10 janvier 2020 | International, C4ISR, Sécurité

How tensions with Iran could test a new cyber strategy

Mark Pomerleau

In 2018, the Department of Defense began following a new philosophy for cyber operations to better protect U.S. networks and infrastructure.

Known as “defend forward,” the approach allows U.S. cyber forces to be active in foreign network outside the United States to either act against adversaries or warn allies of impending cyber activity that they've observed on foreign networks.

After the U.S. military killed an Iranian general in a Jan. 2 drone strike and after national security experts said they expect Iran might take some retaliatory action through cyber operations, the specter of increased cyber attacks against U.S. networks puts Cyber Command and its new approach front and center.

“This Iran situation today is a big test of the ‘defend forward' approach of this administration,” James Miller, senior fellow at Johns Hopkins Applied Physics Laboratory and former undersecretary of defense for policy, said at a Jan. 7 event hosted by the Council on Foreign Relations. “Will [Cyber Command] take preventative action? Will they do it in a way that our allies and partners support and that can be explained to the public?”

While Iran fired several missiles Jan. 7 at a base in Iraq where U.S. troops lived as an initial response to the drone strike, many national security experts expect Iran could continue cyber actions as further retaliation for the strike. Iran could also ratchet up its cyber operations in the United States following the collapse of portions of the 2015 nuclear deal between the United States, Iran and five other nations to curb Iran's nuclear weapons capability in return for sanctions relief.

Over the past 12 months, the White House and Congress streamlined many of the authorities used to conduct cyber operations to help cyber forces to get ahead of threats in networks around the world. One such provision in last year's annual defense policy bill provides the Pentagon with the authority to act in foreign networks if Iran, among other named nations, is conducting active, systematic and ongoing campaigns of attacks against the U.S. government or people.

Cyber Command declined to comment on what, if anything, they were doing differently since the drone strike.

Some experts, however, have expressed caution when assessing how well this defend forward approach has worked thus far given it is still relatively new.

“The jury is very much still out here,” Ben Buchanan, assistant professor and senor faculty fellow at Georgetown University, said at the same event. “We don't have a lot of data, there's been a lot of hand-wringing ... about these authorities and about how Cyber Command may or may not be using them. I just don't think we've seen enough to judge whether or not ... [it is] meaningfully changing adversary behavior.”

Others have also expressed reservations about how effective Iran can even be in cyberspace toward U.S. networks.

“Iran is a capable cyber actor, Iran is a wiling cyber actor. That means Iran will conduct cyberattacks,” said Jacquelyn Schneider, Hoover fellow at the Hoover Institution at Stanford University. “It's not like they have this capability and they've been deterred in the past and maybe now they're going to turn it on. I think they've been trying this entire time.”

Complicating matters further could be other actors trying to take advantage of U.S.-Iran imbroglio for their own interests.

Priscilla Moriuchi, senior principal researcher and head of nation-state research at threat intelligence firm Recorded Future, said over the past several months, there have been reports of Russian state-affiliated actors hijacking Iranian cyber infrastructure to conduct operations masquerading as Iranians.

“That creates its own uncertainty,” she said at the same event. “Another level of potential what we call inadvertent escalation if a country perceives that they are attacked by Iran but in reality, it” wasn't.

https://www.fifthdomain.com/dod/2020/01/09/how-tensions-with-iran-could-test-a-new-cyber-strategy/

Sur le même sujet

  • DoD SBIR/STTR Component BAA Pre-Release: Defense Advanced Research Projects Agency (DARPA) HR001121S0007 Topics 29-30

    12 octobre 2021 | International, C4ISR, Sécurité

    DoD SBIR/STTR Component BAA Pre-Release: Defense Advanced Research Projects Agency (DARPA) HR001121S0007 Topics 29-30

    The DoD Small Business and Technology Partnerships Office announces the pre-release of the following Broad Agency Announcement (BAA) topics: Defense Advanced Research Projects Agency (DARPA), HR001121S0007: STTR Topic HR001121S0007-29: “Breakthrough Technologies for Energy Web Dominance,” published at https://sam.gov/opp/64463b5ca4464cb291e82f2c928e87e8/view SBIR Topic HR001121S0007-30: “Collaborative APIs Through Incentive Design (CATID),” published at https://sam.gov/opp/5d353e8300d64e86bd24b69947f73dc3/view IMPORTANT DATES: October 7, 2021: Topics pre-release October 26, 2021: Topics open, begin submitting proposals in DSIP November 30, 2021: Topics close, full proposals must be submitted in DSIP no later than 12:00 p.m. ET Full topics and instructions are available at the links provided above.

  • The British Army’s new Ajax vehicles ride too rough, too loud: report

    4 juin 2021 | International, Terrestre

    The British Army’s new Ajax vehicles ride too rough, too loud: report

    Media reports of vibration and other issues impacting the program first surfaced several weeks ago but the latest report has given more detail.

  • Drones Cleared For Take-Off As Govt Launches GARUD Portal To Ease Norms

    5 mai 2020 | International, Aérospatial

    Drones Cleared For Take-Off As Govt Launches GARUD Portal To Ease Norms

    Waking up to the use of drones in its fight against the Covid-19 pandemic, the ministry of civil aviation and Directorate General of Civil Aviation (DGCA) have launched the GARUD portal. The platform will provide fast track exemptions to government agencies for using drones in their operations against the pandemic. GARUD or ‘Government Authorisation for Relief Using Drones' was developed by the National Informatics Centre in eight days. Providing exemptions to government agencies by changing Rule 160 of the Aircraft Rules, 1937, for easy and fast approvals for drone usage, any government department can apply for these exemptions on the GARUD platform. However, the government has also put restrictions on these exemptions. For instance, the government will provide permission to only battery-operated drones or remotely piloted aircraft (RPAs). Permission won't be granted to autonomous and fixed-wing RPAs. The order also makes the organisation responsible for ensuring safe operations of RPAs. Operations involving RPAs are to be conducted under the supervision of authorised entity while not risking lives, property, or any other aircraft. Moreover, the government has allowed all the government agencies to use either their own drones or use ones offered by third-party providers which are mostly startups. According to the rules, all the drones should have a valid unique identification number (UIN) or drone acknowledgement number (DAN) issued by the DGCA. The agency using the RPAs will have to update the details of the drone on DGCA's Digital Sky platform. Moreover, the drones shouldn't be weighing more than 25 KG and cannot pick up, drop or spray any substance. This provision leaves authorities to use these drones for surveillance. Other restrictions include no flight before sunrise and after sunset. The government also imposed a height limit of up to 200 metres for the drones. Besides surveillance, many drone startups in India are also looking to support the delivery of essentials. They are also being used to back on-ground medical staff. Pune and Silicon Valley-based FlytBase is offering drone services free to government officials until May 2020. Moreover, Hyderabad-based Marut Drones is delivering medicines and collecting blood samples. It has also been deployed to spray sanitizer in the city. Recently, the DGCA also allowed hyperlocal delivery provider Dunzo and Bengaluru-based drone maker Throttle Aerospace Systems to test their long-range drone delivery solutions. These startups are also expected to deliver grocery via drones in the near future. https://inc42.com/buzz/drones-cleared-for-take-off-as-govt-launches-garud-portal-to-simplify-norms/

Toutes les nouvelles