The US Navy Is Leaking Secrets

A US Navy review provided to the Wall Street Journal paints a dire picture regarding an ongoing cyber war pitting hackers against the sea service. The 57 page review was brought to Navy Secretary Richard Spencer recently, depicts the Navy and its contractors “under cyber siege” by a host of nefarious actors, including Chinese government hackers, who have exploited critical flaws in US cyber security to steal troves of national security secrets from the defense industry.

“For years, global competitors, and adversaries, have targeted and breached these critical contractor systems with impunity,” the review reads, according to the Journal.

“These enterprises, regardless of their relationship with the department, are under cyber siege.”

The review is sourced from research and interviews with senior officials in President Donald J. Trump’s administration, according to the Journal. The threat is posed not only to the naval service, but its contractors and subcontractors as well.
Focusing on a series of data breaches over the previous 18 months, the review was launched in October, according to a memo authored by the SECNAV’s office.

The final report claims that although the US is aware of cyber-attacks by foreign hackers, the government has struggled to respond to the large number of breaches and has failed to effectively warn its defense contractors.

In one incident during January and February of 2018, Chinese government hackers compromised the computers of a Navy contractor and harvested sensitive data dealing with undersea warfare, including plans for a supersonic anti-ship missile, the Washington Post reported in June.

The Journal said the audit also faults Navy leaders for failing to anticipate that adversaries would attack the defense industry.
“We are under siege,” a senior Navy official said in the report. “People think it’s much like a deathly virus, if we don’t do anything, we could die.”

The document reports that China’s involvement in hacking has boosted its military prowess, "thereby altering the calculus of global power,” the Journal added.

Navy Times

You Might Also Read:

Chinese Hackers Steal Naval Warfare Secrets:

 

« WordPress Comprises 90% Of Hacked Sites
Three In Five Politicians’ Websites Don’t Use Cyber Security »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

Swivel Secure

Swivel Secure

Swivel Secure is an award winning provider of multi-factor authentication solutions.

RU-CERT

RU-CERT

RU-CERT is the CSIRT / CERT team of the Russian Federation.

InfoSec World

InfoSec World

InfoSec World conference and expo covers all aspects of information security with a broad agenda of sessions on key security issues.

ContentKeeper

ContentKeeper

ContentKeeper provides Web Threat Protection solutions to secure today’s Web 2.0 and mobile centric business environments.

Digital Infrastructure Association (DINL)

Digital Infrastructure Association (DINL)

DINL is the leading representative for companies and organisations which are active within the Dutch digital infrastructure sector.

FinlayJames

FinlayJames

FinlayJames supports cyber security companies to meet the increasing demand and pressure on them by finding top talent within the industry for their sales, marketing and technical teams.

Alpine Security

Alpine Security

Alpine Security provides penetration testing, security assessments and cybersecurity training services.

Cutting Edge Technologies (CE Tech)

Cutting Edge Technologies (CE Tech)

CE Tech is a Next Generation Technology Partner providing advanced technology infrastructure solutions through partnerships with leading technology providers.

Institute for Security and Technology (IST)

Institute for Security and Technology (IST)

The Institute for Security and Technology's goal is to provide the tools and insights needed for companies and governments to outpace emerging global security threats.

SEMNet

SEMNet

SEMNet is an IT solutions provider and an infrastructure and security consulting firm.

rSolutions

rSolutions

rSolutions delivers managed cybersecurity services to clients in many industry sectors including financial services, telecommunications, energy, government and retail.

Epoch Concepts

Epoch Concepts

Offering a full line of IT services, solutions, and integration capabilities, Epoch Concepts is the trusted partner of the US military, federal agencies, private enterprises, and systems integrators.

Evo Security

Evo Security

Evo Security is an Identity and Access Management company focused exclusively on serving MSPs, MSSPs and their SMB and Mid-Market customers.

Phone Monitoring Service

Phone Monitoring Service

Phone Monitoring Service provides cyber security services, ethical hacking services, social media hacking services in the USA, Canada, Europe.

Sherweb

Sherweb

Sherweb are a marketplace of leading cloud solutions and value-added services delivered by a team of passionate experts invested in MSP growth.

HeroDevs

HeroDevs

HeroDevs is the trusted leader in providing secure, long-term support for deprecated open-source software.