21 février 2020 | International, C4ISR, Sécurité

How many users were affected by the DISA breach?

Andrew Eversden

A breach of a system hosted by the Defense Information Systems Agency, the Department of Defense's primary IT support agency, affected “approximately 200,000” users after a malicious actor may have gained access to names and Social Security numbers, according to a Pentagon spokesman.

Chuck Prichard, a DoD spokesman, said there is “no evidence to suggest that any of the potentially compromised [personally identifiable information] was misused.” DISA is sending letters notifying potentially affected users, in line with agency policy.

He added that affected individuals “will subsequently receive additional correspondence with information about actions that can be taken to mitigate possible negative impacts.”

The news of the breach was first reported by Reuters.

Prichard said the breach was discovered during summer 2019. According to Reuters, which viewed a copy of the letter sent out to DISA officials, the breach occurred between May and July 2019.

Affected users will also receive free credit monitoring, Prichard said.

Prichard declined to specify what network was breached, only that it was hosted by DISA. He also declined to comment on how long the actor was in the network.

“DoD and DISA take the security of our people, information (or data) and operations very seriously and actively monitor potential threats," Prichard said. “For operational security reasons, the department does not comment on the actions taken to mitigate risks or vulnerabilities.”

He did add that “DISA ... conducted a thorough investigation of this incident and taken appropriate measures to secure the network.”

According to its website, DISA employs over 8,000 military and civilian employees. The agency's mission includes protecting the Department of Defense Information Network, a global DoD network used for sharing and storing information. DISA runs a variety of other systems, including combat support, DoD enterprise email and other communication networks.

https://www.fifthdomain.com/dod/2020/02/20/how-many-users-were-affected-by-the-disa-breach/

Sur le même sujet

  • Russian Su-57 Jet Controls Su-35 Aircraft ‘Swarm’ in Teaming Experiment

    30 juin 2020 | International, Aérospatial

    Russian Su-57 Jet Controls Su-35 Aircraft ‘Swarm’ in Teaming Experiment

    A Russian Su-57 stealth jet controlled a group of Su-35 front-line fighter in a teaming experiment designed to function as a ‘swarm' in a coordinated attack mission. "The experiment was carried out in real combat conditions. A group of Su-35 fighters was involved in the flock, the role of the command and control aircraft was performed by the Su-57," news agency TASS reported quoting sources from Russia's ‘military-industrial complex.' Sources explained to TASS that use of a "swarm” operating in a single information space, significantly increases the efficiency of combat missions. The place and date of the experiment was not specified. The report did not describe what ‘real combat conditions' meant. Whether the jet swarm was tested in simulated battle conditions at home or in Syria where Russia has previously conducted several tactical experiments involving the Su-57. Russia has a sizeable military presence in Syria and controls two military bases and has the skies protected by it air defence systems. In addition, foreign reconnaissance and fighter aircraft regularly fly in or near Syrian airspace providing ‘target aircraft' for a swarm experiment. During the experiment, information is exchanged between fighters in real time: the information-control system of each aircraft automatically processes data from its own sensors and sensors of other aircraft providing a comprehensive battle space picture. The command and control aircraft then guides the course of battle. While the Su-57 is not expected to be in Russian air force service till 2022, its manufacturer is ensuring that it offers topine features available in the best of Western made jets such as the F-35 and F-22 by the time it enters service. Another feature being studied is to have the aircraft control a group of drones. https://www.defenseworld.net/news/27298#.XvtaFihKiUk

  • UK: Magazine of Defence Equipment and Support (DE&S): desider: issue 126, January 2019

    2 janvier 2019 | International, Aérospatial, Naval, Terrestre, C4ISR, Sécurité

    UK: Magazine of Defence Equipment and Support (DE&S): desider: issue 126, January 2019

    desider is the monthly corporate magazine for Defence Equipment and Support (DE&S). It is aimed at readers across the wider MOD, armed forces and industry, and covers stories and features about support to operations, equipment acquisition and support. It also covers the work of people in DE&S and its partners in industry, and other corporate news and information. Published 1 January 2019 https://assets.publishing.service.gov.uk/government/uploads/system/uploads/attachment_data/file/767541/January-desider-v1-Online.pdf

  • US Should Pull Drones From Missile Control Regime: Mitchell Institute

    4 juin 2020 | International, Aérospatial

    US Should Pull Drones From Missile Control Regime: Mitchell Institute

    "I have great hopes that this administration, with its bold unilateral actions on so many fronts, would take unilateral action with this regime on UAVs," says Keith Webster, former DoD head of defense cooperation. By THERESA HITCHENSon June 03, 2020 at 12:48 PM WASHINGTON: The Trump administration should unilaterally declare that it will no longer subject drone sales to export control restrictions under the Missile Technology Control Regime (MTCR), says a new Mitchell Institute study. And Congress should use the 2021 National Defense Authorization Act (NDAA) to redefine unmanned aerial vehicles (UAVs) as aircraft, which not only remove them from MTCR restrictions but also would ease US domestic export controls, asserts the paper, “”Modernizing UAV Export Policy for Effective Coalition Forces,”. “The US Congress should craft language in the 2021 NDAA that defines UAVs as aircraft, not cruise missiles, but as aircraft, and subject to the same export considerations as any other military aircraft,” said Heather Penny, senior resident fellow at Mitchell and the paper's author, during a webinar today. “We believe that this language, a statute, would be sufficient to be able to remove UAVs from being subject to the MTCR guidelines.” The 35-nation MTCR agreement requires a “strong presumption of denial” for sales of so-called Category 1 drones — those that can carry a 500 kilogram payload more than 300 kilometers. The Category 1 definition is considered as the minimum capability a missile needs to carry a nuclear warhead. Smaller unmanned aerial vehicles also are covered under MTCR's Category 2 rules, but those export restrictions are less stringent. Even the treaty-hating Trump administration sees the MTCR — a political agreement rather than a treaty — as a key tool in preventing the proliferation of ballistic and cruise missiles. This is despite its long-standing efforts to ease drone sales to allies, including through revamping US domestic law to allow “Direct Commercial Sales” by companies, rather than requiring all sales to go through the formal Foreign Military Sales process that requires approval by DoD, the State Department and Congress. Indeed, over the past year the administration tried — and failed — to convince its MTCR partners to revamp the rules to allow drones flying less than 800 kilometers per hour to slip out from under the Category 1 rules, said Penny. Washington is now expected to try again at the annual MTCR signatories meeting, she said, instead suggesting a 600 kph speed limit as the line of demarcation between the two categories of export restrictions. (The meetings are usually held in the fall, although there has yet to be an announcement of the 2020 dates.) But, Penny argued, even if this new effort comes to fruition, it would fail to fix the underlying problem of allowing allies to buy high-end US combat drones — and preventing them from fully integrating with US operations. Secondly, she asserted, complying with MTCR rules “distort the market” in favor of Chinese sales, she said, since China is not a member of the MTCR and has few formal restrictions on arms exports. “Continuing to adhere to and apply MTCR guidelines to UAVs facilitates Chinese strategic interests,” Penny said. “It's working against US interests.” Keith Webster, former DoD head of defense cooperation, agreed — calling efforts to revise the MTCR as a “Band-Aid” that would soon loose viability because of the rapid pace of technology improvement. “I wish we would act unilaterally,” he told the Mitchell Institute webinar. “We have the ability to act unilaterally. And I would like to see us do so very soon. I have great hopes that this administration, with its bold unilateral actions on so many fronts, would take unilateral action with this regime on UAVs.” That doesn't mean, Webster hastened to add, pulling out of MTCR itself. “Stay in the MTCR,” he said. “It served its purpose.” The experts acknowledged that a unilateral US move to exempt UAVs from MTCR could spur other nations to do the same for their own weapons systems that could exacerbate nuclear proliferation. Penny stressed that it was key for the US to renew its commitment to nonproliferation of ballistic and cruise missiles, and support MTCR's rules for those systems. Saying that “we need to be honest with ourselves about the implications” while seeking “creative solutions” to the UAV issue, Webster seemed to suggest that ultimately the US may decide the MTCR itself isn't worth the trade off. “There are challenges with compliance within the regime with at least one member,” he warned. As Breaking D readers know, US military leaders and Congress have sounded the alarm on the proliferation of cruise missiles by Russia (an MTCR member) and China that can more easily slip through US ballistic missile defense systems. This is especially true for hypersonic missiles, which have speeds above Mach 5 and while visible on radar are extremely hard to target. https://breakingdefense.com/2020/06/us-should-pull-drones-from-missile-control-regime-mitchell-institute/

Toutes les nouvelles