Sponsored By Curtiss Wright
https://www.curtisswright.com/
——————————————————————————————————————————————————————————————————————————————————————————————————————————————
08 Sep 25. Thales completes key tests for Royal Navy’s Type 31 frigates. Following the FAT, the Type 31 programme will now progress to land-based testing at the Shore Integration Facility. Thales has concluded Factory Acceptance Tests (FAT) for the Mission System and Combat System on the Type 31 Inspiration-class frigates of the Royal Navy. The company, in collaboration with Babcock and the Royal Navy as part of an international team, finalised all essential factory-based tasks for this programme. The Mission System FATs were finished by the end of April 2025, with the Combat System tests following at the end of June 2025. Thales’s Combat Management System, TACTICOS, serves as the central operational component of the Type 31 frigates, managing sensor control, compiling situational data, assessing threats, supporting decision-making, and controlling weaponry. With these tests now complete, the next phase will involve land-based trials at a Shore Integration Facility before installation on HMS Venturer, the first-of-five Type 31 Inspiration-class frigates currently under construction at Babcock’s Rosyth facility. Thales UK Above Water Systems managing director Andy Laing said: “Working closely with our Royal Navy and Babcock colleagues, we are delighted to have successfully completed this critical stage in the development of the Royal Navy’s new Type 31 frigates. It represents another demonstration of Thales’s proven ability to deliver integrated naval mission systems to the highest standards.” Designed to replace the Type 23 frigates in service since the early 1990s, the Type 31 frigate is a UK-specific adaptation of Babcock’s Arrowhead 140 design. It forms part of the UK government’s 2030 vision for defence readiness against various threats and is being developed as part of the National Shipbuilding Strategy. These vessels are slated to start joining service by 2028 and will operate alongside Type 32 and Type 26 frigates focused on anti-submarine warfare. In February 2025, Thales was contracted by UK Defence Equipment & Support to provide maintenance and upgrades for communication systems across the Royal Navy’s fleet of warships and submarines. (Source: naval-technology.com)
08 Sep 25. HAVELSAN Technologies Strengthen Turkiye’s 8th MILGEM Frigate, TCG ICEL. Türkiye’s national shipbuilding program reached another milestone with the launch of the eighth MILGEM vessel, TCG IÇEL, at Sefine Shipyard in Yalova. Designed for multi-role missions including anti-submarine and surface warfare, air defense, and electronic warfare, the frigate represents the latest achievement of Türkiye’s growing naval capabilities. Behind this success lies the contribution of Türkiye’s defense industry, with HAVELSAN playing a key role in equipping TCG IÇEL with next-generation command and control technologies. With its integration of ADVENT and FLEETSTAR (Ship Data Distribution System), TCG IÇEL is now fully prepared to operate as a next-generation combat platform, equipped with the resilience, adaptability, and technological depth demanded by 21st-century naval missions.
ADVENT: The Brain of the Ship
TCG IÇEL is equipped with HAVELSAN’s ADVENT Network Enabled Combat Management System (CMS). Developed jointly with the Turkish Naval Forces Research Center Command, ADVENT enables real-time situational awareness, rapid decision-making, and secure interoperability with allied units. Already operational on numerous platforms, ADVENT has become the technological “brain” of Türkiye’s modern warships.
ADVENT has been adopted across four continents and multiple strategic regions, proving its adaptability to diverse naval platforms and complex operational environments. From offshore patrol vessels and corvettes to submarines and fast attack craft, ADVENT enables navies to operate not as isolated units, but as a network-enabled force capable of joint and multinational operations.
FLEETSTAR (Ship Data Distribution System): The Digital Heart of the Platform
Complementing ADVENT, HAVELSAN’s FLEETSTAR (Ship Data Distribution System)has also been integrated into TCG IÇEL. Acting as the “digital heart” of the vessel, FLEETSTAR (Ship Data Distribution System)ensures that critical data from sensors, navigation, and weapon systems is securely collected, synchronized, and distributed without interruption. The system, which has matured through years of local engineering and production, now serves on more than 60 platforms at home and abroad.
Strengthening the Blue Homeland
The launch of TCG IÇEL once again demonstrates how national engineering and local technologies contribute directly to Türkiye’s Blue Homeland vision. By integrating indigenous solutions such as ADVENT andFLEETSTAR (Ship Data Distribution System) HAVELSAN continues to strengthen the operational independence of the Turkish Navy while offering trusted, export-ready technologies to allied navies worldwide.
We are proud to be part of the MILGEM journey — a program that not only strengthens Türkiye’s naval capabilities but also demonstrates HAVELSAN’s ability to deliver advanced, future-ready technologies trusted by navies around the world. (Source: ASD Network)
08 Sep 25. Insta, a trusted cyber security and defence technology provider, has launched Insta DomainLink Secret™, a high-performance cross-domain solution (CDS) for secure, real-time data exchange between different networks and systems. Modern technological solution enables real-time, secure bi-directional data transfer between military domains, such as land, maritime, and air, and security clearance between different classification levels across the chain of command. Developed in collaboration with Lockheed Martin for the exchange of data in complex military network environments, its advanced operational security and cybersecurity capabilities help safeguard data against threats. The system also enables improved situational awareness and faster tactical decision-making across military domains.
Modern military operations require quick data centric decision-making
Typically, military branches, such as the navy and air defence, have their own command and control systems with limited ability to exchange information in a controlled way due to a lack of proper cybersecurity controls to enable connections. This can slow decision making which reduces situational awareness and might jeopardise the mission and put troops at risk. Multi-domain operations refer to military operations that integrate and synchronise actions across multiple military branches to achieve a key strategic objective. For example, a major NATO mission can include land, maritime, air, space, and cyber operations – all taking place at the same time over a vast area. The more NATO operatives participate, the more complex the data exchange between different networks and systems becomes.
“For example, if there were a military conflict in Europe, it would be necessary to communicate critical information between different systems and chains of command. An F-35 on a stealth mission needs to be able to share the information that all of its sophisticated sensor systems detect with the rest of the forces. If the aircraft detects an enemy threat, you need to decide very quickly who responds to it: the air force, a navy vessel, or ground-based assets? Real-time sharing of data and its effects across all branches is critical for both command and on-field operatives to effectively respond to threats and achieve high joint operational capability,” says Petri Reiman, Senior Vice President, Defence and Cyber Security at Insta.
Tailor-made solutions are on the way to being replaced by flexible systems
In order to benefit from cross-domain technologies in the past, it has been necessary to have them tailor-made, or they have required complex coding and scripting, slowing down their implementation. Programming or scripting-based solutions are further limited by static, pre-defined rule sets that could not be changed during real-time operation. Any changes require re-coding and testing by a developer.
In contrast, Insta DomainLink Secret™ introduces a new level of agility, empowering system operators themselves to adapt and refine operational rules instantly, without technical bottlenecks.
Information superiority and increasing cyber threats drive investment in defence
The last few years have also seen a rise in cyber attacks targeting defence systems and the military. Governments have responded, with, for example, the UK increasing spending on cyber capabilities in 2025. Additionally, at the 2025 NATO Summit in The Hague, member states pledged to spend 5% of GDP on defence by 2035, with 1.5% dedicated towards cybersecurity and critical infrastructure protection. While mission-critical data is available from multiple sources in the field, certain information should not be shared across the entire chain of command. To ensure operational security for any mission or procedures, Insta DomainLink Secret™’s filtering feature allows users to control data flows and who has access to them. In practice, the system can be programmed to control what information is transmitted, what information can be received or even what data, for example, a radar is permitted to send out.
“Information superiority is a key dimension of multi-domain operations – you simply must have a full operational picture available at all times. Our Cross Domain Solution has been specifically developed to meet the increasing challenges of the modern defence and military realities, including cyber threats. Our decades of experience in demanding defence solutions and strong focus on developing state-of-the-art command and control systems utilising data and AI put us in a unique position to offer secure solutions for NATO needs,” says Reiman.
To further enhance performance and security in critical environments, Insta DomainLink Secret™ is built on Field Programmable Gate Array (FPGA) technology that enables hardware-based content validation and filtering, enhancing performance and security in critical environments. Additionally, FPGA technology is highly adaptable and can be reconfigured to different situations and threats as the hardware does not need to be removed for updates.
The F-35 stealth fighters, which Finland will start receiving in 2026, are known as the world’s most modern and versatile fighter jets. In addition to maintaining the aircraft’s avionics systems, Insta will also be responsible for integrating the new fighter’s systems with the Finnish command and control systems in collaboration with the Finnish Defence Forces. Insta will showcase the solution at DSEI UK 2025 organised in London 9–12 September.
04 Sep 25. YEO Messaging, the British leader in AI-powered secure communications with continuous biometric authentication, has announced it has signed an agreement with CS Comms, a specialist provider in delivering secure, robust communications to defence organisations operating in some of the world’s most austere, and tightly controlled military environments. In the collaboration agreement, CS Comms will use the YEO Messaging for Business app as the encrypted messaging backbone behind its Phantom Signal solution, to give UK defence and government personnel operating discreetly on the ground, a combined bespoke specialised global SIM service with a fully encrypted, continually facial recognition verified, geo-fenced messaging platform. Founded by military veteran Craig Sykes, CS Comms first emerged from years of service within the highest levels of UK Defence, and has subsequently evolved into a trusted provider of bespoke, defence-ready SIM technology and more. Phantom Signal now integrates SIM-level protection with YEO Messaging’s continuous biometric authentication; end-to-end encryption to secure messages; and voice and video calls. Together, the combined solution ensures that sensitive operational communications remain private, controlled, and compliant, even in high-threat environments.
“In the environments we operate, secure communications are the foundation of survival. By integrating YEO Messaging for Business into our Phantom Signal platform, we’ve added a layer of identity-verified encryption that matches the strength of our SIM technology.” Noted Craig Sykes, Founder of CS Comms. “Together, this gives defence teams complete confidence that their communications are secure, private, and under their control, no matter where they are in the world.”
“CS Comms takes YEO Messaging into some of the most demanding and sensitive environments imaginable. Pairing our identity-verified, end-to-end encrypted platform with their Phantom Signal infrastructure creates a uniquely secure communications channel that’s not only resistant to interception, but also simple for personnel to use in the field.” Said Christo Conidaris, CRO of YEO Messaging. “It’s a powerful example of how the right technology partnership can directly enhance the operational safety of our armed forces.”
Both companies will be showcasing Phantom Signal at the DSEI Show (9–12 September 2025, stand S15-240) and you can schedule press meetings and see the solution live using the attached link. YEO Messaging, founded in 2017, is known for its continuous facial recognition, geofencing controls, and audit-ready secure messaging. The company’s “privacy-by-design” approach has seen recent traction with other defence clients such as ASU, Mission Critical Comms, One-Beyond, and Example IT.
05 Sep 25. New phishing techniques will increase security risks to businesses. On 3 September, the cyber security company Barracuda reported that threat actors are using new techniques to deliver a phishing-as-a-service (PhaaS) kit (Tycoon). In some instances, threat actors use a URL-encoding technique to create and subsequently distribute stealthy malicious links. This technique allows threat actors to bypass trusted security services by inserting and authenticating additional spaces and characters in a legitimate-looking web address. A second technique (known as Redundant Protocol Prefix) also relies on web address manipulation by inserting additional characters into a partially hyperlinked URL. Security protections typically only check hyperlinked URLs, enabling threat actors to evade detection while showcasing their knowledge. The malicious links ultimately redirect users to fake login pages to facilitate credential theft for financial profit. We assess that this report underscores increased security, social engineering and financial risks to global businesses as threat actors continuously develop new, more sophisticated techniques to bypass security mechanisms. (Source: Sibylline)
05 Sep 25. Cyber Update
Key points
- A disruptive cyber attack targeting at least 60 Iranian ships has underscored the sustained security and operational risks stemming from a suspected hacktivist group.
- Critics of the Russian state and various academics face heightened cyber espionage risks from the Russian state-sponsored group ‘APT29’.
- A cyber operation has sustained the security and espionage risks facing South Korean entities from the North Korean state-sponsored group ‘APT37’ (see Sibylline Cyber Daily Analytical Update – 3 September 2025 and our Technical analysis below).
- The exploitation of a legitimate artificial intelligence (AI)-powered red teaming tool (‘HexStrike-AI’) has underscored the heightened security risks facing businesses.
- New techniques to deliver a phishing-as-a-service (PhaaS) kit (‘Tycoon’) have underscored the elevated security risks facing global firms.
Technical analysis of weekly stories
A North Korean state-sponsored group (APT37) conducted a multi-phase cyber espionage operation (‘HanKook Phantom’) against South Korean academics, as well as government officials and intelligence officers. The first phase comprised the distribution of spear phishing emails to trick victims into downloading a malicious PDF document. The email emulated a monthly newsletter (typically published by a South Korean research group) that informs members of upcoming events to enhance legitimacy, highlighting the tailored nature of this operation. The PDF document contains an .LNK file that deploys a backdoor (‘RokRAT’) via an embedded PowerShell script. RokRAT executes a system function that checks the type of environment in which it is running to evade detection within secure environments (such as sandboxes and virtual machines). The malware then establishes communication with command-and-control (C2) infrastructure to facilitate data exfiltration after storing data of interest in a temporary file. The second phase of the cyber espionage operation entailed another phishing campaign that utilised a statement concerning relations between North Korea and South Korea to deploy a further .LNK file. This file can also execute a payload in a system’s memory and deletes the staged file to remain obfuscated, underscoring APT37’s detection-evasion capabilities. This cyber espionage operation showcases APT37’s continued efforts to refine its phishing techniques in order to tailor its victims and facilitate system infiltration.
A Russian state-sponsored group (APT29) targeted academics and other individuals who are critical of the Russian state in a cyber espionage operation. The group conducted a watering hole attack, injecting multiple legitimate and commonly visited websites with malicious JavaScript code that redirected approximately 10% of visitors to threat actor-controlled domains. The domains emulated Cloudflare verification pages to trick users into authenticating threat actor-controlled devices through a Microsoft device authentication flow in order to deploy malware, harvest credentials and collect information. APT29 used several advanced obfuscation techniques during the attack to prolong detection evasion; it used randomisation to redirect a small percentage of users and established cookies to prevent any one user from being redirected twice. The group can also quickly pivot to new infrastructure when detected, further highlighting its operational resilience and detection-evasion capabilities. This operation showcases the continued expansion of APT29’s operations beyond government and key sector targets.
Non-exhaustive recommendations to mitigate against these threats include:
- Monitor devices and networks for suspicious activity.
- Add available Indicators-of-Compromise (IoCs) to your organisation’s security systems to detect potentially malicious samples on the network; configure firewalls to block outbound communications to malicious IP addresses associated with any known malware.
- Adopt behaviour-based end-point detection and response (EDR) solutions, prioritising the detection of the initial stages of a compromise.
- Conduct cyber hygiene awareness courses for users, enabling them to recognise and report phishing and other types of social engineering.
Our cyber word(s) of the week: URL encoding (Source: Sibylline)
03 Sep 25. Creomagic Ltd., a leading developer of advanced communication technologies, will unveil CreoEdge-Dome, a new tactical broadband communications solution with full, 360-degree coverage, that merges the resilience of MANET (Mobile Ad-Hoc Networks) technology with the capacity and efficiency of tactical cellular concepts. This milestone in Creomagic’s tactical communication solutions addresses one of the most pressing challenges in modern operations – maintaining secure, high-capacity connectivity across broad operational zones without any infrastructure. Deployed mission-critical teams, from rescue units to security forces, cannot afford a moment of downtime. They need secure, high data rate connectivity everywhere, all the time. To achieve their mission objectives, they must operate as a single coordinated and effective entity, yet in practice are often spread across challenging terrains or regions lacking in infrastructure, not to mention congested and contested electronic environments. It is no surprise then that traditional comms systems struggle to deliver reliable, real-time connectivity across broad geographic zones, leaving gaps that compromise mission success.
That is where Creomagic’s new platform comes in. CreoEdge-Dome operates as an easy-to-deploy, omnidirectional hub that creates a persistent, AI-assisted communications bubble for high-capacity voice, video and data transmission – regardless of any existing infrastructure. Inspired by 5G-grade efficiency, CreoEdge-Dome features dynamic resource scheduling and sectorized antennas with seamless sector handover. This allows users to move between sectors without interruption or having to re-establish links, delivering full, uncompromised, 360-degree coverage for ground, naval and joint-operation tactical units. Rugged and rapidly deployable, this “mobile tactical communications tower” provides throughput of up to 80 Mbps and wide-area coverage, with mast-mounted broadband reach for tactical zones, forward units and HQ links, along with long-range or directional links for bridging dispersed MANET clusters (thereby extending operational range). Capable of being vehicle- or carrier-mounted, CreoEdge-Dome transforms into a mobile broadband hub for surrounding units, seamlessly relaying video and data up the chain of command. CreoEdge-Dome integrates CreoNet advanced technologies, including MIMO technology, high-speed connectivity, dynamic spectrum management, smart power management, as well as frequency hopping capabilities and real-time intelligent interference avoidance – all to ensure stable communications for deployed forces in congested or contested RF environments. In addition, its self-forming, self-healing MANET architecture delivers built-in robustness and adaptability for any mission. Whether on land, at sea, or across multi-domain operations, CreoEdge-Dome delivers more data, less interference and a truly stable connection, enabling close coordination, instant intelligence sharing and enhanced situational awareness – without complex setup or the need for any additional equipment or mechanical tracking.
“CreoEdge-Dome was developed in direct response to operational demands from the field,” explained Alexander Shapochnik, CreoMagic’s CEO. “Deployed units need broadband connectivity everywhere, all the time – and CreoEdge-Dome delivers exactly that: secure, reliable communications over wide areas, without regard to the limitations of any fixed infrastructure. By seamlessly integrating with our existing systems – from CreoHub for infantry and mission-critical teams to CreoEdge for vehicles and maritime platforms – we are extending Creomagic’s tactical communications ecosystem into a complete, end-to-end, multi-domain network. This marks a true leap forward in how tactical networks are deployed and sustained.”
Creomagic will be showcasing CreoEdge-Dome along with its full range of advanced communications solutions for ground, marine and aerial platforms at DSEI 2025 (London, United Kingdom, 9-12 September, Stand# N11-216).
About Creomagic Ltd.
Creomagic develops and manufactures innovative communications solutions that form intelligent Mobile Ad-Hoc Networks (MANETs), designed for mission-critical teams and tactical operations. Their radio technology provides users with reliable, secure and resilient on-the-go communication networks for any mission. Operationally proven, their solutions serve key defense players worldwide, including tactical teams, ground robotics, maritime applications and a wide range of UAS manufacturers. Creomagic solutions are engineered and fine-tuned by a highly experienced team, committed to the highest standards across their products and services. With customer needs paramount, Creomagic invests in constant development and innovation, providing tailored tactical solutions and ensuring crucial operational advantages for each mission.
08 Sep 25. Insta launches Insta DomainLink Secret™ to empower tactical decision-making and improve situational awareness across military branches and systems. The transition of military systems towards multi-domain operations The transition of military systems towards multi-domain operations requires real-time, effective coordination and sharing of data and decisions. Insta DomainLink Secret™ has been designed for data exchange between systems using NATO standards, operational security concerning information transmissions, and cybersecurity to protect and limit what data may be received and transmitted by communicating parties. Insta, a trusted cyber security and defence technology provider, has launched Insta DomainLink Secret™, a high-performance cross-domain solution (CDS) for secure, real-time data exchange between different networks and systems. Modern technological solution enables real-time, secure bi-directional data transfer between military domains, such as land, maritime, and air, and security clearance between different classification levels across the chain of command. Developed in collaboration with Lockheed Martin for the exchange of data in complex military network environments, its advanced operational security and cybersecurity capabilities help safeguard data against threats. The system also enables improved situational awareness and faster tactical decision-making across military domains.
Modern military operations require quick data-centric decision-making
Typically, military branches, such as the navy and air defence, have their own command and control systems with limited ability to exchange information in a controlled way due to a lack of proper cybersecurity controls to enable connections. This can slow decision-making which reduces situational awareness and might jeopardise the mission and put troops at risk. Multi-domain operations refer to military operations that integrate and synchronise actions across multiple military branches to achieve a key strategic objective. For example, a major NATO mission can include land, maritime, air, space, and cyber operations – all taking place at the same time over a vast area. The more NATO operatives participate, the more complex the data exchange between different networks and systems becomes.
“For example, if there were a military conflict in Europe, it would be necessary to communicate critical information between different systems and chains of command. An F-35 on a stealth mission needs to be able to share the information that all of its sophisticated sensor systems detect with the rest of the forces. If the aircraft detects an enemy threat, you need to decide very quickly who responds to it: the air force, a navy vessel, or ground-based assets? Real-time sharing of data and its effects across all branches is critical for both command and on-field operatives to effectively respond to threats and achieve high joint operational capability,” says Petri Reiman, Senior Vice President, Defence and Cyber Security at Insta.
Tailor-made solutions are on the way to being replaced by flexible systems
In order to benefit from cross-domain technologies in the past, it has been necessary to have them tailor-made, or they have required complex coding and scripting, slowing down their implementation. Programming or scripting-based solutions are further limited by static, pre-defined rule sets that could not be changed during real-time operation. Any changes require re-coding and testing by a developer.
In contrast, Insta DomainLink Secret™ introduces a new level of agility, empowering system operators themselves to adapt and refine operational rules instantly, without technical bottlenecks.
Information superiority and increasing cyber threats drive investment in defence
The last few years have also seen a rise in cyber attacks targeting defence systems and the military. Governments have responded, with, for example, the UK increasing spending on cyber capabilities in 2025. Additionally, at the 2025 NATO Summit in The Hague, member states pledged to spend 5% of GDP on defence by 2035, with 1.5% dedicated towards cybersecurity and critical infrastructure protection. While mission-critical data is available from multiple sources in the field, certain information should not be shared across the entire chain of command. To ensure operational security for any mission or procedures, Insta DomainLink Secret™’s filtering feature allows users to control data flows and who has access to them. In practice, the system can be programmed to control what information is transmitted, what information can be received or even what data, for example, a radar is permitted to send out.
“Information superiority is a key dimension of multi-domain operations – you simply must have a full operational picture available at all times. Our Cross Domain Solution has been specifically developed to meet the increasing challenges of the modern defence and military realities, including cyber threats. Our decades of experience in demanding defence solutions and strong focus on developing state-of-the-art command and control systems utilising data and AI put us in a unique position to offer secure solutions for NATO needs,” says Reiman.
To further enhance performance and security in critical environments, Insta DomainLink Secret™ is built on Field Programmable Gate Array (FPGA) technology that enables hardware-based content validation and filtering, enhancing performance and security in critical environments. Additionally, FPGA technology is highly adaptable and can be reconfigured to different situations and threats as the hardware does not need to be removed for updates. The F-35 stealth fighters, which Finland will start receiving in 2026, are known as the world’s most modern and versatile fighter jets. In addition to maintaining the aircraft’s avionics systems, Insta will also be responsible for integrating the new fighter’s systems with the Finnish command and control systems in collaboration with the Finnish Defence Forces. Insta will showcase the solution at DSEI UK 2025 organised in London 9–12 September.
———————————————————————————————————————————————————————————————————————————————————————————————————————————————
Curtiss-Wright Corporation (NYSE: CW) has a long history with its roots dating back to Orville and Wilbur Wright’s first flight in 1903, and Mr. Glenn Curtiss, the father of naval aviation. In 1929, the companies founded by these three great aviation pioneers, the Curtiss Aeroplane and Motor Company and Wright Aeronautical Corporation, merged to form the largest aircraft company at the time, Curtiss-Wright Corporation.
We have continued on the path of innovation and advanced engineering, and have applied that expertise to a number of critical applications in high-performance markets. Our success has resulted in a world-renowned reputation for performance, long-standing customer relationships and significant growth and profitability in the markets in which we compete.
Today, we are a global, integrated provider of highly engineered, technologically advanced products and services. Our revenues are generated by providing our critical solutions through three segments: Aerospace & Industrial, Defense Electronics and Naval & Power, which support several of the largest, most vital industries in the world.
——————————————————————————————————————————————————————————————————————————————————————————————————————————————

