Back to news

December 14, 2024 | International, C4ISR

390,000+ WordPress Credentials Stolen via Malicious GitHub Repository Hosting PoC Exploits

Over 390,000 WordPress credentials exfiltrated via malicious GitHub repository hosting trojanized PoC code.

https://thehackernews.com/2024/12/390000-wordpress-credentials-stolen-via.html

On the same subject

  • Army Wants New Mega-Jammer In 2023: TLS-EAB

    September 30, 2020 | International, Land, C4ISR, Security

    Army Wants New Mega-Jammer In 2023: TLS-EAB

    SYDNEY J. FREEDBERG JR. Mounted on a pair of heavy trucks, the Terrestrial Layer System – Echelons Above Brigade (TLS-EAB) will do long-range jamming for high-level HQs – and fry the circuits of incoming enemy missiles as well. WASHINGTON: The Army officially asked industry today to help take a big step towards repairing the Army's long-neglected EW corps and countering Russian and Chinese jamming – and it'll have an unexpected missile defense dimension as well. Boeing and Lockheed are still building rival prototypes for the Army's next-generation cyber/electronic warfare vehicle, the Terrestrial Layer System set to enter service in 2022. The new system, known as TLS-EAB — will be TLS's much bigger brother. The service has set a pretty brisk schedule, talking of fielding something by the end of 2023. The original-flavor TLS, aka TLS-BCT, will fit on an 8×8 Stryker armored vehicle and accompany frontline Brigade Combat Teams. TLS-Echelons Above Brigade will fill a pair of heavy trucks, probably Oshkosh FMTVs, Army officials unveiled today: One truck will carry sensors, transmitters, and a tethered drone or aerostat to detect enemy signals, triangulate their locations for artillery and airstrikes, and disrupt them electronically with a combination of jamming, wireless hacking, and deceptive signals. It'll be crewed by eight soldiers, four specializing in cyber/electronic warfare and four in signals intelligence. There will likely be sub-variants, for example with a division-level system designed to frequently relocate, while a Multi-Domain Task Force might accept a less mobile version with more range and power. But overall, this long-range offensive cyber/EW/SIGINT capability is essentially a supersized version of what the TLS-BCT will do, albeit operating over much greater distances. The other truck, however, adds a dimension absent from the brigade-level TLS-BCT: a high-powered but relatively short-ranged defensive EW capability to protect key sites like division, corps, and theater command posts. It'll be crewed by four electronic warfare soldiers, but there's no SIGINT on this variant. Instead, it'll have an “electronic countermeasure point defense suite” – again, using a mix of jamming, wireless hacking, and deceptive signals – to decoy or disable incoming enemy drones, missiles, rockets, and artillery rounds, many of which rely on radar for guidance and fusing. Because it's mounted on trucks, TLS-EAB can be a lot bigger and more powerful than the Stryker-mounted TLS-BCT or the drone-mounted jamming/sensing system known as MFEW-Air-Large. But it will share data with those systems, because they'll be closer to the front line and/or able to fly over obstacles to see distant threats. TLS-EAB will also link to other Army and interservice systems like the EWPMT command-and-control software and the TITAN satellite terminal. The defensive suite, in particular, will get warning of incoming threats from air & missile defense networks – which we can presume includes the Army's forthcoming IBCS – to “national technical means,” such as spy satellites. Now, the three Army colonels who briefed the AOC CEMAlite conference this afternoon didn't provide any details on what kind of incoming missiles the TLS-EAB defensive suite is meant to stop. Actually jamming an inbound hypersonic or ballistic missile might be prohibitively hard since those weapons fly so fast – Mach 5 and up – and may only be in range for seconds. But if you deceive the enemy's reconnaissance and targeting systems into shooting at a decoy instead of the real target, it doesn't matter how fast their missiles are — they'll still miss. It's also worth noting that the Army hasn't locked down the formal requirements for this system – a draft Abbreviated Capabilities Development Document (ACDD) is in the works – and the service intends to leave plenty of leeway for industry to propose out-of-the-box ideas. “These are our initial concept ideas and not intended to constrain or limit the industrial solution space,” said Col. Jennifer McAfee. “Please think of this is a starting point in a long and mutually beneficial conversation.” That said, all proposals need to rely on an Army-sponsored software framework known as Photon and a set of technical standards known as CMOSS. Both are intended to let the service plug and play components from different vendors instead of getting locked into one company's proprietary solution that's not compatible with other people's innovations. There's also an official Software Development Kit (SDK) to let companies integrate their sensors into the Army-standard systems. What the Army rolled out today was a draft concept of operations (CONOP) for TLS-EAB, explained the Army project manager, Col. Kevin Finch. Looking ahead, he outlined an ambitious schedule: January 2021: The Army will hold an initial industry day for interested vendors (TBD whether it'll be in-person or online). February-March 2021: Individual vendors will have the opportunity to meet one-on-one with Army officials. Meanwhile the service will put together a draft Request For Proposals (RFP) and circulate it for industry feedback. June 2021: a second industry day. July 2021: the release of the final RFP and the official launch of what's known as a Middle-Tier Acquisition process. Fall 2023 (first quarter of federal fiscal year 2024): the First Unit Equipped (FUE) will receive prototype TLS-EAB vehicles. If TLS-EAB can stick to that 2023-2024 timeline, it'll enter service along with a host of new long-range Army systems, from howitzers and hypersonics to intermediate-range missiles and missile defense lasers. But between the budgetary hit from COVID and the upcoming election, it's far from certain the Army can afford it all. https://breakingdefense.com/2020/09/army-wants-new-mega-jammer-in-2023-tls-eab/

  • Contract Awards by US Department of Defense - June 3, 2019

    June 4, 2019 | International, Aerospace, Naval, Land, C4ISR, Security, Other Defence

    Contract Awards by US Department of Defense - June 3, 2019

    DEFENSE LOGISTICS AGENCY HDT Expeditionary Systems Inc., Solon, Ohio, has been awarded a maximum $200,000,000 firm-fixed-priced, indefinite-delivery/indefinite-quantity contract for commercial off-the-shelf shelters and tents. This was a competitive acquisition with one response received. This is a one-year base contract with three one-year option periods. Locations of performance are Alabama, Ohio, Virginia and Kentucky, with a June 4, 2020, performance completion date. Using military services are Army, Navy, Air Force and Marine Corps. Type of appropriation is fiscal 2019 through 2020 defense working capital funds. The contracting activity is the Defense Logistics Agency Troop Support, Philadelphia, Pennsylvania (SPE1C1-19-D-1158). NAVY Accenture Federal Services LLC, Arlington, Virginia, is awarded a $79,074,099 firm-fixed-price, indefinite-delivery/indefinite-quantity contract to provide program and project management; support of the Navy Tele-Mentoring Program; system administration; training; communications support; data analytics; tele-radiology; and support of the Health Experts Online Portal and Pacific Asynchronous TeleHealth in support of the Bureau of Medicine and Surgery. Work will be performed in Falls Church, Virginia (83 percent); San Diego, California (10 percent); Portsmouth, Virginia (2 percent); Camp Pendleton, California (2 percent); Lemoore, California (1 percent); Twentynine Palms, California (1 percent); and Bremerton, Washington (1 percent). The contract will include a 60-month ordering period that will begin July 2019, and is expected to be completed by July 2024. Fiscal 2019 operations and maintenance (Defense Health Procurement) (O&MDHP) funds in the amount of $10,000 will be obligated to fund the contract's minimum amount and those funds will expire at the end of fiscal 2019. Subsequent task orders will be funded with the appropriate fiscal year O&MDHP funds. This contract resulted from a full and open competitive solicitation pursuant to the authority set forth in Federal Acquisition Regulation 16.504. The requirement was solicited through the Federal Business Opportunities and Navy Electronic Commerce Online websites, with 11 offers received. Naval Supply Systems Command Fleet Logistics Center Norfolk, Contracting Department, Philadelphia Office, Philadelphia, Pennsylvania, is the contracting activity (N00189-19-D-Z024). Lockheed Martin Sippican Inc., Marion, Massachusetts, is awarded a $56,865,098 firm-fixed-price, cost, and cost-plus-fixed-fee modification to previously awarded contract N00024-16-C-6412 to exercise Option Year Three for the production of Mk 48 Mod 7 guidance and control (G&C) sections, Mk 48 Mod 7 Common Broadband Advanced Sonar System (CBASS) Functional Item Replacement (FIR) kits, spares, production support material, and related engineering services and hardware repair support for G&C sections and CBASS kits. Work will be performed in Marion, Massachusetts (88 percent); Braintree, Massachusetts (8 percent); and Lemont Furnace, Pennsylvania (4 percent), and is expected to be completed by March 2021. Fiscal 2019 and 2017 weapons procurement (Navy); Foreign Military Sales; fiscal 2019 research, development, test and evaluation (Navy); and fiscal 2018 shipbuilding and conversion (Navy) funding in the amount of $56,865,098 will be obligated at time of award and will not expire at the end of the current fiscal year. The Naval Sea Systems Command, Washington, District of Columbia, is the contracting activity. Communication & Power Industries LLC, MPP Division, Palo Alto California, is awarded a $10,244,971 firm-fixed-price, indefinite-quantity contract for evaluation, repair, rebuild and new manufacture of L-Band Klystron microwave tubes required to support the AN/SPS-49 radar system. Work will be performed in Palo Alto, California, and is expected to be completed by June 2024. Working capital funds (Navy) funding in the amount of $905,658 will be obligated at time of award, and will not expire at the end of the current fiscal year. This contract was not competitively procured, in accordance with 10 U.S. Code 2304(c)(1) - only one responsible source and no other supplies or services will satisfy agency requirements. The Naval Surface Warfare Center, Crane Division, Crane, Indiana, is the contracting activity (N0016419DWP32). ARMY General Dynamics Mission Systems Inc., Taunton, Massachusetts, was awarded a $36,850,696 modification (0125) to contract W15P7T-10-D-C007 for post-deployment software support services. Work locations and funding will be determined with each order, with an estimated completion date of June 1, 2020. U.S. Army Contracting Command, Aberdeen Proving Ground, Maryland, is the contracting activity. TRAX International LLC, Las Vegas, Nevada, was awarded a $17,666,430 modification (P00312) to contract W9124Q-07-C-0504 for mission support services. Work will be performed in White Sands Missile Range, New Mexico, with an estimated completion date of Aug. 31, 2019. Fiscal 2019 research, development, test and evaluation funds in the amount of $2,100,000 were obligated at the time of the award. U.S. Army Mission and Installation Contracting Command, White Sands Missile Range, New Mexico, is the contracting activity. CORRECTION: The contract announced on May 31, 2019, for DirectViz Solutions LLC (DVS),* Chantilly, Virginia (W91RUS-19-C-0014), was not awarded. No new award date has been set. AIR FORCE AAI Corp., doing business as Textron Systems, Hunt Valley, Maryland, has been awarded a $24,318,602 undefinitized contract action for AC-208 contract logistics support and maintenance training. This contract provides for contractor logistics support and maintenance training for the AC-208 aircraft. Work will be performed at Hamid Karzai International Airport, Kabul, Afghanistan, and is expected to be complete by May 31, 2020. Fiscal 2018 Foreign Military Sales funds in the amount of $7,406,993 are being obligated at the time of award. Air Force Life Cycle Management Center, Training Aircraft Division, Wright Patterson Air Force Base, Ohio, is the contracting activity (FA8617-19-C-6234). Work Services Corp., Wichita Falls, Texas, has been awarded a $20,805,260 firm-fixed-price modification (P00002) to the previously awarded contract FA3020-18-C-0013 for food services. This contract modification provides full funding for the first option period. Work will be performed at Sheppard Air Force Base, Texas, and is expected to be complete by June 30, 2020. This modification brings the total cumulative face value of the contract to $36,010,315. Fiscal year 2019 operations and maintenance funds in the full amount are being obligated at the time of award. The 82nd Contracting Squadron, Sheppard Air Force Base, Texas, is the contracting activity. *Small business https://dod.defense.gov/News/Contracts/Contract-View/Article/1864933/source/GovDelivery/

  • Northrop, 4 rivals to compete on Army’s future tactical UAS

    February 28, 2023 | International, Land

    Northrop, 4 rivals to compete on Army’s future tactical UAS

    The U.S. Army is taking five competitors into a prototyping development phase with plans to select a winner for production and fielding at the end.

All news