was not authorized to speak on the record about the matter. 

    Mingus spent fewer than two years in the vice position, which is traditionally a four-year job. In his place, President Donald Trump nominated then-Army Lt. Gen. Christopher LaNeve, Hegseth’s senior military aide, who was confirmed by the Senate in January

    George became chief of staff in the fall of 2023, setting him up for an expected retirement in October 2027. 

    When George became chief of staff in fall 2023, he was expected to retire in October 2027. But the moves have set up a scenario where he could be forced out and Hegseth could quickly replace him with an ally. 

    “General Randy A. George will be retiring from his position as the 41st Chief of Staff of the Army effective immediately. The Department of War is grateful for General George’s decades of service to our nation. We wish him well in his retirement,” Pentagon spokesman Seth Parnell said Thursday on social media.

    George is the latest senior military official fired by Hegseth with little explanation, a string that began with the removal of the chairman of the Joint Chiefs of Staff, the chief of naval operations, and the vice chief of staff of the Air Force in February 2025. 

    Though the Army was spared at the time, the Mingus and George firings have raised questions about whether Hegseth has his eye on the Army’s civilian leadership as well. 

    “Secretary Hegseth is obviously aiming to overhaul the Army's command structure,” the official said. “Since only President Trump holds the actual authority to remove Secretary [Dan] Driscoll, Hegseth worked around that restriction by clearing out the personnel in Driscoll's immediate orbit instead.”

    George had spearheaded an overhaul of the way the Army modernizes, notching big wins like getting the service’s next main battle tank into soldiers’ hands five years ahead of schedule. He was also a main player in the Army Transformation Initiative, a long list of reforms the Army had been asking for that Hegseth signed off on last April. 

    “The tallest blade of grass is the first to be cut by the scythe,” the official said. 

    A spokesman for Driscoll did not immediately respond to a request for comment.

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • ShinyHunters hackers claim they stole 3 million+ Cisco records via Salesforce and AWS, warning of a public leak if demands are not met by April 3, 2026.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A large-scale credential harvesting operation has been observed exploiting the React2Shell vulnerability as an initial infection vector to steal database credentials, SSH private keys, Amazon Web Services (AWS) secrets, shell command history, Stripe API keys, and GitHub tokens at scale. Cisco Talos has attributed the operation to a threat cluster it tracks as

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The Pentagon is negotiating to buy Ukrainian interceptor drones, having concluded that no American manufacturer can match the price, delivery times, and battlefield-tested reliability. A drone developed by UK firm Skycutter with Ukraine’s SkyFall recently scored 99.3 out of 100 in the Pentagon’s own Drone Dominance evaluation, beating every U.S. competitor by more than ten points. Before Russia’s full-scale invasion, Ukraine had about seven domestic drone manufacturers. It now has roughly 500. Last year, they produced a rough total of four million drones, exceeding by far the combined output of all NATO members; in 2026, they are aiming to make seven million.

    The technology is not the story. The organizational model behind it is. 

    What Ukraine’s drone ecosystem has built is what U.S. Air Force Col. John Boyd theorized in the 1970s and 1980s but almost no institution has managed to implement: a distributed observe-orient-decide-act architecture at industrial scale, where the feedback between battlefield observation and production action operates faster than any comparable system in history. Three principles from that model apply directly to how Western defense leaders think about acquisition reform.

    Observation nodes belong at the point of use, not at the top of a reporting chain. In Western defense procurement, the distance between a battlefield observation and an engineering change is measured in years. After-action reports travel through chains of command, requirements committees draft specifications, and engineering change proposals enter configuration-management queues. Ukraine’s three-year-old Brave1 platform has created a national marketplace where frontline units order drones directly from certified manufacturers. (The platform has served orders totaling more than $235 million so far.) Real-time dashboards feed confirmed-hit data, strike distances, and failure modes back to producers continuously. The frontline operator is the primary sensor in the system, not a customer at the end of a supply chain. Put another way, the people who use the drones provide the design feedback that shapes the next production run. 

    Shared failure data is a strategic asset, not a competitive vulnerability. When Russia deployed stronger electronic warfare systems, Ukrainian engineers across the 500-company network responded simultaneously with fiber-optic guidance, encrypted multiband links, AI-assisted targeting, and hybrid systems that switch from fiber-optic to radio when the cable breaks. No single authority ordered these responses. Manufacturers share what breaks across competitors, and the shared orientation made the problem visible to everyone at once. Most solutions failed. The ones that survived combat testing propagated through the network within weeks. In most Western corporate and defense settings, failure data is hidden behind classification walls or treated as liability exposure. That is an orientation-impoverishment strategy, and it is one of the primary reasons centralized procurement systems cannot match the adaptation speed of a distributed network.

    Decision authority belongs where the information is richest and most current. Ukrainian military units independently select which manufacturers to order from, switching suppliers based on what works under fire rather than waiting for committee approval. The soldier is the procurement officer. There is no requirements document, no multi-year contract cycle, no bureaucratic intermediary between battlefield judgement and resource allocation. Capital flows to demonstrated effectiveness, measured in confirmed hits, not to incumbency or contractual position. Boyd argued that decision authority must sit with the person closest to the most current information. Ukraine has institutionalized that principle in a manner that has no precedent in modern defense procurement.

    Two Western cases demonstrate that these principles can work outside a wartime ecosystem. In early 2025, Saab, the Swedish Air Force, and the FMV developed and evaluated the Loke counter-UAS system in 84 days, not by circumventing regulation but by repurposing proven components and explicitly authorizing departure from standard process. From April through September, Loke was operational at Malbork Air Base, a NATO base in Poland. 

    And when U.S. engineers recovered a downed Iranian Shahed-136, they did not commission a requirements study. They disassembled it, rebuilt it with American guidance and satellite datalink systems, and fielded the LUCAS drone in about five months at $35,000 per unit. The Tomahawk it partially replaces costs north of $2 million. In both cases, the bottleneck was organizational, not technical.

    There are, of course, real objections. What works under wartime emergency may not translate into the institutional architecture that sustained great-power competition demands. Fragmentation, corruption risk, and the absence of standardization are genuine constraints. These principles apply where the product is modular and the iteration cycle can be measured in weeks: drones, electronic countermeasures, software-defined systems. They do not apply to submarines or next-generation fighters. The argument concerns the growing category of defense capabilities where speed of adaptation determines effectiveness.

    Consider the cycle time in your own organization between a signal from the front line and a change in what you produce. Consider who has authority to act on that signal without waiting for approval from someone further from the information. If the answers are months or years, and someone in a committee, Ukraine’s drone entrepreneurs have built the organizational proof that a faster, more adaptive model is not theory. It is operational, at scale, under fire.

    The rest of us have the luxury of learning it before the pressure arrives.

    Göran Roos is a retired Swedish Army Reserve major and a Visiting Professor in Business Performance and Intangible Asset Management at the Centre for Business Performance, Cranfield School of Management, Cranfield University.

    Johan Roos is a retired Swedish Army Reserve captain and a professor in Strategy and Executive Advisor at Hult International Business School.

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Microsoft warns of a WhatsApp attachments spreading VBS malware that installs backdoors on Windows PCs, giving hackers remote access and control systems.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Cisco has released updates to address a critical security flaw in the Integrated Management Controller (IMC) that, if successfully exploited, could allow an unauthenticated, remote attacker to bypass authentication and gain access to the system with elevated privileges. The vulnerability, tracked as CVE-2026-20093, carries a CVSS score of 9.8 out of a maximum of 10.0. “This

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Team Cymru details the Yurei ransomware campaign, using standard tools and a few Stranger Things–named payloads to breach and encrypt systems.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A newly identified ransomware campaign is targeting Windows users across South America, leveraging tactics that closely mimic the notorious Akira ransomware group. According to ESET’s findings, the threat actors behind this campaign are attempting to exploit Akira’s reputation by replicating its branding, ransom notes, and dark web infrastructure references. This includes the use of Tor-based […]

    The post Akira-Style Ransomware Campaign Hits Windows Users Across South America appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • New research from Varonis Threat Labs reveals Storm infostealer, a malicious subscription service that bypasses Google Chrome encryption.…

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • This week in cybersecurity from the editors at Cybercrime Magazine

    Sausalito, Calif. – Apr. 2, 2026

    Read the full report

    The 2026 CISO Report from Cybersecurity Ventures in partnership with Sophos is out, with the latest chief information security officer compensation figures from a variety of sources.

    According to Glassdoor data, the median annual pay range for a CISO is $321,000, while Salary.com puts the figure at $385,000. Lower tier estimates, provided by Zippia, bottom out at $144,000.

    CSO reports that CISO pay at the largest U.S. enterprises is closer to $500,000, with some CISOs receiving 7-figure annual compensation packages, and a few even hauling in $5 million a year.

    Estimated equity values are driving significant increases in year-over-year compensation for CISOs, particularly in larger public companies. CISOs in publicly traded companies typically receive better compensation-related benefits, such as equity, insurance, and signing bonuses, according to the 2025 CISO Security Leadership Survey from Hitch Partners.

    CISOs in the technology and services sector earn the highest total compensation on average, largely driven by equity and long-term incentives, according to a survey by Heidrick & Struggles.

    The survey also states that CISOs in Europe earned less on average than their U.S. counterparts. U.S. Cities including San Francisco, New York, Seattle, and Washington, D.C. offer the highest salaries, according to an analysis of compensation data from publicly available job postings, salary benchmarks from trusted job sites and recruiter-reported ranges from cybersecurity hiring reports.

    Read the 2026 CISO Report



    Cybercrime Magazine is Page ONE for Cybersecurity. Go to any of our sections to read the latest:

    • SCAM. The latest schemes, frauds, and social engineering attacks being launched on consumers globally.
    • NEWS. Breaking coverage on cyberattacks and data breaches, and the most recent privacy and security stories.
    • HACK. Another organization gets hacked every day. We tell you who, what, where, when, and why.
    • VC. Cybersecurity venture capital deal flow with the latest investment activity from various sources around the world.
    • M&A. Cybersecurity mergers and acquisitions including big tech, pure cyber, product vendors and professional services.
    • BLOG. What’s happening at Cybercrime Magazine. Plus the stories that don’t make headlines (but maybe they should).
    • PRESS. Cybersecurity industry news and press releases in real time from the editors at Business Wire.
    • PODCAST. New episodes daily on the Cybercrime Magazine Podcast feature victims, law enforcement, vendors, and cybersecurity experts.
    • RADIO. Tune into WCYB Digital Radio at Cybercrime.Radio, the first and only round-the-clock internet radio station devoted to cybersecurity.

    Contact us to send story tips, feedback and suggestions, and for sponsorship opportunities and custom media productions.

    The post 2026 CISO Salary And Compensation Data appeared first on Cybercrime Magazine.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶