Friday, May 24, 2024

Pentagon Looks Into ‘Critical Compromise’ of Air Force and FBI Contacts

The communications systems of 17 Air Force stations were concerned about “critical compromise” after $90,000 in federal radio technology had been stolen by a Tennessee-based engineer.

According to the warrant that Forbes was able to obtain, the breach could potentially have affected FBI communications.

As law enforcement searched the engineer’s house, they discovered that he had “unauthorized administrator access” to radio communications equipment used by the Air Education and Training Command (AETC), which was “affecting 17 DoD installations”.

The Pentagon defines the possible compromise of technology employed by the AETC, one of the nine “major commands,” as “interrelated and complementary” to Air Force headquarters. This occurred only three months after another breach of security at the Pentagon was exposed.

Air Force Engineer’s Home Raided 

During the raid, authorities also found an open computer screen that showed the suspect was using Motorola radio programming software, which included the “entire Arnold Air Force Base (AAFB) communications system.”

The suspect was running a Motorola radio programming software, “which contained the entire Arnold Air Force Base (AAFB) communications system,” according to a Department of Justice search warrant.

Authorities claimed to have discovered evidence the suspect may have had access to communications of the FBI and several Tennessee state agencies.

He was found to have a USB that included “administrative passwords and electronic system keys” for the AETC radio network, according to a paper outlining the forensics on the technologies that were confiscated from his residence.

He was found to have a USB that included “administrative passwords and electronic system keys” for the AETC radio network, according to a paper outlining the forensics on the technologies that were confiscated from his residence.

Additionally taken from the flash drives were “local law enforcement radio programming files,” Another USB device included “Motorola radio programming files,” which, when accessed, displayed a banner informing the user that they were U.S. government property.

When accessed, installation files found during the search displayed a “CONFIDENTIAL RESTRICTED” pop-up.

The warrant states that “witnesses and co-workers” informed investigators that the suspect sold radios and radio equipment, worked irregular hours, was arrogant, frequently lied, engaged in inappropriate workplace behavior and sexual harassment, had money issues, and owned (Arnold Air Force Base land mobile radio) equipment.

According to investigators, a colleague had twice reported him because of “insider threat indicators” and unauthorized possession of Air Force equipment, reads Forbes report.

According to his LinkedIn profile, the 48-year-old engineer at the Arnold air force base has extensive experience in both radio communications and cybersecurity.

He claimed to have conducted multiple tests of the security at Arnold Air Force Base, enhanced radio communication protection on the site, and knew the encryption used for government data.

As of right moment, the police have not charged the suspect with any crimes.

Keep yourself informed about the latest Cyber Security News by following us on GoogleNews, Linkedin, Twitter, and Facebook.


Latest articles

Hackers Weaponizing Microsoft Access Documents To Execute Malicious Program

In multiple aggressive phishing attempts, the financially motivated organization UAC-0006 heavily targeted Ukraine, utilizing...

Microsoft Warns Of Storm-0539’s Aggressive Gift Card Theft

Gift cards are attractive to hackers since they provide quick monetization for stolen data...

Kinsing Malware Attacking Apache Tomcat Server With Vulnerabilities

The scalability and flexibility of cloud platforms recently boosted the emerging trend of cryptomining...

NSA Releases Guidance On Zero Trust Maturity To Secure Application From Attackers

Zero Trust Maturity measures the extent to which an organization has adopted and implemented...

Chinese Hackers Stay Hidden On Military And Government Networks For Six Years

Hackers target military and government networks for varied reasons, primarily related to spying, which...

DNSBomb : A New DoS Attack That Exploits DNS Queries

A new practical and powerful Denial of service attack has been discovered that exploits...

Malicious PyPI & NPM Packages Attacking MacOS Users

Cybersecurity researchers have identified a series of malicious software packages targeting MacOS users.These...
Guru baran
Guru baran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Free Webinar

Live API Attack Simulation

94% of organizations experience security problems in production APIs, and one in five suffers a data breach. As a result, cyber-attacks on APIs increased from 35% in 2022 to 46% in 2023, and this trend continues to rise.
Key takeaways include:

  • An exploit of OWASP API Top 10 vulnerability
  • A brute force ATO (Account Takeover) attack on API
  • A DDoS attack on an API
  • Positive security model automation to prevent API attacks

Related Articles