-
ReversingLabs researchers identify a new Ghost campaign using fake npm install logs and progress bars to phish for sudo passwords and steal crypto wallets from developers.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Count the chairman of the Senate Armed Services Committee among the defense-policy experts who say the National Defense Strategy is inadequate in key ways.
At a Thursday hearing, Sen. Roger Wicker, R-Miss., said the defense policy’s tepid treatment of satellites and nuclear weapons might encourage Chinese and Russian ambitions.
“It’s no secret that I believe this NDS falls short in several areas,” Wicker told U.S. Strategic and Space Command leaders gathered to testify. “I am particularly concerned that the current strategy does not address space and nuclear threats with anywhere near the urgency they deserve.”
The NDS makes only passing mention of Russia's efforts “to modernize and diversify” its nuclear arsenal. It mentions space as one of several areas where “direct military threats to the American Homeland have also grown in recent years.”
Wicker raised concerns about Russia’s reported development of a space-based nuclear anti-satellite weapon, saying it would be a “major game changer.”
Lawmakers first began warning about such a device in early 2024. A few months later, Biden officials said a suspected Russian testbed satellite had been in orbit for two years, but that the weapon was not operational—a claim Moscow denied. (Find a description of Russian and Chinese concepts of operations here.)
The Trump administration’s NDS does not mention the weapon, which Adm. Richard Correll, the head of U.S. Strategic Command, said is “very significant” and something the U.S. military must prepare for.
“Russia has indicated, and has been publicly acknowledged, that they're working on a nuclear capability that could be placed in space,” Correll told lawmakers. “We have to account for it in terms of the architecture that we have and what we can do about it. The department's very focused on that. We do have some options.”
Gen. Stephen Whiting, head of U.S. Space Command, said that a nuclear anti-satellite weapon would be devastating not only to the U.S., but any country that operates in outer space.
“That would be an indiscriminate weapon that, if detonated on orbit, would immediately place at risk every country's space capabilities in low Earth orbit—the United States, China, Russia, Japan, Europe, you name it,” Whiting said. “That would violate the Outer Space Treaty and would not be a development, obviously, that we can tolerate.”
When asked how soon Russia could field such a nuclear space weapon, neither Correll or Whiting provided a public answer to lawmakers.
Some senators expressed concern that the Trump administration has so weakened trust in the American “nuclear umbrella” that European leaders are considering launching the kind of atomic-weapons programs they long ago forswore.
Sen. Jeanne Shaheen, D-N.H., asked Correll whether he was concerned by that development. The Navy admiral responded that he detected “no change” in attitudes from allies.
“At every opportunity in mil-to-mil engagements, I reinforce our extended deterrence commitment on the part of the United States,” Correll said.
The National Defense Strategy called for supporting U.S. interests in the Western Hemisphere and said the government would “increase burden-sharing with allies and partners around the world.”
Similarly, Sen. Elizabeth Warren, D-Mass., told Correll that NATO allies’ refusal to heed President Trump’s requests for help with his war on Iran have made the U.S. government's international relationships look weak to Russia and China.
Correll told Warren he disagreed with her assessment and said the military relationship with allies remains strong and that China and Russia believe that to be the case, too.
Warren told the Navy admiral that his answer lacked “any credibility.”
“Russia and China watch us insult our allies, then beg for their help, and then our allies don't give that help, and you think Russia and China think ‘there is an alliance that's working just great?,’” Warren said. “It is not only an embarrassment when the President begs and our allies say no, it is a national-security threat, because our enemies take note of that.”
]]>¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
The Office of the Director of National Intelligence is developing a policy framework and accompanying standards to speed AI adoption for cybersecurity and other tech tools across the intelligence community, as part of a broad cybersecurity and IT modernization effort launched under the Trump administration last year.
ODNI has also sought to tighten the intelligence community’s cyber posture, including through modernizing networks, standing up a shared authorization repository, pushing a zero-trust model and expanding threat hunting, according to an ODNI official who requested anonymity under ground rules accompanying a news release on the modernization efforts.
The office, which oversees America’s spy agencies and programs, is also working to align systems and policies across agencies and with the Defense Department, including joint use of classified commercial cloud infrastructure, the official added.
The update helps highlight a broader push to streamline cybersecurity operations across the nation’s spy agencies. It also shows how AI is becoming a core part of how intelligence offices detect and respond to cyber threats.
“Protecting our nation’s most sensitive information from those who seek to exploit it, while making sure our intelligence professionals have the tools and access they need to do their jobs, is not optional,” Director of National Intelligence Tulsi Gabbard said in a prepared statement. “It is essential to our national security.”
Intelligence agencies are a prime target for foreign adversaries and criminal hackers seeking to steal sensitive data, map operations and exploit vulnerabilities in some of the government’s most critical and classified systems. The intelligence community’s tech modernization push has spanned multiple administrations, accelerating over the past decade with the shift to cloud computing and evolving into a broader effort to break down data silos and speed up how intelligence is shared and analyzed.
This week, Politico reported that Gabbard is seeking to bring In-Q-Tel, the CIA-backed venture firm, under management of ODNI, a move that has sparked pushback from the CIA and others who warn it could disrupt the firm’s independence. The move could also give ODNI more visibility into and coordination over how emerging technologies are developed and deployed across the intelligence enterprise.
]]>¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A long-term and ongoing campaign attributed to a China-nexus threat actor has embedded itself in telecom networks to conduct espionage against government networks. The strategic positioning activity, which involves implanting and maintaining stealthy access mechanisms within critical environments, has been attributed to Red Menshen, a threat cluster that’s also tracked as Earth Bluecrow,
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Enterprise AI security solutions in 2026, compare Check Point, Palo Alto, CrowdStrike, Fortinet, and Zscaler across cloud, endpoint, and network.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
HUNTSVILLE, Alabama— Nine months ago, the 4th Infantry Division’s commander told an audience that he would be perfectly happy to take a piece of tech that does 60 percent of what the Army needs and let his soldiers’ feedback inform the remaining 40. On Wednesday, he said he’d like to switch those ratios.
Gen. Pat Ellis and his soldiers have been helping the Army develop its next-generation command-and-control software as the service tries out its new approach to acquisition, taking existing technology and putting it into the field as developers stand by to integrate soldier feedback.
“We'll go 40 percent,” Ellis said at the AUSA Global Force Symposium. “We don't want the product to be perfect. The soldiers actually want to be active participants in the development process.”
That approach wouldn’t necessarily work everywhere, he added, but it makes sense for software development at least.
The Army is doing something similar with its M1E3 Abrams tank and XM-30 Mechanized Infantry Combat Vehicle: delivering the bones of the vehicles to soldiers, whose feedback will inform what they need in terms of software, sensors and weapons.
It’s a drastic departure from the Army’s past acquisitions model, which involved long lists of requirements and a “black eye” if a company didn’t deliver exactly what the Army had asked for, the service’s Portfolio Acquisition Executive for C2/counter-C2 said.
“And so a test report that may say that it's not effective or effective with limitations, I mean, this was a significant emotional event for a lot of programs, and I think we've really kind of like short-circuited that,” Joe Welch said.
There’s no longer an expectation of perfection out of the gate, Welch added, and the Army is working hard with vendors to communicate that an offering that still needs work is no longer going to put them out of the running.
“In fact, you know, as you just heard, there's a preference that it's that it's not,” Welch said. “Because perfect, in some ways, means that, well, then you're done iterating on it. You're done making it better.”
During 4th ID’s Ivy Sting series to test out NGC2, Ellis said, he has convened so-called “solution summits” to talk about challenges and next steps with soldiers, vendors and even potential vendors.
“We bring everybody in and say, let's talk about this problem. Some folks are on the contract. Some folks are not,” he said. “We just talk about, ‘Hey, look, we've done airspace management, we've done chat functionality, we've done maps, we've had a lot of these challenges that we're seeing.’ And this lets everybody kind of talk about and kind of hear where the industry partners will go in that space.”
]]>¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Threat actors are standardizing a powerful ClickFix-based attack that abuses the Windows Run dialog box and macOS Terminal to deliver malware while sidestepping traditional browser protections. Insikt Group has tracked five distinct ClickFix activity clusters active since at least May 2024, with lures impersonating brands such as Intuit QuickBooks and Booking.com. Using Recorded Future’s HTML […]
The post New ClickFix Attack Exploits Windows Run Dialog and macOS Terminal to Deploy Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A new cybercriminal service called “Leak Bazaar” has surfaced on the Russian-speaking TierOne forum, advertised on March 25, 2026, by a user known as Snow of SnowTeam. Unlike traditional data leak sites, Leak Bazaar introduces a more structured approach to monetizing stolen corporate data, focusing on processing and refining information rather than simply publishing it. […]
The post Leak Bazaar Converts Stolen Corporate Data Into Organized Criminal Marketplace appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
CyberProof researchers have detected a 10% surge in PXA Stealer attacks targeting financial institutions in Q1 2026. Learn…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶


