Back to news

May 9, 2024 | International, Security

New TunnelVision Attack Allows Hijacking of VPN Traffic via DHCP Manipulation

Researchers have uncovered a vulnerability (CVE-2024-3661) that allows threat actors to snoop on your VPN traffic.

https://thehackernews.com/2024/05/new-tunnelvision-attack-allows.html

On the same subject

  • House panel advances $733B defense budget bill over GOP objections

    June 14, 2019 | International, Aerospace

    House panel advances $733B defense budget bill over GOP objections

    By: Leo Shane III and Joe Gould WASHINGTON ― House lawmakers advanced a $733 billion defense policy bill on Thursday after nearly 21 hours of sometimes heated debate on the size of the Pentagon budget, the size of the country's nuclear arsenal and a host of other military priorities for next year. The 33-24 final vote by the House Armed Services Committee on the draft of the defense authorization bill marked one of the most divided stances from the committee in years, as Republicans voiced concerns with Democrats' priorities in the measure. The legislation, which sets military spending policy for the upcoming fiscal year, has been adopted by Congress for 58 consecutive years, usually by sizable bipartisan margins. Committee officials insist that's because the needs of the military usually rise above the partisan politics of Capitol Hill. But this year, the narrow passage out of committee illustrated the stark divide in defense policy between the two parties, and hints at a lengthy battle to come as the measure moves across Capitol Hill to the Republican-controlled Senate in the coming weeks. Committee Chairman Adam Smith, D-Wash., in recent days said he is committed to finding a palatable bill for both Republicans and Democrats. But during the marathon debate he repeatedly defended his party's plans for $733 billion in defense spending for fiscal 2020 as a responsible and sufficient mark. “By a reasonably comfortable margin, this is the largest budget we will have ever passed in Congress (for defense) and it's a significant improvement on where we were before,” he said before the committee vote. Smith had already set aside some of his own priorities in a bid to win support from the panel's hawkish Republicans, who are likely to influence their caucus when it comes time to vote the bill out of the House. Without that support, Democrats may struggle to gather enough votes from progressives in their own caucus, who have questioned even the lower level of spending. But Senate Republicans have already set their authorization bill draft at $750 billion, a mark recommended by the White House and defended by HASC ranking member Mac Thornberry, R-Texas. He said that the figure is needed to keep pace with military modernization and readiness needs. Thornberry's amendment included a lengthy laundry list of weapons and platforms left out of the bill. “I worry that we talk about this like it's just numbers we're pulling out of the air,” he said. “These are real things. An aircraft carrier gets delayed a year if $733 billion is the way it comes out.” The bill includes a 3.1 percent pay raise for troops next January — a point of agreement on both sides that Smith repeatedly referenced — and provisions for increased protections for sexual assault victims, increased oversight of military housing problems and parameters for a new Space Corps within the Air Force. But fights over the effects of climate change on national security, limitations on the use of the Guantanamo Bay detention camp and a provision mandating gender integration in Marine Corps basic training further divided the committee. On a series of Republican amendments aimed at preserving funds for the nuclear arsenal — including one to protect deployment of low-yield nuclear weapons on submarines — Democrats repeatedly defeated Republican proposals. Similarly, the committee upheld several provisions designed to put a check on President Donald Trump's ability to shift resources from the Defense Department to the U.S. southern border with Mexico. Democrats have accused Trump of abusing his emergency powers to shift Department of Defense funds for the border and send thousands of troops there. In the committee debate, Republicans generally argued Trump is taking necessary and normal steps to secure the border given political resistance to addressing the issue. “I want everybody to understand we have been sending DoD assets to the border since the Alamo,” said Rep. Mike Rogers, who sponsored one of the amendments. “We have to do it in order to keep our border secure and deal with the humanitarian crisis.” The measure now shifts to the full House, where Smith and Democratic leadership will have to build a coalition of supporters to get the measure to negotiations with the Senate. That chamber will vote on its draft next week. Work on a compromise draft between the House and Senate is expected to last through most of the summer and fall. https://www.defensenews.com/congress/2019/06/13/house-panel-advances-733b-defense-budget-bill-over-gop-objections/

  • Contract Awards by US Department of Defense - September 09, 2019

    September 10, 2019 | International, Aerospace, Naval, Land, C4ISR, Security

    Contract Awards by US Department of Defense - September 09, 2019

    AIR FORCE Solid State Scientific Corp., Hollis, New Hampshire, has been awarded a $59,000,000 firm-fixed-price and cost-plus-fixed-fee hybrid contract for Air Force Weather Enterprise (AFW) Product-as-a-Service/Infrastructure-as-a-Service. This contract provides the migration to the cloud for the Air Force Weather Branch and is to design and build an Air Force Weather Virtual Private Cloud. It is required to expand to support the cloud migration and operations for all AFW applications. Work will be performed at and is expected to be completed by May 9, 2020, with two one-year options. This sole source award is a result of a Small Business Innovative Research Phase III follow-on. Fiscal 2019 operations and maintenance funds in the amount of $777,351 are being obligated at the time of award. The Aerospace Management Systems Division, Hanscom Air Force Base, Massachusetts, is the contracting activity (FA8730-19-C-0041). BlackHorse Solutions Inc.,* Herndon, Virginia, has been awarded a $48,843,831 cost-plus-fixed-fee contract for CDI2E software/hardware prototypes. This contract will advance global vigilance, global reach, and global power in the information environment through the application, research, development, and transition of emerging technologies and next-gen solutions. This includes rapid tool development, development of electronic warfare/cyber network attack software and hardware systems, analytical processing, cyber threat avoidance and cyber threat defense, test and evaluation, and to manage the development to ensure projects move forward at a rapid pace, that technical and process innovations incorporated into successive rounds of development. Work will be performed at Herndon, Virginia, and is expected to be completed by Sept. 9, 2024. This award is the result of a competitive acquisition and two offers were received. Fiscal 2019 research, development, test and evaluation funds in the amount of $300,000 are being obligated at time of award. The Air Force Research Laboratory, Rome, New York, is the contracting activity. (FA8750-19-C-1528). ECSC LLC, Columbus, Mississippi, has been awarded a $45,000,000 indefinite-delivery/indefinite-quantity contract for Columbus Air Force Base paving and civil works. This contract provides for repair and construction of asphalt and concrete pavements including sub-base and base course, installation of associated utilities, drainage structures, sidewalks, curb and gutters, rubber removal and painting of runways, taxiways, and aprons, and turf. Work will be performed at Columbus Air Force Base, Mississippi and Auxiliary Field, Shuqualak, Mississippi, and is expected to be complete by Aug. 31, 2026. This award is the result of a competitive acquisition and two offers were received. Fiscal 2019 operations and maintenance funds in the amount of $621,000 are being obligated at the time of award. The 14th Contracting Squadron, Columbus Air Force Base, Mississippi, is the contracting activity (FA302219-D-A002). ajc architects, Salt Lake City, Utah (FA8201-19-D-A003); Architectural Nexus, Salt Lake City, Utah (FA8201-19-D-A005); CRSA, Salt Lake City, Utah (FA8201-19-D-A008); Design West Architects, Salt Lake City, Utah (FA8201-19-D-A010); GSBS, Salt Lake City, Utah (FA8201-19-D-A012); HDR, Salt Lake City, Utah (FA8201-19-D-A011); Jacobs Engineering Group Inc., Taylorsville, Utah (FA8201-19-D-A009); Michael Baker International Inc., Midvale, Utah (FA8201-19-D-A007); Stanley Consultants Inc., Murray, Utah (FA8201-19-D-A006); and Stantec Consulting Services Inc., Salt Lake City, Utah (FA8201-19-D-A004) have been awarded a not-to-exceed $36,000,000 firm-fixed price, indefinite-delivery/indefinite-quantity contract for architectural and engineering services to support the 75th Civil Engineering Group mission. Work will be performed at Hill Air Force Base, Utah, or other geographically separated areas under their jurisdiction to include Little Mountain Test Annex, Utah Test and Training Range, and Boulder Seismic Station, and is expected to be completed by Sept. 8, 2024. This award is the result of a competitive, multiple award acquisition and 15 offers were received. Fiscal 2019 operations and maintenance funds in the amount of $500 are being obligated at the time of award. The Air Force Sustainment Center, Hill Air Force Base, Utah, is the contracting activity. General Electric Aviation, Cincinnati, Ohio, has been awarded a $19,429,512 firm-fixed price, indefinite-delivery/indefinite-quantity contract for F138 sustaining engineering, program management, and field service representative support. This contract provides the Air Force with the expertise required to support trending, diagnosis, analysis, and warranty administration for the F138 engine. Work will be performed at Dover Air Force Base, Delaware; Lackland Air Force Base, Texas; Robins Air Force Base, Georgia; Tinker Air Force Base, Oklahoma; Travis Air Force Base, California; Scott Air Force Base, Illinois; and Westover Air Force Base, Massachusetts, and is expected to be completed by Sept. 5, 2024. This award is the result of a sole source acquisition. Fiscal 2019 operations and maintenance funds in the amount of $1,831,638 are being obligated at the time of award. The Air Force Life Cycle Management Center, Tinker Air Force Base, Oklahoma, is the contracting activity. (FA8124-19-D-0005). Lockheed Martin Corp., Orlando, Florida, has been awarded a $14,958,516 task order against contract FA8533-18-D-0002 for the execution of a baseline change request/engineering change proposal which upgrades 99 common organizational level testers and accessory kits to the new baseline removing obsolescence issues. Work will be performed in Orlando, Florida, and is expected to be completed by Sept. 8, 2022. This award is the result of a sole source acquisition. Fiscal 2017 aircraft procurement funds in the amount of $14,958,516 will be obligated at time of award. The Air Force Life Cycle Management Center, Robins Air Force Base, Georgia, is the contracting activity (FA8533-19-F-0091). DEFENSE LOGISTICS AGENCY TEK Precision Co. Ltd.,* Deer Park, New York, has been awarded a maximum $17,638,194 firm-fixed-price, indefinite-delivery/indefinite-quantity contract for aviation servo coupling assemblies. This was a competitive acquisition with one offer received. This is a five year contract with no option periods. Location of performance is New York, with a June 24, 2025, performance completion date. Using military service is Army. Type of appropriation is fiscal 2019 through 2024 Army working capital funds. The contracting activity is the Defense Logistics Agency Aviation, Redstone Arsenal, Alabama (SPRRA1-19-D-0124). York Precision Machining and Hydraulics LLC,* York, Pennsylvania, has been awarded a maximum $13,681,333 indefinite-delivery/indefinite-quantity contract for sliding and fixed cones for the Intercontinental Ballistic Missile system. This was a sole source acquisition using justification 10 U.S. Code 2304(c) (1), as stated in Federal Acquisition Regulation 6.302-1. This is a five-year base contract with no option periods. Location of performance is Pennsylvania, with a Sept. 5, 2024, performance completion date. Using military service is Air Force. Type of appropriation is fiscal 2019 defense working capital funds. The contracting activity is Defense Logistics Agency Aviation, Hill Air Force Base, Utah (SPRHA2-19-D-0001). ARMY Alberici Constructors Inc., St. Louis, Missouri, was awarded a $14,610,600 firm-fixed-price contract for Miter Gate installation at Marseilles and Starved Rock Locks on the Illinois River Basin. Bids were solicited via the internet with two received. Work will be performed in Ottawa, Illinois, with an estimated completion date of Nov. 30, 2020. Fiscal 2019 civil construction funds in the amount of $14,610,600 were obligated at the time of the award. U.S. Army Corps of Engineers, Rock Island, Illinois, is the contracting activity (W912EK-19-C-0035). Winkler-NNAC JV,* Newman Lake, Washington, was awarded an $8,555,103 firm-fixed-price contract to repair drainage failures. Bids were solicited via the internet with four received. Work will be performed in Fort Hood, Texas, with an estimated completion date of Oct. 7, 2020. Fiscal 2019 operations and maintenance, Army funds in the amount of $8,555,103 were obligated at the time of the award. U.S. Army Mission and Installation Contracting Command, Fort Hood, Texas, is the contracting activity (W91151-19-C-0035). NAVY DONJON Marine Co. Inc., Hillside, New Jersey, is being awarded a $12,499,201 modification to previously awarded cost-plus-award-fee, indefinite-delivery/indefinite-quantity contract N00024-18-D-4307 deliver order N00024-19-F4D02 for continuation of emergency floodwater pumping operations in Puerto Rico under Army Corps of Engineers (ACOE) mission assignment. Work will be performed in Puerto Rico and is expected to be complete by June 2020. Non-expiring ACOE funding in the amount of $11,440,916 will be obligated at the time of award and will not expire at the end of the current fiscal year. The Naval Sea Systems Command, Washington, District of Columbia, is the contracting activity. BAE Systems Norfolk Ship Repair, Norfolk, Virginia, was awarded an $11,945,242 firm-fixed-price modification to previously-awarded contract N00024-18-C-4403 for additional growth requirements, including actions taken during Hurricane Florence, identified during the execution of the USS Tortuga (LSD 46) Fiscal 2018 Modernization Period (MODPRD) Chief of Naval Operations availability. Work will be performed in Norfolk, Virginia, and is expected to be completed by November 2019. Upward obligation of expired fiscal 2018 operation and maintenance (Navy) funding in the amount of $11,945,242 was used to fund this action in accordance with fiscal law. The Naval Sea Systems Command, Washington, District of Columbia, is the contracting activity. (Awarded Sept. 5, 2019) The University of California, Berkeley, California, is being awarded a $9,477,951 cooperative research agreement to study learning mechanisms to create computational models and enhance artificial intelligence approaches to learning, such as deep learning and reinforcement learning. All work will be performed at the University of California, Berkeley, California. This four-year agreement has no option periods. The period of performance is from Sept. 9, 2019, through Sept. 8, 2023. Fiscal 2019 research, development, test and evaluation funds (Defense Advanced Research Projects Agency) in the amount of $1,477,559 will be obligated at the time of award. This research agreement was competitively procured via broad agency announcement (HR001119S0005) and publication on the Federal Business Opportunities website. Forty-two offers were received and nine were selected for award. The Naval Information Warfare Center Pacific, San Diego, California, is the contracting activity (N66001-19-2-4034). DEFENSE INFORMATION SYSTEMS AGENCY CORRECTION: The Sept. 6, 2019, announcement of a contract award to Trace Systems Inc., Vienna, Virginia (HC1047-19-D-4002), in support of providing the full range of Mission Partner Environment (MPE)-compatible support services and associated equipment to design, implement and operate the MPE enterprise, included the incorrect ceiling value. The award's actual ceiling value is $998,000,000. All other information in the announcement is correct. CORRECTION: The contract announced on Sept. 6, 2019, to The Johns Hopkins University Applied Physics Laboratory, LLC (JHU/APL), Laurel, Maryland (HC1047-19-D-0001), for essential engineering, research, and/or development capabilities, in line with the core competencies established by the assistant secretary of defense for research and engineering, has not yet been awarded. *Small Business https://www.defense.gov/Newsroom/Contracts/Contract/Article/1955489/source/GovDelivery/

  • Deadline Tomorrow: USAF B-21 Training Systems Futures Challenge

    April 14, 2021 | International, Aerospace

    Deadline Tomorrow: USAF B-21 Training Systems Futures Challenge

    Innovators, The USAF is in the process of inviting selected prototypes from the first challenge! Don't miss the next opportunity to potentially be selected as a viable future concept for integration into B-21 Training Systems. Deadline is TOMORROW Wednesday 14 April 2021 at 7:00PM EST. Submit your innovations in Vulcan . U.S. Air Force B-21 Training Systems Futures Challenge Deadline: WEDNESDAY 14 April 2021 The U.S. Air Force opportunity expiring TOMORROW is for transformative and future capabilities that can significantly enhance and/or accelerate cost savings, flight time optimization, and human performance within USAF training cycles. U.S. Air Force end users and program personnel will select compelling concepts for virtual demonstration and potential integration into future technology roadmaps. IT TAKES A NETWORK!

All news