• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • SPECTRA banner
  • Curtiss-Wright banner

BATTLESPACE Updates

   +44 (0)77689 54766
   

  • Home
  • Features
  • News Updates
  • Defence Engage
  • Company Directory
  • About
  • Contact

C2, TACTICAL COMMUNICATIONS, AI, CYBER, EW, CLOUD COMPUTING AND HOMELAND SECURITY UPDATE

November 29, 2024 by

Sponsored by Spectra Group

 

Spectra Group (UK) Ltd Home Page

————————————————————————————————————————————————————————————————————————————————————————————————————————————

27 Nov 24. Savox displays the future of safe and secure comms at PMRExpo 2024 booth C011. The Savox stand in Cologne showcases a wide array of innovative and proven communication controllers, mission-critical broadband products, hearing protective headsets, and wireless team communication solutions.

“Our philosophy centers on understanding professionals, their challenges, and overcoming obstacles. We prioritize delivering audio solutions that ensure clear communication, protect specialists—an organization’s most valuable asset—and empower them to perform at their best, regardless of the task or conditions.”, Sales Director Teppo Parviainen

Applying some of the latest advances in Bluetooth technology, as well as solving common challenges regarding, for example, audio clarity, integration, and versatility, Savox brings to Cologne major releases and updates to our proven line-up of secure communication products and solutions.

C-C200 Push-to-talk unit

Sleek in design, while being the most robust PTT nexus-connector in the market, the C-C200 provides a new level of safety and reliability, as well as innovative usage features. Its compact form fits easily on all workwear and tool vests, the wide variety of clip-on fixtures, silent stealth feature, and safe PTT button take functionality to a new level.

Pack-COM wireless team comms system

A unique wireless team communication system with encrypted full-duplex functionality. The portable base station creates a secure mid-range communication bubble allowing for a wide range of radio capabilities to be integrated into the system.

LIVECONNECT 200 body camera

This rugged high-definition wearable bodycam’s innovative features allow users to fully leverage the data and video capabilities of modern broadband networks and terminals, enabling seamless video streaming and video call between front-line workers and teams leads, command centers, and control rooms.

NOISE-COM 300 hearing protector

Specifically designed and built for safety and clarity in tough conditions, the NC-300 works with most available two-way radios. Crafted with high-quality components and sealed electronics, a built-in PTT button, and advanced noise cancellation microphone with extended battery-free performance in the noisiest of industrial environments.

 

27 Nov 24. US DLA completes inaugural hackathon with $3.5m AI contracts . The contracts were granted to Accenture, Knexus and Scale AI. The initiative, launched in spring 2024, aimed to address critical issues within the DLA. Credit: DOD photo by Chris Lynch/Defense Logistics Agency. The US Defense Logistics Agency (DLA) has marked the completion of the final phase of its first hackathon by awarding three AI contracts worth a total of $3.5m.   The initiative, launched in spring 2024, aims to address critical issues within the DLA through AI solutions. The contracts were granted to Accenture, Knexus and Scale AI.   The awarded contracts focus on exploring AI tools to create reporting mechanisms for demand planning use cases, develop a customised chatbot application and implement virtual agents for acquisition business systems.   Hackathon provided vendors with an opportunity to showcase their AI and machine learning capabilities in addressing DLA’s operational challenges.  A key objective of the initiative was to establish an acquisition model for testing, piloting and procuring AI and machine learning technologies tailored to DLA’s specific requirements.  DLA chief information officer Adarryl Roberts stated: “DLA’s goal to become a digital organisation is a journey that starts with standardising how the agency uses emerging technologies to answer DLA’s critical logistics challenges.

“These awards are our first attempt to expand our use of AI and create a repeatable end-to-end procurement solution.”

The process began with a broad agency announcement in March 2024, inviting companies to submit white papers on their capabilities, followed by technical and cost proposals for accepted submissions.  The DLA was particularly interested in vendors who could offer technology solutions with an understanding of the agency’s business and supply chain dynamics.   A team of DLA experts in research and development, AI and cybersecurity reviewed 46 submissions, evaluating them on scientific and technical merit, feasibility, viability, desirability and experience in AI.  The submissions were narrowed down to 17 entries, and then to 12.  Six vendors were selected, based on these assessments, to present proposals at an in-person event on 24 June 2024 to 50 leaders from the Defense Department, military services, DLA and academia. The technical evaluation team re-evaluated vendors’ white papers, technical and cost proposals, and in-person demonstrations to select the three winners. DLA plans to conduct its next hackathon in 2025.  (Source: airforce-technology.com)

 

28 Nov 24. Global: New malware will raise security risks to Linux systems. On 27 November, the cyber security company ESET reported the discovery of a new unified extensible firmware interface (UEFI) bootkit (‘Bootkitty’) designed to target Linux systems. Bootkitty bypasses verification checks during the start-up process, executing at the core of compromised systems. The actors then disable additional security mechanisms in the system’s memory, effectively obtaining full control over compromised devices. This enables them to modify system components, inject malicious code and deploy additional malware. We assess that Bootkitty is likely still in development due to the lack of refinement in its obfuscation capabilities and limitations in the number of Linux systems it can successfully target. Bootkitty is the first UEFI bootkit to be created for Linux systems. Similarly, on 23 November, a new Linux-based malware was reported, underscoring the continuous development and expansion of malware targeting Linux-based systems. This will raise security risks for global entities in the medium term. (Source: Sibylline)

 

28 Nov 24. Nokia upgrades Cloudbear network to offer customized hosting services in Europe.

  • Nokia to provide complete data center networking solution including fabric switching, interconnection and peering.
  • Dutch hosting provider praises Nokia’s community-driven approach from discord server channels to open source projects and tools.
  • Partnership lays groundwork for future data center expansion.

Nokia has been selected by Cloudbear, a growing hosting services provider in the Netherlands, to implement its state-of-the-art data center networking infrastructure. This complete data center deployment is implemented on the Kuberbetes-based CBWS hosting environment. Nokia’s deployment includes an ultra-reliable data center fabric switching, and data center gateway routers that provider IP data center interconnection, and IP peering. With this implementation, Cloudbear will further enhance its ability to provide customized hosting services to meet very specific customer requirements with maximum efficiency. In addition, Cloudbear’s ability to deliver fast, reliable, and secure hosting services to its customers across Europe is augmented.

As part of the partnership, Cloudbear has benefited from having access to Nokia’s community. For instance, the SR Linux Discord channel has provided them with quick access to questions about Cloudbear’s implementation. The Dutch provider has also used Nokia’s open source project Containerlab for its CI/CD pipeline implementation.

Marlin Cremers, co-founder of Cloudbear, said: “The flexibility and reliability of Nokia’s networking solutions allow us to bring services faster to market and with great efficiency, ensuring our customers benefit from high-quality, secure services. Working with Nokia, we were able to satisfy all our data center networking requirements from a single vendor. This includes ultra reliable DC fabric switching, world class IP data center interconnection, and highly scalable IP Peering. Other than a reputation of high-quality products, Nokia’s personal touch and community-driven approach has been a key differentiator and has stood out from day one, showing Nokia’s true commitment to this partnership.”

Matthieu Bourguignon, Senior Vice-President and Head of Europe for Network Infrastructure business at Nokia, commented: “This partnership highlights how Nokia’s complete data center solution from fabric switching to other essential IP networking capabilities can be leveraged to unlock the next generation of hosting services delivered by companies like Cloudbear. Our tailored approach and commitment to customer success ensures that businesses of all sizes can benefit from Nokia’s comprehensive range of data center solutions and ongoing support. We are dedicated to empowering companies through every phase of their journey, from pre-purchase to deployment and ongoing operations, ensuring customers like Cloudbear have the resources they need to thrive.”

Cloudbear is laying the groundwork for future growth and has deployed a complete data center networking solution from Nokia. This includes Nokia’s 7220 IXR-D series platforms for data center leaf, and spine roles, while also leveraging these platforms as a Data Center Gateway to connect to upcoming data center locations within their infrastructure. As part of this deployment Cloudbear has deployed Nokia’s SR Linux Network Operating System (NOS) offering a new level of openness, telemetry, and programmability conducive to network automation. Additionally, Cloudbear has deployed Nokia’s flagship 7750 SR-1 router, enabling Cloudbear to peer with the internet and other networks with massive scale.

Resources and additional information

Product page: 7220 Interconnect Router for Data Center Fabrics | Nokia

Product page: Service Router Linux (SR Linux) | Nokia

Product page: Nokia 7750 Service Router

About Nokia

At Nokia, we create technology that helps the world act together.

As a B2B technology innovation leader, we are pioneering networks that sense, think and act by leveraging our work across mobile, fixed and cloud networks. In addition, we create value with intellectual property and long-term research, led by the award-winning Nokia Bell Labs.

With truly open architectures that seamlessly integrate into any ecosystem, our high-performance networks create new opportunities for monetization and scale. Service providers, enterprises and partners worldwide trust Nokia to deliver secure, reliable and sustainable networks today – and work with us to create the digital services and applications of the future.

About Cloudbear

Cloudbear is revolutionising managed cloud services by empowering businesses to focus solely on developing their SaaS applications or supporting agencies that create (SaaS) applications for their clients. While customers concentrate on innovation, Cloudbear takes care of the heavy lifting—designing and managing infrastructure, Continuous Deployment pipelines, monitoring, and dashboarding.

At the heart of their services is CBWS, Cloudbear’s state-of-the-art cloud environment based in Eindhoven, The Netherlands. Powered by Nokia’s advanced networking technology, CBWS delivers low-latency, high-throughput solutions optimised for the needs of SaaS businesses and development agencies.

With a focus on scalability, security, and performance, Cloudbear enables companies and agencies to streamline operations, speed up deployment cycles, and bring transformative applications to market with confidence. Whether you’re developing your own SaaS product or helping others build theirs, Cloudbear is the trusted partner for a reliable, cutting-edge cloud foundation.

 

26 Nov 24. Bombardier delivers first Global 6500 aircraft to US Army. The aircraft is expected to support the modernisation of US aerial military intelligence. Bombardier Defense has delivered the first Global 6500 aircraft to the US Army, which will support prototyping efforts for the High Accuracy Detection and Exploitation System (HADES).   This comes after a contract was signed in January 2024 by the US Army Contracting Command-Redstone Arsenal with Bombardier for the acquisition of Global 6500 jets.  Through the HADES programme, the army will develop a fleet of aerial intelligence, surveillance, and reconnaissance (ISR) systems equipped with signals intelligence, synthetic aperture radar/moving target indicator, and other integrated capabilities. HADES will provide the army with enhanced range, speed, endurance, and ISR coverage.  Bombardier Defense vice-president Steve Patrick said: “Bombardier Defense is honoured to support the US Army with the delivery of the first Global 6500 aircraft, a high-performance platform that possesses the speed, endurance-at-range and altitude capabilities to support deep-sensing for the army of tomorrow.”  Bombardier Global 6500, a fixed-wing platform, offers enhanced performance for aerial ISR missions due to its ability to fly faster, longer, and higher than legacy airborne sensor platforms, the company noted.  The aircraft measures 99ft 5in in length, 25ft 6in in height, and has a wingspan of 94ft.   The HADES prototypes will mark the first use of large-cabin business jets by the US Army for aerial ISR, offering advanced deep-sensing capabilities for multidomain operations against peer and near-peer threats. Operating at higher altitudes than existing turboprop platforms, it will enable more extensive and continuous sensing over areas of interest. Deep sensing is a critical operational priority for the army’s future capabilities. US senator Jerry Moran said: “The partnership between Bombardier, the US Army and the Wichita workforce has produced a next-generation aircraft equipped to meet the demands of warfare in a new era of technology.  The HADES aircraft has the tools needed to deter threats, conduct surveillance and help keep our country safe.”  (Source: army-technology.com)

 

26 Nov 24. IronNet, a leader in cybersecurity pioneering Collective Defense, announced an expanded partnership with Morgan Business Consulting (MBC), a trusted provider of advisory services within the Defense Industrial Base (DIB). Building on a long-standing relationship, MBC has selected IronNet’s Network Detection and Response (NDR) solution to enhance threat visibility and proactively defend against sophisticated cyber threats. With IronNet’s AI-driven analytics and behavioral monitoring, MBC gains advanced capabilities to secure critical defense systems and fortify its cybersecurity posture.

“We’re excited to expand our partnership with IronNet to bring their Network Detection and Response (NDR) solution and Collective Defense platform to the Defense Industrial Base. With IronNet’s strong new leadership and continued innovation, our confidence in their ability to provide advanced, collaborative cybersecurity solutions has only strengthened,” said Sherome Lewis, Director of Information Technology at MBC.

MBC initially collaborated with IronNet through a NAVSEA contract, and this expanded partnership underscores a shared commitment to bolstering cybersecurity within the Defense Industrial Base. With the deployment of IronNet’s advanced NDR technology, MBC gains deeper network visibility, empowering them to proactively identify and mitigate potential threats before they escalate. This enhanced capability aligns with MBC’s mission to protect critical defense assets through coordinated and cutting-edge cybersecurity measures.

“Pacing the threat, pacing the technology and shared situational awareness across the entire DIB are hallmarks of the MBC, IronNet partnership,” said Retired Rear Admiral Mike Hewitt, Lead Independent Director on IronNet’s board. “I am excited to see the growth of these two companies as we continue our commitment to the war fighter and the industry that supports our men and women in uniform.”

“We are excited to deepen our relationship with Morgan Business Consulting, an organization that shares our commitment to securing the Defense Industrial Base,” said IronNet CEO, Linda Zecher. “This partnership exemplifies our dedication to delivering powerful, next-generation cyber defense that empowers DIB members to stay ahead of emerging threats.”

Through this expanded partnership, MBC leverages IronNet’s NDR capabilities for comprehensive threat detection, tailored to the unique needs of the Defense Industrial Base. MBC’s participation in IronNet’s Collective Defense model enables real-time, anonymized threat intelligence sharing across the DIB community, strengthening the resilience of the broader defense ecosystem. IronNet’s scalable, cost-effective cybersecurity solutions provide MBC and other DIB members with robust protection, ensuring secure, proactive defenses against evolving cyber threats.

About IronNet

IronNet, founded in 2014, merges industry-leading cybersecurity products with unrivaled service to deliver the most advanced real-time defense across global, private, and public sectors. Bringing together some of the best minds in cybersecurity and an unmatched team of experts from industry, government, and academia, IronNet was born to more effectively defend enterprises, sectors, and nations against highly organized cyber adversaries and increasingly sophisticated attacks.

About Morgan Business Consulting (MBC)

Founded in 2003, MBC is a Veteran-owned small business specializing in Management and IT consulting for government and commercial clients worldwide. With expertise in areas such as Supply Chain, Program Management, and Financial Advisory, MBC delivers impactful, mission-critical solutions. Headquartered in Washington, D.C., with offices in San Diego, Dayton, Ohio, and Japan, MBC is dedicated to exceeding client expectations through a collaborative and results-driven approach.

(Source: PR Newswire)

 

26 Nov 24. L3Harris Completes CDR for Space Development Agency Satellite Radios. Radios enhance satellite data processing and communication systems, advancing the Space Development Agency’s mission to bolster our nation’s missile warning and defense capabilities. L3Harris Technologies has reached a major milestone in its mission to provide the Space Development Agency (SDA) with space-based capabilities that enhance our national security. The company conducted a Critical Design Review for 45 mission payload (MPL) radios and 40 CXK-1000 radios they are designing, developing and producing in support of Lockheed Martin Space’s Tranche 2 (T2) Transport Layer Beta contract with the Space Development Agency (SDA). The MPL radios will handle and process warfighting data supporting Integrated Broadcast System-low Earth orbit (IBS-L) and tactical satellite communication users, while the CXK-1000 radios will enable Ka-band communication, which enables the transmission of data to and from the satellites. T2 Transport Layer Beta is one of several key activities L3Harris is working in support of the SDA’s Proliferated Warfighter Space Architecture, a resilient, layered network of military satellites in low-Earth orbit.

Other L3Harris activity completed and underway for other SDA programs includes:

  • Tranche 0 (T0) Tracking Layer: In early 2024, four missile-tracking satellites designed and built by L3Harris launched into orbit as part of the SDA’s T0 program. SDA’s Tracking Layer will demonstrate global indications, warning, tracking and targeting of advanced threats such as hypersonic missiles.
  • Tranche 1 (T1) Tracking Layer: L3Harris is designing and building 16 missile-tracking satellites as part of the T1 constellation, slated to launch in 2025. The satellites feature infrared sensors and advanced algorithms that rapidly detect, track and fuse threat data that is provided to the warfighter in real time.
  • Tranche 2 (T2) Tracking Layer: In early 2024, the SDA awarded L3Harris a $919 m contract to develop 18 infrared space vehicles for the T2 Tracking Layer program, which will provide near-global missile warning and tracking coverage.

“L3Harris is proud to be a leading partner to the Space Development Agency in the rapid development of missile warning and missile defense technologies in support of national security,” said Ed Zoiss, President, Space and Airborne Systems, L3Harris. “We’re able to leverage our extensive experience and innovative approach to continuously refine and enhance capabilities across each tranche, accelerating the launch of mission systems into orbit on faster timelines.” (Source: ASD Network)

 

26 Nov 24. Japan: Re-emergence of backdoor points to risks facing political sphere from Chinese state actors. On 26 November, the cyber security company Trend Micro reported on a new cyber espionage campaign that is being carried out by the suspected Chinese state-sponsored group ‘Earth Kasha’. The campaign has been ongoing since June; it targets individuals in Japan affiliated with politics, research institutions, think tanks and organisations linked to international relations. It begins with spear phishing emails that try to trick users into downloading a .ZIP file that deploys the ‘ANEL’ and ‘NOOPDOOR’ backdoors. Notably, ANEL was previously employed by ‘APT10’ until 2018; it was not observed until this latest campaign, pointing to the malware’s re-emergence and likely ongoing development. NOOPDOOR is also exclusively used by Earth Kasha against high-value targets, underscoring the targeted nature of this operation. As such, we assess there are heightened security risks facing those entities within the international relations sphere in Japan in the medium-to-long term as Earth Kasha continuous to shifts its tactics. (Source: Sibylline)

 

25 Nov 24. Bittium Wireless Ltd, a Subsidiary of Bittium Corporation, and Finnish Defence Forces Signed a Partnership Agreement. Bittium Wireless Ltd, a subsidiary of Bittium Corporation, and the Finnish Defence Forces have signed a Partnership Agreement for the years 2025–2036. The Partnership Services to be purchased under the agreement apply to the life cycle setup and maintenance of the command-and-control systems manufactured by Bittium and used by the Finnish Defence Forces. Those include for example tactical communications systems and the products related to the systems (Bittium Tactical Wireless IP Network™, Bittium Tough SDR™, Bittium Tough VoIP™) as well as their related maintenance and further development.

The Partnership Agreement establishes a framework for purchasing Bittium’s products, software, and services. The purchases are planned together with the Finnish Defence Forces for each year. The Finnish Defence Forces will issue separate purchase orders for the products and services in several batches according to what has been agreed in the Partnership Agreement. The monetary value of the Partnership Agreement depends on the needs and funding of Finnish Defence Forces’ projects and on the agreed maintenance and development services for each year.

The purpose of the agreement is for the partnership to become a solid part of the national defence and to ensure the availability of national competence and technologies in Finland that are critical for the military security of supply. The agreement was signed on Monday, November 25, 2024, at Tampere, Finland by the Chief of the Finnish Defence Forces Logistics Command, Brigadier General Tero Ylitalo and Director of the Finnish Defence Forces Logistics Command Joint Systems Centre, Colonel Jari Virolainen, along with the CEO of Bittium Corporation Johan Westermarck and Senior Vice President of Defense & Security Business Segment Tommi Kangas.

“The Partnership Agreement is the result of cooperation that has continued for decades and establishes a framework for collaboration long into the decade to come. We are very proud of the trust and confidence shown in our products and solutions. The agreement signed now creates mechanisms for joint planning for both normal conditions and states of emergency. Those mechanisms allow Bittium to plan and supply products, service, repair, maintenance, and development related activities for the Finnish Defence Forces in the long-term,” says Johan Westermarck, CEO of Bittium Corporation.

The Partnership Agreement replaces the purchase agreement and its option for additional purchases of Bittium Tough SDR Handheld and Vehicular radios that was signed by Bittium and the Finnish Defence Forces on December 12, 2018. The framework agreement signed on November 14, 2023, by Bittium and the Finnish Defence Forces for the purchase of the software-defined radio based Bittium Tactical Wireless IP Network™ (TAC WIN) system’s products and Bittium Tough Comnode™ communications devices and related accessories, will be included as part of the Partnership Agreement.

Bittium announced on April 5, 2024, with a stock exchange release that the Finnish Minister of Defence Mr. Antti Häkkänen had authorized the Finnish Defence Forces to sign a partnership agreement with Bittium Wireless Ltd.

 

25 Nov 24. Asia-Pacific: Linux backdoor points to ongoing security risks amid threat actors’ development. On 23 November, international media sites reported that the China-linked group ‘Gelsemium’ had been deploying a previously unknown Linux backdoor (‘WolfsBane’) in a cyber espionage operation since March 2023. It is not clear if this operation is ongoing. The campaign targeted the Philippines, Singapore and Taiwan. Gelsemium also previously targeted the Middle East region. While it is unclear how the group obtains initial access to targeted networks, there is a realistic possibility that it is able to exploit an unknown web application vulnerability that allows it to obtain persistence via web shells. WolfsBane operates similarly to Gelsemium’s Windows-based malware (‘Gelsevirine’), underscoring the group’s ongoing development of its malware arsenal. Additionally, there is a realistic possibility that threat actors will increasingly migrate towards exploiting vulnerabilities in internet-facing systems that use Linux, especially as Windows’ email endpoint security defences continue to improve. As such, we assess that the use of Linux-based malware against public-facing web applications will elevate long-term security risks for firms operating in the Asia-Pacific region. (Source: Sibylline)

 

25 Nov 24. UK and its allies must stay one step ahead in new AI arms race. UK announces new Laboratory for AI Security Research at NATO Cyber Defence Conference.

  • AI “revolutionising many parts of life – including national security” – Chancellor of the Duchy of Lancaster to say
  • New Laboratory for AI Security Research that will partner with world-leading experts from UK universities, the intelligence agencies and industry to boost Britain’s cyber resilience and support growth launched by government
  • New research will receive around £8m of initial government funding, with industry encouraged to invest in the partnership to support future research.

“NATO needs to continue to adapt to the world of AI, because as the tech evolves, the threat evolves”, the Chancellor of the Duchy of Lancaster will tell the NATO Cyber Defence Conference at Lancaster House on Monday.

To help the UK stay ahead in the “new AI arms race” the Chancellor of the Duchy of Lancaster will announce a new Laboratory for AI Security Research (LASR) to protect the UK and its allies against new threats, saying:

The lab will pull together world-class industry, academic and government experts to assess the impact of AI on our national security.

While AI can amplify existing cyber threats, it can also create better cyber defence tools and presents opportunities for intelligence agencies to collect, analyse, and produce more useful intelligence.

The Laboratory for AI Security Research will employ a ‘catalytic’ model, receiving an initial £8.22m round of government funding, inviting further investment and collaboration from industry.

Partners will include the Foreign Commonwealth and Development Office, the Department for Science Innovation and Technology, Government Communications Headquarters (GCHQ), National Cyber Security Centre, the MOD’s Defence Science and Technology Laboratory, the Alan Turing Institute, the AI Safety Institute, the University of Oxford, Queen’s University Belfast and Plexal. The laboratory will seek collaboration with like-minded partners, starting with the Five Eyes countries and NATO allies.

Addressing cyber and defence experts, he will say that:  “Cyber war is now a daily reality. One where our defences are constantly being tested. The extent of the threat must be matched by the strength of our resolve to combat it and to protect our citizens and systems. 75 years after its foundation, it is clear we need NATO more than ever. NATO has stayed relevant over the last seven decades by constantly adapting to new threats. It has navigated the worlds of nuclear proliferation and militant nationalism. The move from cold warfare to drone warfare. The gathering is the second ever NATO Cyber Defence Conference and the first to be held in London. The Chancellor of the Duchy of Lancaster will caution:  AI is already revolutionising many parts of life – including national security. But as we develop this technology, there’s a danger it could be weaponised against us. Because our adversaries are also looking at how to use AI on the physical and cyber battlefield.”

And he will say: “Be in no doubt: the United Kingdom and others in this room are watching Russia. We know exactly what they are doing, and we are countering their attacks both publicly and behind the scenes.

We know from history that appeasing dictators engaged in aggression against their neighbours only encourages them. Britain learned long ago the importance of standing strong in the face of such actions.  That’s why we support Ukraine in its fight to decide its own destiny. Putin is a man who wants destruction, not peace. He is trying to deter our support for Ukraine with his threats. He will not be successful.”

He will also reflect that: “Last year, we saw the US for the first time publicly call out a state for using AI to aid its malicious cyber activity. In this case it was North Korea who had attempted to use AI to accelerate its malware development and scan for cybersecurity gaps it could exploit. North Korea is the first, but it won’t be the last.

Alongside the new laboratory, the Chancellor of the Duchy of Lancaster will also announce a new £1m incident response project to share expertise so that allies can respond to cyber incidents more effectively.

Stephen Doughty, Minister for Europe, North America and UK Overseas Territories, will also attend the conference at Lancaster House. He said:

AI has enormous potential. To ensure it remains a force for good in the world, we need to understand its threats and its opportunities.

Today we have launched a new, world-leading research lab to enhance AI security to ensure the UK and our allies reap the benefits of AI, while detecting, disrupting and deterring adversaries who would use it to undermine our national security and economic prosperity.”

LASR builds on the UK’s position as the global birthplace of modern computing, following the pioneering legacy of Alan Turing. It is part of the government’s wider work to improve the UK’s cyber defences and grow the economy, which includes the forthcoming Cyber Security and Resilience Bill and recent designation of data centres as critical national infrastructure. (Source: https://www.gov.uk/)

 

25 Nov 24. NDA opens new specialised cyber facility. The Nuclear Decommissioning Authority (NDA) group has launched a specialised cyber facility to accelerate collaboration across nuclear operators and the supply chain, on the adoption of innovative technologies such as AI and robotics and enhancing their collective ability to successfully defend against cyber threats.

Cyber security attacks are a common and dynamic threat across all organisations, including the civil nuclear sector.

The Group Cyberspace Collaboration Centre (GCCC) provides a space for experts in cyber, digital and engineering to come together and share knowledge and learning on how best to adopt new technologies and defend against evolving threats.

David Peattie, NDA Group CEO, said: “The GCCC is further enhancing our collective ability to keep us safe, secure, resilient and sustainable in cyberspace. Enabling us to work together more closely means we can defend as one, benefitting the collective security of the individual organisations we serve. When it comes to security, we are never complacent, and we continually invest in our expertise and our technology to further strengthen our capability.”

Representatives from government, the nuclear sector, regulators and the supply chain attended the official opening which showcased the capability of the centre.

They heard about the NDA’s continued investment in cyber defences and the safe and secure use of technology in delivering its decommissioning mission.

Warren Cain, ONR Superintending Inspector, said: “All nuclear sites must have strong cyber security systems in place to protect important information and assets from cyber threats.  Cyber security is a key regulatory priority for the Office for Nuclear Regulation, and we welcome the NDA’s commitment to strengthen their cyber defences with this new specialist facility.”

The NDA is the body tasked by the government to clean-up the UK’s earliest nuclear sites safely, securely and cost effectively. The NDA group is made up of the NDA and its four key component parts Sellafield, Nuclear Restoration Services, Nuclear Waste Services and Nuclear Transport Solutions.

The NDA has invested in group-wide cyber services and capabilities to ensure systems are better protected and more resilient and delivering a strong, consistent approach to common cyber security threats.

The GCCC, situated in Herdus House in Cumbria, is a multi-functional space for partners to explore how new technologies can support mission delivery and facilitate security operations, cyber exercising and training.

It is part of the NDA group’s growing portfolio of digital and cyber capability including a joint Cyber Security Operations facility, which opened in Warrington in August.

It’s part of a constellation of related leading cyber and digital capabilities, including the Cyber Lab classroom at Energus, the Sellafield Engineering Centre of Excellence, and the Robotics and AI Collaboration centre (RAICo1). (Source: https://www.gov.uk/)

 

25 Nov 24. Australian Cyber Security Act passed into law. Today (25 November, the Albanese government passed Australia’s first standalone Cyber Security Act.

The act, launched as part of the 2023–2030 Australian Cyber Security Strategy, aims to address gaps in Australia’s cyber resilience and move towards the government’s goal of making Australia the most cyber secure country in the world.

“The Australian government is delivering on its commitment to secure Australia’s cyber environment and protect our critical infrastructure,” said Minister for Cyber Security Tony Burke.

“The government has passed into law Australia’s first standalone Cyber Security Act, a key pillar in our mission to protect Australians from cyber threats.

“This package forms a cohesive legislative toolbox for Australia to move forward with clarity and confidence in the face of an ever-changing cyber landscape.”

The Cyber Security Act will execute seven initiatives first introduced under the Cyber Security Strategy.

Most notable is the introduction of the “limited use” obligation, which will outline restrictions imposed on the Australian Signals Directorate (ASD) and the National Cyber Security Coordinator for how information shared by organisations that have suffered a cyber attack can be used, potentially protecting them from being punished and encouraging organisations to report incidents.

“Close cooperation between government and industry is one of our best defences against malicious cyber activity. In the wake of a cyber security incident, businesses need to know that they can call on government to quickly get the support they need,” said Minister Burke.

“The Cyber Security Act marks an important step in bringing Australia’s cyber laws into the 21st century.”

Certain organisations will also be required to report when they pay a ransom to threat actors, allowing cyber professionals to better understand how threat actors operate.

Additionally, the legislation will allow for the cyber security minister to set cyber security standards for smart devices to guide Australians on buying more secure devices and will see a Cyber Incident Review Board (CIRB) established to “conduct no-fault, post-incident reviews” of major, high-profile cyber security incidents and make recommendations to deal with future incidents.

The Security of Critical Infrastructure Act 2018 (SOCI) will also be reformed, simplifying the sharing of information between government and industry, including the regulation of telcos into the act, expanding the government’s last resort powers to allow it to better deploy aid in the event of a critical infrastructure cyber attack and allow the government to direct entities to deal with major flaws in their risk management programs. (Source: https://www.cybersecurityconnect.com.au/)

 

22 Nov 24. L3Harris Hits Key Testing Milestones in Modernizing F/A-18 EW Capabilities.

Successful hardware checks and simulation tests keep cutting-edge EW system prototype on pace for further development.

L3Harris continues to deliver on its promise to elevate electronic warfare (EW) capabilities on the U.S. Navy’s F/A-18 Super Hornet fighter jet, modernizing its defenses to protect aircrews from emerging threats in increasingly contested, complex environments. As part of an $80 m contract awarded in 2023 to develop a next-generation EW system for the Boeing-made aircraft, L3Harris recently successfully completed critical hardware checks and cutting-edge capability demonstrations that set the stage for the next phase of integration and testing.

Over a two-day period in August, teams from L3Harris and Boeing came together at the Navy’s air test and evaluation unit in Patuxent River, Md., to conduct hardware fit checks on our Advanced Electronic Warfare (ADVEW) system for the F/A-18. The L3Harris team used 3D-printed models of the system, including connectors and wiring, to ensure the system’s physical interfaces will integrate properly with the aircraft. No significant issues were found, validating our design and smoothing the path toward further prototype development.

The successful fit checks show that using 3D printed models is a smart, effective way to test and develop new technology. By creating detailed, physical replicas of components, engineers can identify and resolve potential issues well ahead of the formal prototype modification period.

Simulation tests reveal groundbreaking ADVEW capabilities

The L3Harris and Naval Air Systems Command team put ADVEW through its paces at the U.S. Navy’s Threat Air Defense Lab (TADL), which provides a closed-loop simulation environment to evaluate capabilities against government-validated threat models. ADVEW achieved expectations over five days of rigorous testing, demonstrating cutting-edge capabilities in advanced threat response techniques.

“These two critical testing milestones are our latest successes in decades of delivering cutting-edge EW capabilities to the F/A-18,” said Jennifer Lewis, President, Airborne Combat Systems, L3Harris. “We’re proud of the progress we’ve made and excited to move to the next phase of development as we continue push the boundaries of what’s possible in protecting U.S. Navy aircrews from emerging threats.”

L3Harris plans to conduct the next major design review with the Navy by the end of 2024. Prototype integration and testing are planned for Q1 2025, with delivery of the initial system expected in Q2. The Navy aims to conduct chamber testing in late 2025, where it’ll validate the system installed in an actual F/A-18. (Source: ASD Network)

 

22 Nov 24. Cyber Update Key points.

  • A fraudulent artificial intelligence (AI) content generator application is being used to distribute malware, pointing to elevated information-theft and financial risks from cyber criminals (see Sibylline Cyber Daily Analytical Update – 18 November 2024 and our Technical analysis below).
  • The exploitation of a zero-day vulnerability increases espionage risks from the Chinese state-sponsored group ‘BrazenBamboo’
  • The security breach of an additional US telecommunications provider amid recent security breach disclosures by prominent telecommunications firms underscores ongoing security risks from the Chinese state-sponsored group ‘Salt Typhoon’ (see Sibylline Cyber Daily Analytical Update – 20 November 2024).
  • Sensitive patient data was exposed in a data breach of a French hospital, highlighting security and social engineering risks to hospitals and patients see Sibylline Cyber Daily Analytical Update – 21 November 2024.
  • A new cyber operation points to heightened espionage risks from the Russian state-sponsored group ‘TAG-110’

Technical analysis of weekly stories

Threat actors are using a fake artificial intelligence (AI) content generator application to distribute the ‘Lumma Stealer’ and ‘AMOS’ information-stealing malware. The fake application is promoted on the social media platform ‘X’ (formerly known as Twitter) via advertisements showcasing deepfake political videos. The advertisement redirects users to a fraudulent website where they are tricked into clicking on malicious buttons purporting to download the fake AI application. However, this covertly installs the malware (Lumma Stealer for Windows and AMOS for macOS systems) onto victims’ devices. The website also contains a fake cookie banner asking users to consent to store browsing activity to mimic authorised online activity and enhance the website’s legitimacy. Upon installation, both malware strains exfiltrate cryptocurrency wallets and other sensitive information from Chromium-based browsers. Lumma Stealer uses techniques such as process injection to prolong detection evasion while AMOS enables low-skilled threat actors to easily deploy malware, manage infected systems and exfiltrate data with the help of a unified platform. Subsequently, the stolen information is sent to an actor-controlled archive to be retrieved at a later stage. This data is likely then sold on the dark web or used in follow-on attacks for financial profit.

The Chinese state-sponsored group BrazenBamboo is exploiting an uncategorised zero-day vulnerability in an ongoing cyber espionage campaign. The vulnerability affects Fortinet’s FortiClient Windows virtual private network (VPN) service and stores user credentials in process memory following user authentication. BrazenBamboo deploys a custom post-exploitation toolkit (‘DeepData’) to exploit the vulnerability, stealing exposed user credentials to likely infiltrate targeted systems by hijacking VPN accounts. The group also used another post-exploitation tool, ‘DeepPost’, to send stolen credentials to the command-and-control (C2) infrastructure. The actors likely move laterally within compromised systems to conduct additional espionage activities, including deploying a new Windows variant of the ‘LightSpy’ malware. LightSpy contains several plugins to steal additional data from compromised systems including key logs, audio, cookies and videos. Notably, this new variant remains fileless by executing the malware in the system’s memory, underscoring the sophistication of the group’s detection evasion capabilities.

Some non-exhaustive recommendations to mitigate against these threats include:

  • Monitor devices and networks for suspicious activity
  • Add available Indicators-of-Compromise (IoCs) to your organisation’s security detection systems to detect potentially malicious samples on the network
  • Adopt behaviour-based end-point detection and response (EDR) solutions, prioritising the detection of the initial stages of a compromise
  • Ensure adequate security monitoring and detection capabilities, particularly for all external-facing services and devices; this includes personal devices connected to corporate networks or applications
  • Adopt and review network authentication services including virtual private network (VPN) services and multi-factor authentication (MFA).
  • Avoid downloading applications from untrusted third-party websites and only use the official websites and application stores to install applications and tools on devices.

Our cyber word(s) of the week: Execution in memory (Source: Sibylline)

 

22 Nov 24. Cuashub.com said today that Creomagic showcases UAS tech to counter electronic warfare. Creomagic Ltd., a developer of advanced communication technology, highlighted its work in secure and resilient communications for loitering munitions at SAE Media Group’s Loitering Munitions Conference in the UK on November 19-20. The company highlighted how its software-defined radio (SDR) seeks to nullify key C-UAS defences by protecting against electronic warfare techniques such as jamming, interception and GPS denial.

The focus on communication solutions comes at a time when loitering munitions and UAS are increasingly considered to be key components in the modern approach to warfare. As these systems have evolved, C-UAS strategies have naturally evolved alongside them and, with the development of loitering munitions that offer resistance against traditional electronic countermeasures, they will need to continue to do so.

This back and forth between UAS and C-UAS capabilities has been consistently demonstrated in the war in Ukraine, with each side constantly working to outpace the development of the adversary.

Creomagic’s Creo-ADL technology is designed to protect against countermeasures such as electronic jamming, interception and GPS denial, which are generally considered to be the most effective “soft-kill” solutions for neutralising UAS.

How does it work?

Creo-ADL incorporates AES-256 encryption alongside communication and transmission security to ensure data integrity and protect against interception. Cognitive SDR technology and frequency-hopping techniques enable anti-jamming measures, automatically mitigating interference in contested electromagnetic environments.

For scenarios where GPS signals are compromised, the technology enables navigation through RF-based positioning, utilising signal-of-arrival techniques. Additionally, its low-probability-of-interception and low-probability-of-detection capabilities make UAS much more difficult to track.

“These capabilities are not just technological advancements; they are operational imperatives,” explained Alex Shapochnik, CEO of Creomagic. “In environments saturated with countermeasures, the ability to securely and reliably exchange data determines mission success or failure.”

What are the implications for C-UAS?

As C-UAS systems grow more sophisticated, technologies like Creomagic’s represent a dual-edged evolution, enhancing offensive drone systems while challenging the efficacy of current defensive measures. The ongoing race between UAS and C-UAS technologies is accelerating the development of both.

While advancing the capabilities of their loitering munitions and protecting them against the C-UAS defences of the adversary is a development that any military commander would benefit from, it also raises the discussion around how we can counter the very same capabilities when possessed by that adversary.

https://cuashub.com/en/content/creomagic-showcases-uas-tech-to-counter-electronic-warfare/ (Source: https://cuashub.com/)

————————————————————————————————————————————————————————————————————————————————————————————————————————————–

Spectra Group (UK) Ltd

Spectra Group (UK) Ltd, internationally renowned award-winning information security and communications specialist with a proven record of accomplishment.

Spectra is a dynamic, agile and security-accredited organisation that offers secure Hosted and Managed Solutions and Cyber Advisory Services with a track record of delivering on time, to spec and on budget.

With over 15 years of experience in delivering solutions for governments around the globe, elite militaries and private enterprises of all sizes, Spectra’s platinum and gold-level partnerships with third-party vendors ensure the supply of best value leading-edge technology.

Spectra was awarded the prestigious Queen’s Award for Enterprise (Innovation) in 2019 for SlingShot.

In November 2017, Spectra Group (UK) Ltd announced its listing as a Top 100 Government SME Supplier by the UK Crown Commercial Services.

Spectra’s CEO, Simon Davies, was awarded 2017 Businessman of the Year by Battlespace magazine.

Founded in 2002, the Company is based in Hereford, UK and holds ISO 9001:2015, ISO 27001:2013 and Cyber Essentials Plus accreditation.

——————————————————————————————————————————————————————————————————————————————————————————————————————————————-

Primary Sidebar

Advertisers

  • Pythia
  • Teledyne
  • Exensor
  • Visit the Oxley website
  • Blighter
  • SPECTRA
  • Britbots logo
  • Faun Trackway
  • Systematic
  • CISION logo
  • ProTEK logo
  • ProTEK logo
  • ssafa logo
  • IEE
  • EXFOR logo
  • sibylline logo
  • Team Thunder logo
  • Comtech logo
  • GoExporting logo
  • ECHODYNE logo
  • Supercat logo
  • Galvion logo
  • Leonardo DRS logo
  • MTC logo
  • IDC logo
  • DSEI logo
  • DVD2024 logo
  • SDSC logo
  • TELEDYNE FLIR logo
  • VeteranUK logo
  • Matrix Space logo
  • ST Engineering logo
  • EWS logo
  • sentinel photonics logo
  • capua logo
  • Curtiss-Wright logo
  • Brave1 logo
  • Drone Evolution logo
  • AEI Systems logo
  • EOS logo
  • NMSUK logo
  • Openworks logo
  • Sandown Park logo
Hilux UKDSE AARTOS ST Engineering Future Artillery

Contact Us

BATTLESPACE Publications
41 St Georges Drive
London SW1V 4DG

+44 (0)77689 54766

BATTLESPACE Technologies

An international defence electronics news service providing our readers with up to date developments in the defence electronics industry.

Recent News

  • Protek Selected By Dutch Armed Forces

    May 2, 2026
    Read more
  • PARLIAMENTARY QUESTIONS

    May 1, 2026
    Read more
  • MANAGEMENT ON THE MOVE

    May 1, 2026
    Read more

Copyright BATTLESPACE Publications © 2002–2026.

This website uses cookies to improve your experience. If you continue to use the website, we'll assume you're ok with this.   Read More  Accept
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT