Sponsored by Spectra Group
————————————————————————
22 Aug 23. SPX CommTech introduces enhanced Data Link Encoder/Decoder to accelerate critical data transfer.
- The new Evenlode Video and Audio Encoder / Decoder delivers improved low-latency, long-range, high-definition video and audio transfer for faster and more accurate intelligence-gathering across defence, security and policing organisations worldwide.
Radio Frequency (RF) solutions manufacturer SPX CommTech today launches its next generation Evenlode Video and Audio Encoder / Decoder, developed by Enterprise Control Systems (ECS). The lightweight, low-power unit can be installed on manned and unmanned air platforms, providing real-time intelligence-gathering, incident response, and civilian safety. It will be shown first at DSEI, Excel London, stand H2-874, between 12-15 September 2023.
Evenlode Video and Audio Encoder / Decoder supplies high-efficiency video coding (HEVC) H.265 low-latency encoding to deliver superior multi-video compression for efficient video recording and real-time, secure distribution. Latency below 120 milliseconds end-to-end means images are transferred and received in real-time, enabling greater situational awareness, and more accurate, faster response.
It significantly reduces the required bandwidth to transfer the same – or better – quality video and audio data than existing models in the market. Considering the limited RF bandwidths available to defence, security and policing organisations, access to freed-up IP allows greater flexibility for sharing critical data through encrypted file shares. It also allows greater use of applications such as electro-optical/infrared sensors, and tracking and location data being shown on a moving map – all improving incident response.
The decoder mirrors the encoding capabilities, allowing the real-time re-streaming – or transcoding – to multiple destination points such as a command centre or at the tactical edge using mobile devices. This adds flexibility to users’ video distribution aims in one single solution.
The upgraded video and audio Data Link solution, which is the latest in the ECS Evenlode series, delivers highly sought-after 4K Ultra High Definition video image quality. This delivers a maximum system resolution of 1080p60 and enhances the image after compression, making it easier to identify details and potential threats.
The device is certified to RTCA DO160G standard, which assures the performance characteristics of the equipment required for kit fitted to airborne manned, fixed and rotary-wing aircraft.
It’s backwards compatible with ECS’ operationally-proven legacy equipment, meaning users can keep up to date with the latest decoding technology without upgrading their entire systems.
Tactical Data Links provide the ability for aircraft to become network-enabled across land, sea and air and, therefore, able to carry out Intelligence, Surveillance and Reconnaissance (ISR) missions across all of them. Data is transmitted using sophisticated, in-house designed encryption software. The new Encoder / Decoder has six separate video inputs – four HD and two SD – capable of encoding four videos simultaneously. This allows users to select the latest mission-critical information required without disrupting the operation and simultaneously process multiple video inputs for improved situational awareness.
“The ability to record, receive, and stream real-time high-quality video and data is critical for all defence, security, and policing organisations charged with securing their nation’s population and Critical National Infrastructure (CNI). At SPX CommTech we’re committed to providing solutions that allow faster, more detailed communication across longer distances”, says Jackson White, Business Development Director of Tactical Data Links and VP Marketing, SPX CommTech. “The launch of the new Evenlode Video and Audio Encoder / Decoder is part of our continued strategic development of technologies that ensure a smarter, more secure future for all by delivering fast and accurate ISR data so timely and effective decisions can be made on the tactical edge.”
SPX CommTech continues to innovate Data Link solutions to provide critical support to defence, security, and policing organisations worldwide.
The new Evenlode Video and Audio Encoder / Decoder is now available to order. For more information, visit www.enterprisecontrol.co.uk or book a time to discuss your Data Link needs with us at DSEI (Excel London, 12-15 September 2023) by emailing .
About SPX CommTech – ECS
Enterprise Control Systems (ECS), as part of the SPX Technologies’ CommTech Platform, innovates specialised technologies within the Radio Frequency (RF) spectrum to ensure a smarter, more secure future for all.
SPX CommTech’s Tactical Data Link portfolio allows organisations that are conducting airborne ISR operations in the defence, security, and policing environments to transfer video and data securely and reliably between enabled aircraft and ground users over long distances in congested RF environments.
Combining decades of technology innovation and expertise with agile and collaborative teams, SPX CommTech delivers sustainable and exceptional results to customers across the globe – in regions including Europe, APAC, the Middle East and Africa.
For more information on SPX CommTech Tactical Data Links, visit www.enterprisecontrol.co.uk
22 Aug 23. SPX CommTech launches latest Transportable Tactical COMINT 953 RF Receiver.
- New Communications Intelligence (COMINT) Radio Frequency Receiver delivers superior threat analysis at a time of heightened electronic warfare activity.
- 953 COMINT Radio Frequency Receiver will be exhibited for the first time at DSEI 2023.
SPX CommTech, formed by TCI and ECS, today launches its next generation 953 Communications Intelligence (COMINT) Radio Frequency (RF) Receiver for superior identification, direction-finding, and tracking of hostile RF signals to support COMINT and Counter-UAS tactical operations. It will be exhibited for the first time at DSEI, Excel London, on stand H2-874, between 12-15 September 2023.
The new 953 COMINT RF Receiver builds on the success of its predecessor and now boasts reduced size and weight, but with greater power. This makes the device portable for dismounted operations and easily mounted on a vehicle to support mobility operations. For example, it can be carried to an elevated position in a dismounted role, such as a tactical position only accessible on foot or on top of a high-rise building, to ensure the antenna is situated at height for optimum signal detection and increased range.
The 953 COMINT RF Receiver performs continuous, unmanned, remote, and real-time signal collection up to 80MHz bandwidth across a frequency of up to 40GHz for signal monitoring, collection, and direction-finding. This bandwidth delivers a sweet spot between monitoring sufficient signal breadth and amplitude to ensure quality and accuracy in identifying threats.
The 953 COMINT RF Receiver is powered with removable hot-swappable batteries for round-the-clock use. The new compact chassis is IP-67 rated to withstand temperatures up to 50°C to deliver full operational capability in extreme hostile climatic environments. It also boasts increased removable storage of up to 2 TB for enhanced data capture.
“All around the world, heightened political, military and societal tension, and the growing use of electronic warfare, demonstrates the unparalleled importance of managing and understanding the RF spectrum today. Threat analysis and response are critical to global security, so we are excited to welcome the next generation product of our successful RF range, currently used across 20 countries,” says Graeme Forsyth, Counter-UAS Product Manager at SPX CommTech.
The 953 COMINT RF Receiver is powered by SPX CommTech’s well-renowned Blackbird software application, which detects, identifies, direction-finds and tracks signals of interest to support, find, fix and strike operations, and mitigate electronic warfare threats. It also tracks the RF emission of UAVs and their controllers or Data Links to support counter-responses. Blackbird can record the signal environment for look-back analysis without interrupting the current mission. It simplifies the collection task and can trigger automated actions and support unattended operations.
Utilising part of the 953 COMINT RF Receiver, Blackbird also uses geolocation to enable defence teams to visualise the location of the frequencies for improved intelligence-gathering and threat management. Blackbird’s intuitive point-and-click user experience suits all skill levels and is an evolution of the proven intuitive interface in previous models. This ensures minimal training requirements for existing customers while enabling new users to master the system quickly.
The new 953 COMINT RF Receiver is backwards compatible with previous COMINT versions and other technologies from SPX CommTech, for cost avoidance, uninterrupted service and seamless scalability for our users. It can also be integrated with open-source or customer-supplied mapping and other integrations.
The 953 COMINT RF Receiver is available today, and current COMINT models in service with customers will continue to be supported by SPX CommTech.
For more information, visit www.tcibr.com. Book a time to discuss your COMINT needs with us at DSEI (Excel London, 12-15 September 2023) by emailing .
About SPX CommTech – TCI
TCI, as part of the SPX Technologies’ CommTech Platform, innovates specialised technologies within the Radio Frequency (RF) spectrum to ensure a smarter, more secure future for all.
SPX CommTech’s Battlespace portfolio enables defence and security teams to detect, defeat and exploit RF signals to enhance Communications Intelligence (COMINT) and Counter Uncrewed Aerial Systems (Counter-UAS).
Combining decades of technology innovation and expertise with agile and collaborative teams, SPX CommTech delivers sustainable and exceptional results to customers across the globe.
For more information on SPX CommTech solutions visit www.tcibr.com
24 Aug 23. Turkey’s Havelsan tests robots, drone swarm for Digital Troop concept. The Turkish defense company Havelsan last week demonstrated a key milestone of its Digital Troop project in the country’s capital Ankara — an effort focused on digital technology for troops and drone swarms.
During the field test, the company deployed two Baha sub-cloud — or low-altitude — unmanned aerial vehicles; two Barkan unmanned ground vehicles; and a swarm consisting of five drones.
Mehmet Akif Nacar, who leads Havelsan, said the assets performed their tasks during the scenario. He explained that two Pioneer drones provided aerial surveillance and guided the unmanned ground vehicles to identified targets, while the swarm provided reconnaissance. The entire operation was controlled by the so-called Mixed Swarm Operation Center.
“This stage was one of the most important milestones we wanted to achieve in terms of digital forces and swarm technologies. In the future systems, we will continue to develop this ecosystem by working on different scenarios — scenarios where more unmanned aerial vehicles, unmanned ground vehicles and swarm drones can be used, and where multiple drones can operate simultaneously,” Nacar said.
The company told Defense News that the Digital Troop’s research and development phase began three years ago.
“In 2020, the design and development studies of the unmanned ground vehicle Barkan were conducted, the first power supply was provided and the first run was conducted at the end of the year. In the same year, the first design and development studies of the Baha sub-cloud unmanned aerial vehicle began, and the first test flight of Baha was conducted five months later,” the firm said.
Then in 2021, Havelsan launched field tests of its unmanned ground vehicle and drone swarm technologies, the company noted, while a task group worked on the subcloud drones in 2022.
Havelsan declined to comment on upcoming developments, citing confidentiality.
What is the Digital Troop effort?
The Digital Troop concept aims to develop technologies that enable battlefield activities to take less time and be more effective. The idea consists of three main pillars:
- Training and battle preparation through the use of high-tech simulations developed by the company.
- Wearable technologies that help soldiers more easily carry heavy loads, move faster and use heavier weapons. A mechanical, skeletal structure is to be 10 times the size of an average soldier, who will be able to simultaneously communicate with teammates and unmanned systems, assigning objectives as well as sharing location information and tasks.
- The integrated autonomous robotic system, created when the user integrates autonomous unmanned systems with wearable technologies and a command-and-control center, is the foundation of the concept. The control of multiple unmanned ground and aerial vehicles by an individual could mean less soldiers involved in an operation.
The company also wants to incorporate its Sancar unmanned surface vessel. All assets would be managed as part of a network-centric architecture using the company’s combat management system Advent.
Havelsan exported the Baha drone to an African country during the 2023 IDEF exhibition in Istanbul in late July. The Barkan vehicle has gained initial operating capability and was delivered to the Turkish military last year.
(Source: Defense News Early Bird/C4ISR & Networks)
25 Aug 23. Raytheon begin ‘piggybacking’ battlefield comms on commercial 5G.
5G networks available to commercial users will be used for military communications, within a new capability being developed by Raytheon.
Rapid data transfer is crucial to modern warfare, for example, in the meshed networks of communications between sensor units at the battlefield edge and deep strike effectors, where the heightened tempo of target acquisition and elimination has allowed British Army Future Soldier concepts like the 1st Deep Recce Strike Brigade Combat Team to outperform much larger forces at the recent Warfighter 23-4 Exercise.
However, in too many cases ground soldiers are limited to “single-digit megabit per second individual data sharing” according to Dr Daniel Massey, programme lead for the FutureG & 5G Office’s Operate Through team.
The OXYGEN 5G capability
Massey’s team operate under the US Office of the Undersecretary of Defense for Research and Engineering, and they are developing a capability with Raytheon (RTX) to allow a much higher rate of data transfer, enabling transmission at 100 Mbps, by creating multi-hop mobile ad hoc networks (MANETs) that will send battlefield communications over the commercial 5G networks that are already active in the theatre.
“Our warfighters use existing infrastructure like roads and bridges when they’re forward deployed now,” said Massey. “Why shouldn’t we use existing communications infrastructure as well?”
Massey describes the capability as being able to provide ground soldiers with “100 times more throughput” enabling them to share high resolution video and imagery.
The Opportunistic eXtemporarY 5G Encrypted Network (OXYGEN) capability will allow forward deployed service members to use their 5G equipment to communicate without the need for additional complex 5G infrastructure. RTX announced on 24 August it has signed a contract with a potential value of $6.6m over two years, for its BBN division to integrate a minimum of 20 kinds of user equipment with 5G sidekick technology. The Raytheon BBN-led team includes Kryptowire LLC, Novowi LLC and Curated Networks, Inc.
Cybersecurity concern
To enable multicast traffic rather than simply peer-to-peer communication, piggybacking sensitive data across commercial infrastructure, there is a necessity to adopt extra layers of security and mesh networking on top of relay lines.
“OXYGEN will enhance commercial cellular equipment to ensure a fully trusted and secure tactical MANET capability,” said Chris Vander Valk, research engineer at RTX’s BBN. “We’re using techniques like cryptographic scrambling, encryption of control and data traffic and secure memory compartmentalization to achieve this.”
According to GlobalData’s ‘5G in Defense‘ report, because 5G covers a greater variety of vital applications and is based on a cloud architecture, it increases reliance on third-party providers, it introduces more cybersecurity concerns. A single physical server, for example, may host several separate tenants’ virtual resources, while a single tenant’s virtual resource may be distributed across multiple physical servers. Data leaks, residue, and attacks are dangers of multi-tenancy resource sharing and violating physical boundaries.
The report goes on to say active 5G development will necessitate an enhanced regulatory framework for sharing mobile infrastructure. These improvements are already taking place, but they require a regulatory environment that provides predictable conditions and clear assessment criteria for compliance with competition regulations and certain types of obligations, such as coverage obligations.
(Source: army-technology.com)
25 Aug 23. Cyber Executive summary.
- Suspected North Korean threat group ‘Kimsuky’ targeted the US-South Korea joint military exercise taking place between 21-31 August in a phishing campaign aimed at South Korean contractors working at the war simulation centre to exfiltrate sensitive defence information (see Sibylline Cyber Daily Analytical Update – 21 August 2023).
- A new malware campaign by suspected Chinese threat actors using a remote access trojan (RAT) malware (‘HiatusRAT’) to target Taiwan-based organisations and at least one US military procurement system in a co-ordinated reconnaissance operation has been ongoing since June 2023 (see Sibylline Cyber Daily Analytical Update – 22 August 2023).
- Elsewhere, advanced persistent threat (APT) group ‘Carderbee’ conducted a supply chain attack targeting organisations in Hong Kong and East Asia in a likely cyber espionage campaign. (see Sibylline Cyber Daily Analytical Update – 23 August 2023).
- Meanwhile, two Danish cloud hosting providers lost all customer data following a ransomware attack, causing a significant financial, operational and reputational impact (see Sibylline Cyber Daily Analytical Update – 24 August 2023).
- Finally, the North Korean ‘Lazarus’ Group is targeting European and US healthcare entities and internet infrastructure, exploiting a critical vulnerability for initial access (see Sibylline Cyber Daily Analytical Update – 25 August 2023).
What you may have missed
In the US, a class-action lawsuit was filed against the American firm, Progress Software, in the wake of the MOVEit supply chain compromise, which could prompt additional litigation against software companies with vulnerable software/applications exploited in large-scale campaigns. The lawsuit includes claims of negligence by Progress Software and breach of contract. The lawsuit alleges the firm failed to secure and safeguard customer data that threat actors can now exploit, posing an ongoing risk of identity theft and other fraud to customers. This case will likely set a precedent for the future liability of software and other technology vendors related to securing vulnerable technology, as well as drive wider industry discussions surrounding liability related to zero-days and contract requirements regarding data safeguarding.
Cyber word of the week
This week’s cyber word of the week is: Remote Access Trojan (RAT) (Source: Sibylline)
23 Aug 23. Hong Kong: Suspected Chinese APT exploits software supply chain in highly targeted cyber espionage campaign. According to media reports on 22 August, the advanced persistent threat (APT) group ‘Carderbee’ has been conducting a supply chain attack that targets organisations in Hong Kong and East Asia more broadly. The operation has used legitimate security software, Cobra DocGuard, and infected the software’s update tool with malware (PlugX) to infect users. Carderbee uses a digitally signed certificate from Microsoft to make the malicious downloader appear legitimate – a tactic common among threat actors exploiting Microsoft hardware developer accounts. PlugX belongs to a malware family widely shared between Chinese state-sponsored groups, indicating that Carderbee is likely affiliated with Chinese state-sponsored cyber activity. Researchers from software company Symantec observed that 2,000 computers contain the Cobra DocGuard software. However, only 100 of those computers were found to have malicious activity. This indicates that the operation was highly calculated and employed extensive reconnaissance to identify high-value targets. Chinese threat groups have increased their targeting of organisations in Hong Kong, Taiwan and the East Asian region more broadly. Consequently, the security risk posed by both supply chain attacks and targeted operations by Carderbee remains heightened. (Source: Sibylline)
21 Aug 23. US-Taiwan: Elevated risk of cyber espionage operations targeting military industrial sector, government entities. In a report released on 17 August, researchers from security company Lumen Black Lotus Labs reported on a new malware campaign that has been ongoing since June. The campaign uses remote access trojan (RAT) malware (‘HiatusRAT’) to target Taiwan-based organisations and at least one US military procurement system in a co-ordinated reconnaissance operation. The campaign has focused on semiconductor and chemical manufacturers as well as municipal government organisations in Taiwan. It also targeted a US Department of Defense (DoD) server associated with defence contracts for the Defense Industrial Base (DIB). Consequently, it is likely that the actors behind HiatusRAT are affiliated with the Chinese government and are likely to be carrying out its strategic interests, particularly regarding Taiwan. It is likely the actors are attempting to steal information related to current and future US military contracts in the region to better understand the military capabilities of the US and Taiwan in the South China Sea. The ongoing campaign sustains an elevated risk of cyber espionage operations targeting sectors adjacent to US military entities in the region as well as Taiwanese organisations. (Source: Sibylline)
21 Aug 23. LatticeFlow Collaborates with the U.S. Army to Unlock Mission-Critical AI. LatticeFlow, the leading Artificial Intelligence (AI) platform for improving model performance and safety, developed a novel paradigm in collaboration with the U.S. Army to build and deploy the next generation of highly resilient AI systems. Stemming from a three-year long strategic engagement between the two organizations, this initiative aims to elevate security measures and curtail safety risks to prevent unintended consequences.
“LatticeFlow’s approach is instrumental in enabling military commanders and decision-makers to confidently deploy mission-critical AI systems.” – said Dr. Igor Linkov, Senior Technical Manager at the US Army Corps of Engineers. He added: “A distinctive feature of their technology is the ability to create resilient AI models, which ensure that mission objectives are met despite potential disruptions and mis-predictions during deployment.”
Dr. Linkov unveiled this novel approach at the prestigious event on the Role of AI in Cyber Conflict, hosted by the NATO Cooperative Cyber Defense Center of Excellence. With a formidable assembly of over 600 attendees, including government officials, elite military personnel, and leading tech luminaries from powerhouses such as the US Army, NATO, and armasuisse, the event emphasized the pivotal role of AI in shaping the future of modern military warfare.
The cornerstone of this approach resides in the integration of LatticeFlow’s robust framework and toolset, designed to systematically diagnose AI models and reveal hidden blind spots to ensure utmost accuracy, reliability, and safety. Beyond enhancing the performance and safety of individual AI models in isolation, this approach enables decision-makers to assess the resilience of the entire AI system as a whole. Achieving this milestone involves modeling the interaction among multiple AI models within the AI system, as well as specifying mission-critical objectives.
Dr. Petar Tsankov, CEO & Co-founder of LatticeFlow, commented on the result: “Our approach to introducing a systematic methodology and toolset for improving performance and safety of AI systems lays the foundation for building next generation AI systems we can all trust. The importance of this is truly pivotal, especially in the manufacturing, medical, and insurance sectors, where AI-driven predictions affect critical business operations and human lives, and any disruptions can lead to profound consequences.”
About LatticeFlow
LatticeFlow is an award-winning founded with mission is to help companies deliver robust and performant AI models. To achieve this goal, the company has built the first scalable AI platform that guides AI teams through the AI lifecycle by automatically finding and fixing data and model issues. LatticeFlow was featured on the prestigious CB Insights “AI100 List of Most Innovative AI Companies” in 2022 and 2023, and won first place in the worldwide AI Privacy Challenge in April 2023, the Swiss AI Award in 2022 and the US Army Global AI Award in 2021. For more information about LatticeFlow, visit https://latticeflow.ai. (Source: PR Newswire)
21 Aug 23. SAIC Announces Strategic Collaboration Agreement with AWS. Science Applications International Corp. (NYSE: SAIC) today announced that it has signed a Strategic Collaboration Agreement (SCA) with Amazon Web Services (AWS) to provide industry-leading services, resources and expertise to help government customers better utilize SAIC’s secure cloud solutions in AWS GovCloud.
“This collaboration represents a natural evolution of our long-standing relationship with AWS and provides an influx of resources we are planning to use to expand our team dedicated to designing industry-leading secure cloud migration and Edge capabilities for the mission needs of our government customers,” said Nazzic Keene, chief executive officer at SAIC. “Secure cloud represents a critical growth area for our business, and this collaboration helps us better support our government customers in their modernization journeys and empowers them to leverage emerging technology to drive better mission outcomes.”
This collaboration further advances SAIC’s ability to develop, and design tailored secure cloud solutions for the unique needs of its government customers and accelerates the migration of specialized workloads into their AWS environments to power agency modernization efforts.
“AWS and SAIC share a commitment to providing government customers with offerings that support sensitive workloads both locally and at the edge,” said Dave Levy, vice president of US Federal, Worldwide Public Sector, AWS. “Through our multi-year agreement, AWS will collaborate with SAIC to deliver purpose-built solutions that will accelerate government agencies’ abilities to modernize on AWS, as well as accelerate critical decision making.”
“The agreement between AWS and SAIC is great news for government agencies,” says Adelaide O’Brien research vice president, IDC Government Insights. “This focused collaboration of two leading firms will hasten pre-built secure cloud innovations that will unleash the power of better agency outcomes, such as more effective real-time decision making, while uniquely conquering government challenges that have impeded critical cloud progress.”
The collaboration utilizes new CloudScend migration tools, to help government agencies rapidly migrate applications and gain the efficiencies of the cloud. The three core solution domains—Explore, Transform and Operate—can help government customers achieve increased operational efficiencies, lower operational costs and reduced security risks. This collaboration will further accelerate SAIC’s recently launched Zero Trust Accelerator (ZTA). SAIC ZTA enables government customers’ missions by delivering more cloud capabilities to Denied, Disrupted, Intermittent and Limited (DDIL) environments through new market leading Edge capabilities. (Source: BUSINESS WIRE)
21 Aug 23. US-South Korea: Cyber espionage operations underscore persistent security risks to government contractors. According to a statement by South Korean authorities on 20 August, the suspected North Korean threat group Kimsuky has targeted the planned US-South Korea joint military exercise taking place between 21-31 August. The phishing campaign has targeted South Korean contractors working at the war simulation centre with emails aiming to exfiltrate sensitive defence information. While the South Korean provincial police agency confirmed that no sensitive military information was stolen in this campaign, it underscored the persistent threat posed by Kimsuky and cited its frequent attempts to steal information useful to North Korea’s strategic interests. The annual Ulchi Freedom Shield drills simulate a response against a military and nuclear threat from North Korea. Pyongyang asserts that the exercises are tantamount to a rehearsal for an invasion. In response, North Korean threat groups typically conduct retaliatory cyber espionage campaigns against both the US and South Korea. Kimsuky is known to target individuals and organisations in Japan, South Korea and the US that work on foreign policy and national security issues related to the Korean Peninsula. There is a sustained risk of cyber attacks against firms contracted by government agencies. (Source: Sibylline)
16 Aug 23. Digital Superiority on the Battlefield blackned to showcase revolutionary TACTICAL CORE communication platform at DSEI 2023 in London.
Military IT specialist blackned is set to showcase its revolutionary solution for critical communications and data exchange, TACTICAL CORE, at DSEI in London.
The software portfolio connects the forces involved on the battlefield to form an extremely effective digital network that allows information to be exchanged quickly and securely. TACTICAL CORE is approved by Germany’s Federal Office for Information Security (BSI) for data transmission up to the level of ‘NATO Restricted,’ ensuring secure and authorised communication. At DSEI in London, the company from Heimertingen in Bavaria will be demonstrating how its communications platform ensures digital superiority on the battlefield.
The current events surrounding the Russian war of aggression against Ukraine have shown how important the networked and secure transmission of quickly available information is. It provides the decisive advantage during combat. Direct and secure communication is crucial, especially on the forward battlefield. TACTICAL CORE bridges this gap, offering a digital network for tactical-level information exchange, from brigade-level military organisations downwards.
This is exactly where blackned comes in: The blackned solution ensures effective interoperability with existing digital and analogue radio technologies, as well as the integration of new equipment. The introduction of more information, equipment, technologies, and systems into the battlefield means that the overall network becomes very complex. This results in the challenge of how to operate and maintain such a complex network, especially during deployment. To address this challenge as effectively and securely as possible, TACTICAL CORE relies on various IT solutions from blackned:
- The XONITOR software is the monitoring and management tool.
- RIDUX is a reliable and efficient data and communication infrastructure.
- The patented MeshFLOW enables seamless connectivity, even when soldiers move dynamically from one deployment area to another.
As a digital network, RIDUX enables the exchange of information at the tactical level, i.e., at the military organisation from brigade level downwards. Consisting of approximately 5,600 soldiers and hundreds of armoured and other vehicles, the brigade and its units can perform operational tasks independently and fight in conjunction with other forces. RIDUX creates a highly secure, dynamic, and self-organising communication infrastructure, ensuring joint situational awareness at all levels. “Time advantages through faster communication can save lives,” emphasises Timo Haas, blackned’s CEO and founder.
TACTICAL CORE is a design blueprint for the digitalisation of armed forces that encourages collaboration among developers, vendors, and users. It stands apart from restrictive barriers and exclusive access limitations, fostering innovation and creativity. There are no artificial barriers or exclusive access restrictions that could limit innovation and creativity.
“Customers have direct access to the source code, retaining sovereignty over the software without dependency on a service provider,” explains CEO Timo Haas.
Already in the test phase with the German Armed Forces, blackned’s virtual network has garnered positive responses from decision-makers. DSEI provides a platform for blackned to convince additional forces of the platform’s effectiveness, aiming to solidify its position as a leader in cutting-edge communications solutions.
(Source: www.joint-forcescom)
17-0 Aug 23. Digital Ocean. Covering 70 percent of the Earth’s surface and extending to a maximum depth of about 11,000 metres (36,000 ft), the ocean remains largely unexplored by man. Despite this, mankind now seems to want to digitise the ocean with massive networks of Internet of Things devices. The United Nations, NATO and a growing number of military organisations across the planet have plans to create a ‘digital ocean’.
No one doubts that the ocean is no less than a vital resource for our planet. However, it is also abused, contested, plundered, polluted, disputed and, of course, used as a medium for military conflict. Therefore, the race is already on to create the biggest and most powerful ocean IoT network, capable of tracking all natural, human and robotic activity below and above water. Recent advances in autonomous robotics, mesh networks and AI-managed data applications, have made it both practical to create data collection devices in enough numbers, and to have the means to process the resulting huge volumes of data.
China and the USA’s use of underwater drones for oceanographic surveys has ramped up over the past ten years, with both nations now running fleets of drones to map the sea floor. However, the recent acceleration in drone technologies and adoption by naval forces, has quickly brought focus back to naval operations and monitoring adversaries in the open ocean, or in contested areas of water.
The US Navy galvanised efforts to embrace artificial intelligence, data and unmanned systems in 2021, with the formation of Task Force 59. Stood up under the U.S. Naval Forces Central Command (NAVCENT) and based out of Bahrain and Aqaba, Jordan, the task force has fast-tracked the integration of new technologies into the navy. From smart buoys to high-speed autonomous interceptors, and from sail and wave powered surveillance craft to some of the most powerful AI data analysis systems, TF 59 has intensively tested new technologies pioneering best practices for the US Navy.
The People’s Liberation Army (PLA) Navy has also been trialing unmanned aerial vehicles (UAVs), unmanned surface vessels (USVs) and unmanned underwater vehicles (UUVs). China began intensive development of unmanned craft over a decade ago and the navy has become a major customer. Seafaring nations of the Asia Pacific have monitored China’s deployment of fleets of drones over the past few years. Meanwhile, the PLA Navy has also been developing a new class of amphibious assault ship, capable of launching multiple UAVs.
Despite the advantage of deploying the latest technology, numerous incidents over recent years have highlighted that creating a digital ocean environment does have its vulnerabilities. China seized a US UUV operating in the South China Sea in 2016. In late 2020, an Indonesian fisherman netted a Chinese Sea Wing (or Haiyi), apparently one of a fleet of UUVs deployed in the area. More recently, Iran’s Air Defense Forces seized TF 59 Saildrones in the Fifth Fleet area of operations on two separate occasions.
It remains to be seen whether the digital ocean will inspire more global collaboration, or simply open up new areas of friction. However, in the short term, many leading naval forces will be vying for the strategic advantage to be gained by improved intelligence, surveillance, target acquisition, and reconnaissance. (Source: Armada)
18 Aug 23. Lumen rediscovers malware now used in campaign to research U.S. military websites. Black Lotus Labs – the threat intelligence arm of Lumen Technologies (NYSE: LUMN) – discovered a complex campaign in March 2023 called “HiatusRAT” that infected business-grade routers globally. Continuous monitoring of HiatusRAT reveals the threat actors are back and using the malware to target Taiwanese organizations and research U.S. military websites.
Read the full analysis in Black Lotus Labs’ latest blog titled, “No rest for the wicked: HiatusRAT takes little time off in a return to action.”
“Black Lotus Labs’ role is to keep the internet safe, so consumers and businesses stay safe,” said Mark Dehus, director of threat intelligence at Lumen Black Lotus Labs. “Sophisticated threat actors, especially those sponsored by nation states, are exploiting edge routers and similar devices. They use malware like HiatusRAT to discreetly gain access to these devices and covertly run their espionage and criminal networks without the device owners’ knowledge. It’s a warning that businesses must act now to avoid their infrastructure becoming part of adversaries’ ongoing operations.”
What businesses and consumers should consider
- Lumen implemented countermeasures to help protect customers from this threat and disrupt its operations.
- Using comprehensive Secure Access Service Edge (SASE) or similar solutions that use VPN-based access can protect data and bolster their security posture.
- Enabling the latest cryptographic protocols can help protect data in transit; consider only using email services which rely upon SSL and TLS.
- Consumers with self-managed routers should follow best practices and regularly monitor, reboot, and install security updates and patches. End-of-life devices should be replaced with vendor-supported models to ensure patching against known vulnerabilities.
Why this threat is a concern
In the past year alone, Black Lotus Labs discovered three malware campaigns that utilized compromised business-grade and small office/home office (SOHO) routers, and the infosec industry has observed activity against several verticals by China-based actors.
Latest HiatusRAT findings and Black Lotus Labs response
- Initial HiatusRAT reporting showed the threat actor was targeting organizations in Latin America and Europe. Beginning in June 2023, however, the group’s focus shifted.
- The entities targeted in the latest campaign are consistent with the strategic interest of the People’s Republic of China according, to a 2023 ODNI threat assessment.
- Black Lotus Labs has null-routed the new Hiatus command and control (C2) servers across the Lumen global backbone. The team also added the Indicators of Compromise (IoCs) from this campaign into Rapid Threat Defense® – the automated threat detection and response capability that fuels Lumen’s security product portfolio by blocking threats before they reach the customer’s network.
Additional resources
- Read about Black Lotus Labs’ initial discovery of HiatusRAT.
- See Black Lotus Labs’ other router-based malware discoveries: ZuoRAT and AVrecon.
- Learn about how Black Lotus Labs leverages its network visibility to help protect customers and keep the internet clean.
- See how Lumen SASE Solutions provides simplified network access, security and management on the Lumen Platform.
- Learn how Lumen Rapid Threat Defense uses global threat intelligence from Black Lotus Labs as a countermeasure to block threats before they reach the customer’s environment.
About Black Lotus Labs
Black Lotus Labs is the threat intelligence team at Lumen. Our mission is to leverage our visibility into the Lumen network to protect businesses and keep the internet clean. We’re defenders of a clean internet, proactively disrupting ~150 C2s per month through takedowns and notifications.
About Lumen Technologies
Lumen connects the world. We are dedicated to furthering human progress through technology by connecting people, data, and applications – quickly, securely, and effortlessly. Everything we do at Lumen takes advantage of our network strength. From metro connectivity to long-haul data transport to our edge cloud, security, and managed service capabilities, we meet our customers’ needs today and as they build for tomorrow. For news and insights visit news.lumen.com, LinkedIn: /lumentechnologies, Twitter: @lumentechco, Facebook: /lumentechnologies, Instagram: @lumentechnologies, and YouTube: /lumentechnologies.
(Source: PR Newswire)
————————————————————————-
Spectra Group Plc
Spectra Group (UK) Ltd, internationally renowned award-winning information security and communications specialist with a proven record of accomplishment.
Spectra is a dynamic, agile and security-accredited organisation that offers secure Hosted and Managed Solutions and Cyber Advisory Services with a track record of delivering on time, to spec and on budget.
With over 15 years of experience in delivering solutions for governments around the globe, elite militaries and private enterprises of all sizes, Spectra’s platinum and gold-level partnerships with third-party vendors ensure the supply of best value leading-edge technology.
Spectra was awarded the prestigious Queen’s Award for Enterprise (Innovation) in 2019 for SlingShot.
In November 2017, Spectra Group (UK) Ltd announced its listing as a Top 100 Government SME Supplier by the UK Crown Commercial Services.
Spectra’s CEO, Simon Davies, was awarded 2017 Businessman of the Year by Battlespace magazine.
Founded in 2002, the Company is based in Hereford, UK and holds ISO 9001:2015, ISO 27001:2013 and Cyber Essentials Plus accreditation.
————————————————————————-

