3 août 2024 | International, C4ISR, Sécurité

New Windows Backdoor BITSLOTH Exploits BITS for Stealthy Communication

New Windows backdoor BITSLOTH exploits BITS for command-and-control, targeting South American government and linked to Chinese actors.

https://thehackernews.com/2024/08/new-windows-backdoor-bitsloth-exploits.html

Sur le même sujet

  • Coming in 2020: A new technology to link F-35 simulators across the globe

    4 décembre 2019 | International, Aérospatial, C4ISR

    Coming in 2020: A new technology to link F-35 simulators across the globe

    By: Valerie Insinna ORLANDO, Fla. — Next year, U.S. Air Force F-35 pilots will be able to hop into a simulator and practice large-scale coordinated attacks with other F-35A users in simulators around the globe, Lockheed Martin's head of F-35 training said Tuesday. The capability, called Distributed Mission Training, will allow an unlimited number of F-35 simulators to be networked, enabling high-end training, said Chauncey McIntosh, Lockheed's vice president for F-35 training and logistics. “We've been testing to ensure that it's ready to go with our first customer at Nellis Air Force Base [in Nevada]. We've got hardware that's going up there this month and we're starting our test connections, and everything is looking very well [regarding] this product,” he said during a briefing at the Interservice/Industry, Training, Simulation and Education Conference. “Essentially we're waiting just to get the accreditation from the government. We'll connect that [hardware] and then we'll start running tests on site with software. And then we'll go to our final delivery in spring of 2020," he told Defense News. Currently, F-35 bases can only link as many simulators as they have on site — usually as many as four. However, the Distributed Mission Training capability, or DMT, will allow every U.S. Air Force base to connect up to four of its F-35 simulators with those of every other air base, McIntosh said. At some point, F-35A simulators may also be able to regularly connect with any other aircraft simulator that can be supported on the same network. “Here at Orlando, in our labs, we've already connected to the F-22, the F-16, as well as to [E-3] AWACS [airborne early warning and control aircraft],” McIntosh said. “Almost every week we are writing test scenarios with additional platforms.” Lockheed is under contract to provide DMT to the U.S. Air Force, Navy and Marine Corps, as well as to the United Kingdom. However, because all of those entities run their F-35 simulators aboard different networks, they will be unable to connect with variants from other services, McIntosh said. While Nellis is slated to receive DMT early next year, the F-35 Joint Program Office and Lockheed are still discussing the schedule for further deployments to other bases and services, McIntosh explained. “Our initial efforts are for the Air Force,” he said. https://www.defensenews.com/digital-show-dailies/itsec/2019/12/04/coming-in-2020-a-new-technology-that-will-link-f-35-simulators-across-the-globe

  • Cyber Command doubled its contract spending in the past year

    11 mars 2020 | International, C4ISR, Sécurité

    Cyber Command doubled its contract spending in the past year

    By Mark Pomerleau U.S. Cyber Command nearly doubled the amount of money it issued in defense contracts between fiscal years 2018 and 2019, according to figures provided in written testimony to Congress. In 2019, the command awarded $74.9 million through 81 contracting actions, Gen. Paul Nakasone, the command's leader told the House Armed Services Committee March 4. Those figures are up from the 32 contracts valued at $43 million in fiscal year 2018 that Nakasone provided in testimony in February 2019. Congress gave Cyber Command limited acquisition authority in 2016 following the model of Special Operations Command. It capped acquisition funds at $75 million per year, with a clause that is scheduled to sunset in 2021. However, some members of Congress questioned whether it needed $75 million. Nakasone lauded the role of DreamPort, a public-private partnership in Columbia, Maryland created by Cyber Command to engage with businesses, in increasing the aperture of organizations it works with. “Over the past 18 months, Dreamport has allowed the Command to engage more than 1,000 private companies, educate over 1,000 military personnel on innovative technologies, and involve more than 350 students and interns from 65 colleges and high schools on STEM initiatives,” he wrote. “It has been home to Cyber Command's effort to begin implementing the principles of zero-trust networking on the military's networks. Dreamport also hosted the public-private collaboration that resulted in kits that help enable the Cyber National Mission Force to conduct Hunt Forward operations. The traditional ways of doing business would have been too cumbersome and too slow. Dreamport is key to the command's ability to engage in public-private partnerships at the unclassified level.” Nakasone also told the committee in his written statement that the command has hired its first command acquisition executive responsible for leading the organization's acquisitions and to develop capabilities for the joint cyber force. In total, the command requested a $636 million budget for 2021, compared to the $596 million it used in fiscal year 2020. The executive is largely responsible for procuring and developing capabilities under what Cyber Command calls the Joint Cyber Warfighting Architecture, which was established in the last two years to guide capability development priorities. These capabilities fall under five buckets; Common firing platforms to be used at the four cyber operating locations of the service cyber components. These platforms will be worked into a comprehensive suite of cyber tools; Unified Platform, which will integrate and analyze data from offensive and defensive operations with partners; Joint command and control mechanisms for situational awareness and battle management at the strategic, operational and tactical levels; Sensors that support defense of the network and drive operational decisions, and; The Persistent Cyber Training Environment, which will provide individual and collective training as well as a way to rehearse for a mission. The Army is managing PCTE on behalf of Cyber Command and the joint force. The cornerstone of this architecture is the command's data tool called Unified Platform. Nakasone told the House Armed Services Committee that Unified Platform is starting to come online and over the next year it will be the central focus of building the architecture allowing the force to store data and conduct worldwide operations. Budget documents from the Air Force, the service procuring Unified Platform on behalf of Cyber Command and the joint cyber force, for fiscal year 2021 indicate flat funding for the tool for 2021 as compared to 2020. https://www.fifthdomain.com/dod/cybercom/2020/03/09/cyber-command-doubled-its-contract-spending-in-the-past-year/

  • American shipbuilding: An anchor for economic and national security

    2 novembre 2020 | International, Naval

    American shipbuilding: An anchor for economic and national security

    By: Peter Navarro “Don't give up the ship!” These were Capt. James Lawrence's dying words defending the USS Chesapeake during the War of 1812. Over 200 years later, the United States Navy and America's critical shipbuilding industry are issuing the same cry from shipyards across our nation. Here is a simple truth: A true renaissance of America's shipbuilding industry will require a large-scale overhaul and new strategy before it can churn out the ships we urgently need to maintain our status as the greatest maritime power in world history. In the first year of his “Peace through Strength” administration, President Donald Trump made a 355-ship Navy the official national policy by signing the 2018 Defense Authorization Act. Currently, however, we are asking too few ships to do too much while many vessels are decades old and severely backlogged for critical repairs. This egregiously long queue is an open invitation to foreign adversaries, who are displaying increasingly aggressive postures and rapidly expanding their own naval capabilities. Today, only seven shipyards across the country are capable of constructing large or deep-draft Navy vessels. More subtly, each yard has become specialized to build a specific warship, whether it be a nuclear-powered Virginia-class submarine or an Independence-class littoral combat ship. This specialization, while optimal for workforce training and infrastructure investments at specific yards, makes them remarkably vulnerable when there is a downturn in government contracts or the private market contracts. Foreign competitors such as China anchor their shipyards in tens of billions of mercantilist and predatory government subsidies every year. Unable to compete with such foreign subsidization, the American shipbuilding industry has lost 75,000 jobs — a decline of over 40 percent. For every shipbuilding job in America, three indirect jobs are supported. We have therefore allowed predatory foreign markets to steal approximately 300,000 good-paying American jobs — the population of St. Louis, Missouri. Our strategic and economic adversaries know the importance of shipbuilding. To understand the dangers, consider this: From 2010 to 2018, the Chinese Communist Party has provided over $130 billion in shipping and shipbuilding subsidies. Now, it controls the world's second-largest commercial fleet by gross tons, and constructs one-third of the world's ships. If Pax Americana is to continue, we must live up to the maxim of former Assistant Secretary of the Navy and 26th President Teddy Roosevelt: “A good Navy is not a provocation to war. It is the surest guarantee of peace.” Restoring investment in shipbuilding will leave a wake of prosperity for our economic security and send waves of strength for our national security. Expansion in capacity and capabilities of our shipyards will again incentivize commercial shipbuilding, increasing industry efficiency and creating competition, eventually lowering the overall cost of production. This must be our policy goal. If we commit to a revitalization of our shipyards, in just a few years, scores of vessels could again make maiden voyages from American yards built at the hands of thousands of American steelworkers, pipefitters, welders and electricians — a renaissance of one of our nation's most integral industries. This would mean thousands of new jobs in Maine, Michigan, Pennsylvania, Wisconsin, Florida and throughout the Gulf Coast. This means secure waters around Greenland, the Bering Strait and the South China Sea as well as the straits of Bab el-Mandeb, Malacca and Hormuz. While the 296-ship fleet of the U.S. Navy is still the most powerful in the world, Communist China's People's Liberation Army Navy is now sailing approximately 350 warships and counting. Some estimates say Communist China's Navy could be as large as 450 ships by 2030 — and it's not just China that is a cause for concern. While the Chinese Communist Party militarizes the South China Sea, Russia — which will assume chairmanship of the Arctic Council in May 2021 — has been quietly rebuilding its Arctic fleet. This is a region that will be of critical importance in the years to come as northern shipping lanes open and natural resources make themselves available. As it stands now, the U.S. Navy can't effectively access these waters, as it lacks the ice-hardened warships to do so. Our shipbuilding industry was once a bulwark of American manufacturing, but decades of neglect, ambivalence to predatory foreign markets and sequestration have caused it to take on water. If we don't begin patching the holes now, it won't be just an industry that sinks. It may well be our economic and national security, as we will be unable to protect the world's sea lanes — the arteries of commerce and veins of national defense. While our enemies argue American manufacturing and might is on the decline, we repeat the battle cry of Capt. John Paul Jones: “I have not yet begun to fight!” Peter Navarro is the assistant to the president and director of the Office of Trade and Manufacturing Policy within the White House. https://www.defensenews.com/opinion/commentary/2020/10/30/american-shipbuilding-an-anchor-for-economic-and-national-security/

Toutes les nouvelles