<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet media="screen" type="text/xsl" href="https://one.sightlinemg.com/airforcetimes/wp-content/themes/smg/assets/xslt/rss-xslt.xml"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
xmlns:news="http://www.pugpig.com/news"
>

<channel>
	<title>Mark Pomerleau, Author at Air Force TImes</title>
	<atom:link href="https://one.sightlinemg.com/airforcetimes/author/mark-pomerleau/feed/" rel="self" type="application/rss+xml" />
	<link>https://one.sightlinemg.com/airforcetimes</link>
	<description>Independent News For Airmen &#124; Air Force Times</description>
	<lastBuildDate>Tue, 18 Aug 2026 20:43:03 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.4</generator>

<image>
	<url>https://one.sightlinemg.com/wp-content/uploads/2026/06/favicon-air.png?w=32</url>
	<title>Mark Pomerleau, Author at Air Force TImes</title>
	<link>https://one.sightlinemg.com/airforcetimes</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">255331871</site><atom:link rel="next" type="application/rss+xml" href="https://one.sightlinemg.com/airforcetimes/feed/?paged=2" />
	<item>
		<title>Experts urge caution in assessing Ukraine cyberattacks</title>
		<link>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2022/02/16/experts-urge-caution-in-assessing-ukraine-cyberattacks/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2022/02/16/experts-urge-caution-in-assessing-ukraine-cyberattacks/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Wed, 16 Feb 2022 16:55:26 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Middle Column]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2022/02/16/experts-urge-caution-in-assessing-ukraine-cyberattacks/</guid>

					<description><![CDATA[DDoS incidents in Ukraine could signal a larger event is coming, but experts are still cautious.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2022/02/16/experts-urge-caution-in-assessing-ukraine-cyberattacks/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">27966</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP22044533180759.jpg.jpg" width="5464" height="3640" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — Cyber incidents in Ukraine this week raised fresh alarms amid concerns Russia may invade the nation imminently, however, experts said they’re cautiously awaiting more details about the cyber activity.</p>



<p class="wp-block-paragraph"><a href="https://www.militarytimes.com/flashpoints/ukraine/2022/02/15/cyberattack-hits-ukrainian-government-sites-major-banks/" target="_blank">The distributed denial of service (DDoS) incidents</a> — which essentially flood internet sites with an unusually high amount of web traffic, rendering them useless — hit at least 10 Ukrainian websites, including those of the Defense Ministry, Foreign Ministry, Culture Ministry and Ukraine’s two largest state banks. Denial of service attacks don’t require the incredible sophistication or painstaking access to networks needed for most data theft or deleterious cyberattacks, making them a common tactic among criminal organizations.</p>



<p class="wp-block-paragraph">Ukrainian Information Ministry’s Center for Strategic Communications and Information Security suggested Russia could be behind the Feb. 15 incident, but didn’t provide details.</p>



<p class="wp-block-paragraph">“It is possible that the aggressor resorted to tactics of petty mischief, because his aggressive plans aren’t working overall,” the statement said.</p>



<p class="wp-block-paragraph">The Pentagon and U.S. Cyber Command deferred comment on the cyberattack to the National Security Council, which did not immediately respond to a request for comment.</p>



<p class="wp-block-paragraph">Despite these incidents not yet being attributed to an actor, experts are worried they could signal an uptick in activity in eastern Europe amid the Russian troop buildup.</p>



<p class="wp-block-paragraph">“Overall, this is telling us that more is starting to go down in Ukraine. I think this may very well signal the beginning of a Russian attack on Ukraine,” Tatyana Bolton, policy director of the Cybersecurity &amp; Emerging Threats team at the R Street Institute think tank, told C4ISRNET. Bolton is also the former director of the <a href="https://www.c4isrnet.com/congress/2020/03/11/congressional-report-outlines-new-american-cyber-strategy/" target="_blank">Cyberspace Solarium Commission</a>, a a bipartisan organization created in the 2019 defense policy bill to develop a multipronged U.S. cyber strategy.</p>



<p class="wp-block-paragraph">Bolton noted there’s no direct indication Russian entities are responsible. However, the targets affected are what one might see during the beginning of a coordinated military campaign, she said.</p>



<p class="wp-block-paragraph">Timothy Jones, vice president of systems engineering at Forescout, an enterprise defense company, cautioned that while the initial DDoS incident may not seem sophisticated, it could get worse and more complex.</p>



<p class="wp-block-paragraph">With denial of service attacks, “sometimes the full extent isn’t really seen right away. We’re just starting to get some of the reports out,” said Jones. “Maybe they’re doing stuff in the background that we’re not necessarily looking at yet, or hasn’t really been felt.”</p>



<p class="wp-block-paragraph">Using denial of service indicates some level of restraint, which Bolton described as a bit atypical for Russia.</p>



<p class="wp-block-paragraph">“Usually, [DDoS] doesn’t take you offline for more than a day,” she said. “It can be more serious, but it’s not like encrypting all their files or deleting all their files. Those would have really been significant attacks. But the concern is also, what’s next? Is this a smokescreen for a larger incident or attack?”</p>



<p class="wp-block-paragraph">The critical infrastructure sector — such as energy companies — were not targeted, which could signal that if Russia was behind the incident, they either view the banking sector as more critical or they are following general rules of warfare by not knocking out power to the civilian sector in the dead of winter, Bolton added.</p>



<p class="wp-block-paragraph">DDoS is a tactic the Russians have been accused of using previously.</p>



<p class="wp-block-paragraph">In mid-January, Ukraine blamed Russia for a cyberattack that temporarily disabled about 70 Ukrainian government websites simultaneously. During last month’s attack, an announcement posted stated that Ukrainians should “be afraid and expect the worst.”</p>



<p class="wp-block-paragraph">Russia launched one of the most devastating cyberattacks ever on Ukraine in 2017 with the NotPetya virus, causing over $10 billion in damage worldwide. The virus, also disguised as ransomware, was a so-called “wiper” that scrubbed entire networks.</p>



<p class="wp-block-paragraph">Cristin Monahan of the George Washington University’s National Security Archive’s Cyber Vault pointed out the Russians hit Estonia with a series of DDoS incidents in 2007 over Estonia’s decision to relocate a Soviet war monument, something of a watershed moment in the modern cyberwarfare era.</p>



<p class="wp-block-paragraph">“The Russians made the point that even without direct military intervention, or even cyber interventions with kinetic effects, they can exert significant pressure on nations in their crosshairs, and Ukraine has received the same message for a number of years,” she said.</p>



<p class="wp-block-paragraph">Monahan added that DDoS incidents rarely result in military intervention, implying the U.S. is not likely to physically engage with Russia over the loss of banking services.</p>



<p class="wp-block-paragraph"><i>The Associated Press contributed to this report.</i></p>
]]></content:encoded>
	</item>
		<item>
		<title>Why the US should fight Russia, China in the ‘gray zone’</title>
		<link>https://one.sightlinemg.com/airforcetimes/news/pentagon-congress/2022/01/04/why-the-us-should-fight-russia-china-in-the-gray-zone/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/news/pentagon-congress/2022/01/04/why-the-us-should-fight-russia-china-in-the-gray-zone/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Tue, 04 Jan 2022 21:04:23 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Pentagon & Congress]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2022/01/04/why-the-us-should-fight-russia-china-in-the-gray-zone/</guid>

					<description><![CDATA[Time for Washington to get more active in the 'gray zone,' especially cyber and information warfare, according to the Atlantic Council.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/news/pentagon-congress/2022/01/04/why-the-us-should-fight-russia-china-in-the-gray-zone/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">26578</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP20233561554146.jpg.jpg" width="2000" height="1331" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON ― China has achieved a military buildup in the <a href="https://www.defensenews.com/opinion/commentary/2020/04/17/chinas-island-fortifications-are-a-challenge-to-international-norms/" target="_blank">South China Sea</a>, stole billions of dollars worth of <a href="https://www.defensenews.com/civilian/fbi-doj/2018/12/20/what-happens-next-after-chinas-alleged-theft-of-american-business-secrets/" target="_blank">American intellectual property</a> and is launching <a href="https://www.defensenews.com/civilian/dhs/2019/02/07/department-of-homeland-security-warns-of-cyberattacks-on-third-party-companies-by-china/" target="_blank">ongoing cyberattacks</a>, while <a href="https://www.defensenews.com/federal-oversight/congress/2020/04/22/senate-panel-backs-assessment-that-russia-interfered-in-2016/" target="_blank">Russia interfered</a> in U.S. elections, used masked “<a href="https://www.defensenews.com/digital-show-dailies/sofic/2017/05/15/countering-little-green-men-pentagon-special-ops-studies-russia-gray-zone-conflict/" target="_blank">little green men</a>” in Ukraine, and actively promotes mis- and disinformation.</p>



<p class="wp-block-paragraph">Now it’s Washington’s turn to get serious about the “gray zone,” especially when it comes to cyber and information warfare, says a <a href="https://www.atlanticcouncil.org/content-series/atlantic-council-strategy-paper-series/seizing-the-advantage-a-vision-for-the-next-us-national-defense-strategy/" target="_blank">new report</a> from the Atlantic Council. The term is used to describe competitive actions that occur below the threshold of conflict.</p>



<p class="wp-block-paragraph">The think tank’s recommendations come as the Biden administration finishes its National Security Strategy and National Defense Strategy, which are expected to be published within weeks and address gray-zone or hybrid warfare.</p>



<p class="wp-block-paragraph">“The DoD needs to compete now and engage in offensive hybrid warfare actions. The United States must respond where competition with China and Russia is taking place today, primarily by playing an enhanced role in gray-zone competition,” read the report, which was led by the Atlantic Council’s Clementine Starling, Air Force Lt. Col. Tyson Wetzel and Christian Trotti ― with former Defense Secretary <a href="https://www.defensenews.com/interviews/2018/02/02/interview-former-pentagon-chief-chuck-hagel-on-trump-syria-and-korea/" target="_blank">Chuck Hagel</a>.</p>



<p class="wp-block-paragraph">The report called for new strategic competition coordinators on the National Security Council with direct access to the president, as well as a new whole-of-government messaging strategy aimed at countering anti-American narratives and reinforcing the rules-based international order. The Pentagon would play a supporting role, “executing offensive and defensive hybrid warfare activities that comport with U.S. values.”</p>



<p class="wp-block-paragraph">Already, <a href="https://www.defensenews.com/congress/2021/04/27/bidens-pentagon-policy-chief-colin-kahl-poised-for-confirmation-with-gop-senators-absent/" target="_blank">Colin Kahl</a>, the undersecretary of defense for policy, said last month that the Defense Department’s overarching “integrated deterrence” concept ― a key part of the forthcoming National Defense Strategy ― expands “across the spectrum of conflict from high-intensity warfare to the gray zone.” That includes other instruments of national power: intelligence, economic, financial, technological and alliances, Kahl has said.</p>



<p class="wp-block-paragraph">That mission is going to become more important as nations hostile to U.S. interests increasingly operate below the threshold of traditional conflict to challenge international rules and norms, particularly at flashpoints in the Taiwan Strait and Ukraine, the authors argued. The DoD has taken significant steps to compete in the gray zone, but the authors called for “a departmental paradigm shift” and for the military to go on the offense.</p>



<p class="wp-block-paragraph">“The department has begun to focus more on countering our strategic competitors’ hybrid warfare efforts, but what I also see is an inherent conflict between competing now and the sexier thing, which is buying new equipment, getting ready to fight the war of the future; and sometimes, under the weight of that effort, competing today loses out a little bit,” Wetzel, who is also a senior fellow at the Atlantic Council, told Defense News.</p>



<p class="wp-block-paragraph">“Everybody agrees we need to defend in the gray zone, but we really wanted to focus on the fact that we can take the offense as well,” he added.</p>



<p class="wp-block-paragraph">For instance, as Russian President Vladimir Putin masses troops along Ukraine’s border and claims Ukraine and the West are the aggressors, the U.S. government ― under a more proactive approach to gray zone warfare ― would communicate more consistently and more often that Putin is the sole antagonist.</p>



<p class="wp-block-paragraph">“Just on the information domain, we need to control the narrative, we need to counter false narratives a lot clearer,” Wetzel said.</p>



<figure class="wp-block-image size-large"><img fetchpriority="high" decoding="async" width="2308" height="1601" src="/wp-content/uploads/2026/08/AP21364750111540.jpg.jpg" alt="" class="wp-image-52235" srcset="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21364750111540.jpg.jpg 2308w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21364750111540.jpg.jpg?resize=300,208 300w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21364750111540.jpg.jpg?resize=768,533 768w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21364750111540.jpg.jpg?resize=1024,710 1024w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21364750111540.jpg.jpg?resize=1536,1065 1536w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21364750111540.jpg.jpg?resize=2048,1421 2048w" sizes="(max-width: 2308px) 100vw, 2308px" /><figcaption class="wp-element-caption">A Ukrainian female soldier takes a rest near a fighting position on the line of separation from pro-Russian rebels, Donetsk region, Ukraine, Thursday, Dec 30, 2021. (Andriy Dubchak/AP)</figcaption></figure>



<p class="wp-block-paragraph">The broader Atlantic Council report, drafted with expert input over the last year, made recommendations aimed at deterring or winning a conventional conflict as well as gray zone activities. Among the report’s other conclusions:</p>



<ul class="wp-block-list"><li>The DoD needs guiding principles for hybrid warfare. The department should be part of unified interagency efforts, invest in “below-threshold” capabilities and training, engage only where strategically important, go on the offense to reinforce the international rules-based order, use strategic messaging, and stick to American ideals.</li><li>Washington needs a hybrid warfare toolkit. That means establishing diplomatic norms as well as naming, shaming and sanctioning bad actors ― all the while, the DoD can show presence, launch distributed denial-of-service attacks, and conduct kinetic or non-kinetic actions against proxy or mercenary forces.</li><li>Hybrid operations can improve conventional deterrence. Adversaries will use hybrid warfare until they can acquire a coercive deterrent against the U.S. and its allies. Containing engagement with China and Russia to cooperation and competition for as long as possible is in America’s interest ― but the U.S. “must get better at proactively engaging in and shaping the gray zone.”</li><li>The State Department’s <a href="https://www.defensenews.com/global/europe/2017/03/23/eucom-commander-us-needs-stronger-response-to-russian-disinformation/">Global Engagement Center </a>needs a funding boost and authorities to “lead whole-of-government strategic messaging and offensive information operations campaigns, and it needs to lead whole-of-nation efforts to engage with social media companies, and with allies and partners to create a coherent and effective campaign for countering mis- and disinformation.”</li></ul>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="4364" height="2291" src="/wp-content/uploads/2026/08/AP21080199368110.jpg.jpg" alt="" class="wp-image-52238" srcset="https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21080199368110.jpg.jpg 4364w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21080199368110.jpg.jpg?resize=300,157 300w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21080199368110.jpg.jpg?resize=768,403 768w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21080199368110.jpg.jpg?resize=1024,538 1024w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21080199368110.jpg.jpg?resize=1536,806 1536w, https://one.sightlinemg.com/wp-content/uploads/2026/08/AP21080199368110.jpg.jpg?resize=2048,1075 2048w" sizes="auto, (max-width: 4364px) 100vw, 4364px" /><figcaption class="wp-element-caption">Some of the 220 Chinese vessels that showed up at Whitsun Reef are seen moored March 7, 2021. The Philippine government expressed concern after spotting the fishing vessels it believed were crewed by militias. (Philippine Coast Guard/National Task Force-West Philippine Sea via AP)</figcaption></figure>



<p class="wp-block-paragraph">Investing in gray zone competition could mean acquiring more cyber tools as well as building an organization for “information operators,” who would quickly attribute and respond to misinformation or disinformation, said Trotti, assistant director of the Atlantic Council’s Forward<i> </i>Defense project.</p>



<p class="wp-block-paragraph">“What they would ask for in terms of capabilities they need, I don’t know, but we do think there needs to be a focus, and a unit or units, that are really focused in that area,” Trotti said. “They would start to develop the tactics, techniques and procedures that will be used in gray zone operations or hybrid warfare operations.”</p>



<p class="wp-block-paragraph">To compete with adversaries who already see conflict as part of a continuum (as opposed to binary war and peace), the DoD and its armed services have sought to embrace the tenets of information warfare by competing daily below the threshold of armed conflict.</p>



<p class="wp-block-paragraph">Waiting to respond to an event after it occurs is too late, officials and experts have asserted over the last few years. Forces must be constantly engaged in the region and against malicious actors to contest their activity and collect the proper intelligence and access needed in case circumstances escalate.</p>



<p class="wp-block-paragraph">The DoD and the <a href="https://www.c4isrnet.com/information-warfare/2020/11/04/the-military-must-learn-to-operate-more-in-the-gray-zone/?contentQuery=%7b%22section%22%3A%22%2Fhome%22%2C%22from%22%3A5%2C%22size%22%3A10%2C%22exclude%22%3A%22%2Finformation-warfare%22%7d&#038;contentFeatureId=f0fMztk16BnMbkh">armed services</a> have also<a href="https://www.c4isrnet.com/dod/air-force/2019/10/14/what-the-new-16th-air-force-means-for-information-warfare/"> reorganized</a> themselves to better align and integrate those various disciplines; they are currently developing<a href="https://www.c4isrnet.com/smr/technet-augusta/2021/09/09/us-army-works-through-what-information-advantage-is-and-how-to-achieve-it/"> new doctrine</a> along this vein.</p>



<p class="wp-block-paragraph">If the National Defense Strategy does prioritize gray zone conflict, it wouldn’t be the first time. In 2019, the<a href="https://www.c4isrnet.com/information-warfare/2020/10/02/why-the-pentagon-needs-to-fully-embrace-influence-operations/"> DoD created an amendment to the National Defense Strategy focused on irregular warfare</a>, with one of the five core themes of the annex aimed at operations in the information environment.</p>



<p class="wp-block-paragraph">In the most recent defense policy bill, signed into law Dec. 27, Congress asked the DoD for a report on the implementation of the irregular warfare strategy. Some members of Congress have also expressed skepticism regarding progress in the information warfare sphere, questioning who is in charge of certain areas and how the department will oversee activities to ensure success.</p>



<p class="wp-block-paragraph">“I am concerned the department leadership has been slow to adapt to the changing nature of warfare in this domain,” Rep. Jim Langevin, D-R.I., who chairs the House Subcommittee on Cyber, Innovative Technologies, and Information Systems, said <a href="https://www.c4isrnet.com/information-warfare/2021/05/03/who-should-lead-the-pentagons-information-operations-efforts/">during an April 30 hearing</a>.</p>



<p class="wp-block-paragraph">“Too often, it appears the department’s information-related capabilities are stovepiped centers of excellence with varied management and leadership structures, which makes critical coordination more difficult. Further, the Pentagon has made limited progress implementing its 2016 Operations in the Information Environment Strategy, which raises questions about the department’s information operations leadership structure.”</p>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="5269" height="3506" src="/wp-content/uploads/2026/08/6745031.jpg.jpg" alt="" class="wp-image-32544" srcset="https://one.sightlinemg.com/wp-content/uploads/2026/08/6745031.jpg.jpg 5269w, https://one.sightlinemg.com/wp-content/uploads/2026/08/6745031.jpg.jpg?resize=300,200 300w, https://one.sightlinemg.com/wp-content/uploads/2026/08/6745031.jpg.jpg?resize=768,511 768w, https://one.sightlinemg.com/wp-content/uploads/2026/08/6745031.jpg.jpg?resize=1024,681 1024w, https://one.sightlinemg.com/wp-content/uploads/2026/08/6745031.jpg.jpg?resize=1536,1022 1536w, https://one.sightlinemg.com/wp-content/uploads/2026/08/6745031.jpg.jpg?resize=2048,1363 2048w" sizes="auto, (max-width: 5269px) 100vw, 5269px" /><figcaption class="wp-element-caption">U.S. Airmen from the New York, Washington, and Maryland Air National Guard monitor aircraft during the Global Information Dominance Experiment 3 at the 601st Air Operation Center on Tyndall Air Force Base, Fla, July 15, 2021.  (Staff Sgt. Nicholas Byers/U.S. Air Force)</figcaption></figure>



<p class="wp-block-paragraph">Though Congress directed the creation of a principal information operations adviser in 2020, some in Congress are worried it isn’t materializing as intended.</p>



<p class="wp-block-paragraph">“Unfortunately, this position was layered below the undersecretary of defense for policy, contrary to congressional intent. This position was not created as another bureaucratic layer, but as an agile, single role with the mandate to guide each service’s efforts,” Rep. Elise Stefanik, R-New York, said during the same hearing.</p>



<p class="wp-block-paragraph">Other outside experts worry the DoD is not doing enough to compete and win on a daily basis against sophisticated adversaries.</p>



<p class="wp-block-paragraph">“Where we’ve fallen short is accounting for the risk that China and Russia will conduct hybrid warfare-style operations against the United States itself,” Paul Stockton, former assistant secretary of defense for homeland defense, told Defense News. “I’m not talking about little green men pouring across our borders — that’ll never happen — but the use of combined information and cyberattacks to disrupt U.S. defense operations at home.”</p>



<p class="wp-block-paragraph">Stockton, who recently authored a paper titled “<a href="https://www.jhuapl.edu/Content/documents/DefeatingCoerciveIOs.pdf">Defeating Coercive Information Operations in Future Crises</a>,” did note that the DoD has made progress in collaborating with NATO allies and partners in Asia to be prepared to counter gray zone threats.</p>



<p class="wp-block-paragraph">However, he added, the U.S. must strengthen its deterrence by developing information operations response options that would credibly threaten Russia and China if they conduct such operations as part of a gray-zone or hybrid warfare approach.</p>
]]></content:encoded>
	</item>
		<item>
		<title>US Air Force cyber team demonstrates first ever in-flight mission</title>
		<link>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/12/16/us-air-force-cyber-team-demonstrates-first-ever-in-flight-mission/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/12/16/us-air-force-cyber-team-demonstrates-first-ever-in-flight-mission/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Thu, 16 Dec 2021 17:14:13 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Left Column]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Your Air Force]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2021/12/16/us-air-force-cyber-team-demonstrates-first-ever-in-flight-mission/</guid>

					<description><![CDATA[Air Force defensive cyber teams will now be able to conduct cyber missions aboard MC-130Js in flight.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/12/16/us-air-force-cyber-team-demonstrates-first-ever-in-flight-mission/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">11716</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/210106-F-YW122-0111C.jpg.jpg" width="2000" height="1333" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — A U.S. Air Force mission defense team demonstrated the ability to conduct near real-time cyber threat analysis aboard an MC-130J Commando II for the first time earlier this year.</p>



<p class="wp-block-paragraph">The first was executed by the 27th Special Operations Communications Squadron Mission Defense Team aboard an active MC-130J Commando II. It was the first time their capability was connected to an operational weapon system outside of the labs, according to an Air Force release.</p>



<p class="wp-block-paragraph"><a href="https://www.c4isrnet.com/dod/air-force/2019/04/17/when-malware-hits-an-f-16-call-these-new-air-force-cyber-teams/" target="_blank">Mission defense teams</a> are specialized groups that protect critical Air Force missions and installations such as critical infrastructure or computers associated with aircraft and remotely piloted systems. They are <a href="https://www.c4isrnet.com/cyber/2021/07/06/air-force-tests-new-approach-for-assigning-cyber-missions/" target="_blank">separate </a>from the cyber protection teams each of the services provide to U.S. Cyber Command.</p>



<p class="wp-block-paragraph">The demonstration has led to approval for the team’s capabilities to be integrated into flight operations with the MC-130J while it is in flight.</p>



<p class="wp-block-paragraph">“The MDT’s ability to provide near real-time mission system cyber analysis allows mission owners critical insight regarding the weapon system’s critical components and inputs,” said 27th Special Operations Communications Squadron MDT flight chief Master Sgt. Javier Parris. “Moreover, this capability can be utilized to enhance aircrew situational awareness, decreasing their time to react to emerging cyber intrusions.”</p>



<p class="wp-block-paragraph">The Air Force said as of Dec. 8 the mission defense team successfully conducted an in-flight test of the new cyber suite aboard the MC-130J and it was the first time flight data had been collected in near real time to enable cyber defense of flight operations in flight. Specifically, the cyber analysis provided by the team could shape preventative maintenance functions for the aircraft and could predict requirements needed to harden operations.</p>



<p class="wp-block-paragraph">“My squadron was tasked, as a Mission Defense Team pathfinder, to predict and overcome the challenges of the future strategic competition environment — specifically within communications contested or congested environments,” said Maj. Emily Short, commander of the 27th Special Operations Communications Squadron.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Northrop tests interoperability between advanced airborne radar and electronic warfare system</title>
		<link>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/09/22/northrop-tests-interoperability-between-advanced-airborne-radar-and-electronic-warfare-system/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/09/22/northrop-tests-interoperability-between-advanced-airborne-radar-and-electronic-warfare-system/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Wed, 22 Sep 2021 16:36:49 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2021/09/22/northrop-tests-interoperability-between-advanced-airborne-radar-and-electronic-warfare-system/</guid>

					<description><![CDATA[The company tested the interoperability of a new Next Generation Electronic Warfare System and AESA radar aboard a demonstrator aircraft, pictured.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/09/22/northrop-tests-interoperability-between-advanced-airborne-radar-and-electronic-warfare-system/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">37724</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/21-1584-FINAL-APPROVED-CRJ-Exercise-in-Wisconsin_8_17_21_1770-Copy.jpg.jpg" width="4622" height="2997" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — Northrop Grumman said it successfully demonstrated interoperability during a recent test of a new electronic warfare system meant for F-16s.</p>



<p class="wp-block-paragraph">During the Northern Lightning Air Force exercise, which took place in August at Volk Field Air National Guard Base, aboard a Canadair Regional Jet, the company says it tested using the APG-83 Scalable Agile Beam Radar, which the company is providing to the Air Force, and what it is calling the Next Generation Electronic Warfare System, an ultrawideband system that detects the radio frequency environment to decide which signals to jam.</p>



<p class="wp-block-paragraph">Company officials said it’s critical both aircraft subsystems — the active electronically scanned array radar, which is nearly identical to those aboard F-35s and F-22s, and the EW system — can perform their roles without interfering or degrading each other.</p>



<p class="wp-block-paragraph">“You needed it to be interoperable with the other subsystems and one of those other key subsystems is the advanced AESA. Because you don’t want electronic warfare to have a negative impact on AESA, you don’t want AESA to have a negative impact on electronic warfare,” James Conroy, Northrop’s vice president for navigation, targeting and survivability, told C4ISRNET. The EW system is “a survivability function. AESAs aren’t typically only doing survivability, they’re doing other situational awareness as well as targeting capabilities. You have subsystems that are doing different functions, and you need both those functions to be able to operate simultaneously.”</p>



<p class="wp-block-paragraph">Northrop representatives also noted the company built the EW system to be compatible with the radar.</p>



<p class="wp-block-paragraph">The system flew against over 170 test points and against Joint Threat Emitters on the ground, which simulate advanced radars.</p>



<p class="wp-block-paragraph">Conroy said the test was the first demonstration of the EW system outside a lab environment. During the exercise, the company took the system to an airborne platform and flew it against simulated threats while also having to operate with other aircraft and radars in the same airspace.</p>



<p class="wp-block-paragraph">“During Northern Lightning, we gained valuable insight on NGEW capabilities,” Lt Col. Stephen Graham, F-16 electronic warfare test director of the Operational Flight Program Combined Test Force, said in a <a href="https://www.53rdwing.af.mil/News/Article/2754024/test-milestones-reached-at-northern-lightning/" target="_blank">news release</a>. “We are one step closer to installing the first NGEW suite on an Eglin F-16 in less than one year.”</p>



<p class="wp-block-paragraph">While the Next Generation Electronic Warfare System is not in production for the Air Force, Northrop did win an other transaction authority award last year<b> </b>to develop<b> </b>the system using existing technology. Since the award, Northrop has been working with the Air Force to showcase how<b> </b>it can interact with the F-16, its subsystems and other critical capabilities.</p>



<p class="wp-block-paragraph">This work is part of the F-16 modernization efforts the Air Force has undertaken. Because the aircraft has been flying for decades — long before modern technological threats on the battlefield — the Air Force must implement upgrades to make the system more survivable against sophisticated adversaries.</p>



<p class="wp-block-paragraph">“There is a strong push to improve electronic protection for the F-16 against modern adversaries,” Graham said. “NL21 allowed for both an RF-dense environment while permitting targeted testing before, during and after LFE [Large Force Exercise]<b> </b>fights.”</p>



<p class="wp-block-paragraph">Conroy said the F-16 is still capable.</p>



<p class="wp-block-paragraph">“We really need the electronic warfare on these platforms to really make them survivable in that next generation or the next type of conflict that these platforms may be engaged in,” he said. “The RF threat environment has got so congested, meaning that there are so many other signals that are out there and being able to find the right signals really requires a lot of advanced processing.”</p>



<p class="wp-block-paragraph">Northrop officials said they view the demonstration as a stepping stone. Next spring, Conroy said, they’ll begin developmental test on actual F-16s.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Air Force cyber defense taking aim at core weapon systems</title>
		<link>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/09/21/air-force-cyber-defense-taking-aim-at-core-weapon-systems/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/09/21/air-force-cyber-defense-taking-aim-at-core-weapon-systems/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Tue, 21 Sep 2021 14:42:49 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Left Column]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Your Air Force]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2021/09/21/air-force-cyber-defense-taking-aim-at-core-weapon-systems/</guid>

					<description><![CDATA[A cyber program is allowing defensive teams to share data more rapidly.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/09/21/air-force-cyber-defense-taking-aim-at-core-weapon-systems/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">19359</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/6310221.jpg.jpg" width="2000" height="1333" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">NATIONAL HARBOR, Md. — The Air Force’s information warfare entity is focusing more attention toward defending weapon systems from adversary probes.</p>



<p class="wp-block-paragraph">Enemies have begun to be more active below the threshold of war, using cyber and digital capabilities to conduct espionage against military and non-military targets while also accessing sensitive systems to disrupt them or sow doubt among users.</p>



<p class="wp-block-paragraph">For 16th Air Force — the Air Force’s main information warfare entity that fuses cyber; information operations; intelligence, surveillance and reconnaissance; electronic warfare; and weather capabilities — defending these systems from digital intrusions is about producing intelligence.</p>



<p class="wp-block-paragraph">“How do we generate the right intelligence to understand the threat to those weapon systems and then how do we bring together the capabilities that we have to defend our networks and our weapon systems in a way that buys down the risk for operational commanders?” Lt. Gen. Timothy Haugh, 16th Air Force commander told C4ISRNET in a Sept. 20 interview as part of the Air, Space and Cyber conference hosted by the Air Force Association.</p>



<p class="wp-block-paragraph">Haugh noted many of these weapon systems pre-date the modern cyber threats perpetuated by sophisticated nation states, namely Russia and China. 16th Air Force, as a result, must try to reduce the risk to these systems.</p>



<p class="wp-block-paragraph">Haugh said the defensive cyber teams within 16th Air Force are able to defend the entirety of the network all the way down to a particular enclave or a specific weapon system. The organization can ensure everyone has a common picture of the threat as well as the intelligence of what the threats look like, he said, adding they can help make those systems more defensible and less vulnerable.</p>



<p class="wp-block-paragraph">Haugh also described aligning high-end defensive <a href="https://www.c4isrnet.com/cyber/2021/01/29/hand-to-hand-combat-on-computer-networks-how-cyber-threat-hunters-work/" target="_blank">cyber protection teams</a> — the highly sought and extremely technical cyber teams the services provide to U.S. Cyber Command — with internal defensive assets or resources at a local installation or wing.</p>



<p class="wp-block-paragraph">The Air Force is building a cadre of mission defense teams — specialized groups that protect key Air Force missions and installations such as critical infrastructure or computers associated with aircraft and remotely piloted systems.</p>



<p class="wp-block-paragraph">“Where we need to, we can use our combat power to apply additional sensors through a CPT, we can partner with the wing that has their own internal defensive capabilities or in some cases &#8230; our program offices may have a cybersecurity service provider, how do we apply them in an area to get them the right data so that we can buy down that risk for an operational commander,” Haugh said.</p>



<p class="wp-block-paragraph">The Air Force recently has been experimenting with partnering the cyber protection teams and <a href="https://www.c4isrnet.com/cyber/2021/07/06/air-force-tests-new-approach-for-assigning-cyber-missions/" target="_blank">mission defense teams</a> on training, tactics and tools.</p>



<p class="wp-block-paragraph">Separately, Haugh explained that the maturity of a major Cyber Command program has allowed defensive cyber protection teams across the services to share data more quickly and respond to threats better.</p>



<p class="wp-block-paragraph"><a href="https://www.c4isrnet.com/cyber/2020/11/01/us-cyber-command-advances-on-platform-to-consolidate-its-myriad-tools-and-data/" target="_blank">Unified Platform</a> is the centerpiece for <a href="https://www.c4isrnet.com/cyber/2020/11/19/us-cyber-commands-capability-efforts-lack-clarity-says-government-watchdog/" target="_blank">Cyber Command’s program architecture</a> that will integrate and analyze data from offensive and defensive operations with partners.</p>



<p class="wp-block-paragraph">The program, which is being built by the Air Force on behalf of Cyber Command and the joint force, is enabling these teams to simultaneously share threat data and information that allows them to apply algorithms and automate where it makes sense, Haugh said.</p>



<p class="wp-block-paragraph">“It’s not about acquiring information, it’s about now, how do you get the right airmen to be able to use the right algorithm to see that data. That’s advancing every day,” he said.</p>



<p class="wp-block-paragraph">Part of this is enabled by what’s known as a big data platform, essentially a hybrid cloud environment that allows for storage, computation and analytics across networked sensors. There are several among Cyber Command, the Defense Information Systems Agency, Army Cyber Command and the Marine Corps.</p>



<p class="wp-block-paragraph">Haugh noted his unit is working with the other service cyber components to <a href="https://www.c4isrnet.com/cyber/2020/11/06/the-us-air-force-is-using-a-new-cyber-training-platform-to-evolve-defensive-teams/" target="_blank">advance tradecraft</a>, and the big data platform has allowed them to jump forward.</p>
]]></content:encoded>
	</item>
		<item>
		<title>US Air Force tests embedding software coders with industry</title>
		<link>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/07/14/us-air-force-tests-embedding-software-coders-with-industry/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/07/14/us-air-force-tests-embedding-software-coders-with-industry/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Wed, 14 Jul 2021 11:00:00 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[cyber]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2021/07/14/us-air-force-tests-embedding-software-coders-with-industry/</guid>

					<description><![CDATA[The 67th Cyberspace Wing is sending its personnel to commercial software factories to develop code and software for operational missions.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/07/14/us-air-force-tests-embedding-software-coders-with-industry/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">15007</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/6310221.jpg.jpg" width="2000" height="1333" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — In the high-intensity world of cyberspace, rapid and secure software development is crucial to stay ahead of quickly evolving threats.</p>



<p class="wp-block-paragraph">The U.S. government and military traditionally relied on industry for much of the software development, but in recent years, the armed services have trained software developers to build tools for operators.</p>



<p class="wp-block-paragraph">Now, an Air Force cyberspace wing is testing a hybrid approach by embedding developers at commercial production spaces — an idea the wing calls software factory as a service.</p>



<p class="wp-block-paragraph">Col. Jeffrey Phillips, commander of the 67th Cyberspace Wing, discussed the effort with C4ISRNET, along with how his wing is trying to better compete in the information environment. This interview has been edited for length and clarity.</p>



<p class="wp-block-paragraph"><b>You work with some airmen to leverage the resources and spaces of the software factories that are local to the wing, and some services have started to create software development billets for personnel that work alongside operators to quickly turn on capabilities. How do you see this capability advancing for the Air Force?</b></p>



<p class="wp-block-paragraph">We have the 90th Cyber Operations Squadron, which is aligned under the 318th Cyberspace Operations Group.</p>



<p class="wp-block-paragraph">It’s the squadron that’s solely focused on capability development, and what I’ve learned as I’ve been in this job is that the key to effective and efficient capability development is to have a reliable DevSecOps platform to develop on.</p>



<p class="wp-block-paragraph">That’s the development, security and operations platform. It automates the integration of security at every phase of software development life cycle from initial design though integration, testing, deployment and then software delivery.</p>



<p class="wp-block-paragraph">For years, the wing has internally resourced and managed our own DevSecOps platform. It’s not the most efficient way of professionalizing capability development at all.</p>



<p class="wp-block-paragraph">We know the partnerships with industry and academia bring up a whole realm of possibility and creativity. So collaboration and outreach efforts have leveraged insights with regard to talent and innovation.</p>



<p class="wp-block-paragraph">We’ve recently established a relationship with Platform One and LevelUp — Air Force and industry organizations dedicated to software development. They have very mature and reliable DevSecOps platforms.</p>



<p class="wp-block-paragraph">We started it as a proof of concept; we co-located 30 of our developers with the software factory in an initiative that we’re calling software factory as a service. Basically, we’re paying these companies to leverage their DevSecOps platform for our airmen to be able to develop on this very professional infrastructure that already exists.</p>



<p class="wp-block-paragraph">This alleviates our developers from the burden of having to manage a capability development infrastructure, then I think we’ll evaluate periodically to determine if this initiative is bearing the fruit we anticipate it will.</p>



<p class="wp-block-paragraph">I can see a future where all of our capability development airmen are co-located with software factories that already exist and we buy that as a service versus trying to develop that DevSecOps platform ourselves because we’re not funded for it, we’re not professionals at maintaining that infrastructure. We just have really, really smart airmen figuring out how to get it done. I think we buy a lot if we can leverage industry and academic partners that already do this for a living.</p>



<p class="wp-block-paragraph"><b>Is it a little too early to say how well this effort is performing?</b></p>



<p class="wp-block-paragraph">Yes, I really have a lot of faith that it will go well. Literally we’ve started it in the last month.</p>



<p class="wp-block-paragraph">We’re working through some negotiations right now to see if we can move a broader portion of our airmen into these software factories because we have a lot of faith that it’s going to be the right way to do capability development in the future.</p>



<p class="wp-block-paragraph">Working with industry partners, you probably will do the unclassified software development on their DevSecOps platform.</p>



<p class="wp-block-paragraph">There might be some classified aspect to develop that has to be added onto a capability that we’ll bring back into the SCIF [sensitive compartmented information facility] to top it off. I think overall, we can do the majority of our software development in the software factories.</p>



<p class="wp-block-paragraph"><b>What tools are they developing, and what teams are the tools for?</b></p>



<p class="wp-block-paragraph">Our developers work very closely with the CPTs [cyber protection teams] and the CMTs [combat mission teams] to determine what capabilities they need.</p>



<p class="wp-block-paragraph">We’ve really gotten away from the waterfall software development, and we have that integrated DevSecOps approach that’s a more agile approach to developing software, and we’ve found that it’s generating capabilities a lot faster.</p>



<p class="wp-block-paragraph">Actually, we stood up what we called the cyber shoot house where we have capability developers, airmen from cyber protection teams, airmen from the combat mission teams, airmen from our range squadron, airmen from our test squadron all sitting together doing this DevSecOps capability tool development.</p>



<p class="wp-block-paragraph"><b>Cyberspace is considered a subset of the larger information environment. How are you looking at marrying cyber and information operations personnel to achieve outcomes for various combatant commanders or U.S. Cyber Command?</b></p>



<p class="wp-block-paragraph">I think the alignment of all the information warfare disciplines under 16th Air Force has driven a very disciplined approach to convergence among the organizations that are responsible for executing each of those missions in each of the disciplines.</p>



<p class="wp-block-paragraph">Now, we’re all in the same 16th Air Force and Joint Force Headquarters Air Force battle rhythm meetings. We’re participating in the same operational planning teams, and we’re focused on integration through all phases of the joint planning process.</p>



<p class="wp-block-paragraph">As you know, information operations personnel are a high-demand, low-density commodity. We have a lot of them currently employed in our operational support squadron. We have several of them deployed in the 16th Air Force JFHQ Air Force J-39 as well as man in air operations centers across the different Air Force major commands.</p>



<p class="wp-block-paragraph">They’re truly experts at planning to dominate the information environment, and I think the way we’ve married them up with our cyber operators, the information operations personnel tend to build the message that we want to proliferate, and our cyber operators figure out a way to deliver that message.</p>



<p class="wp-block-paragraph">You can almost look at it as building the bomb and then putting the bomb on the plane to be delivered.</p>



<p class="wp-block-paragraph">The recent stand up of the 14F initial skill training course at the 39th Information Operations Squadron at Hurlburt Field in Florida has allowed us to formalize, professionalize the training that we give to those information operations airmen.</p>



<p class="wp-block-paragraph">We’re seeing they’re in high demand. We can’t produce them fast enough.</p>



<p class="wp-block-paragraph">Every AOC [air operations center] wants one. Several wing commanders, flying wing commanders will talk to me about integrating those IO personnel into their OSS’s [operation support squadrons] as well.</p>



<p class="wp-block-paragraph">I think they’ll be in demand in the Air Force for a long time to come.</p>
]]></content:encoded>
	</item>
		<item>
		<title>Air Force cyber squadron offers its malicious file detection software to private sector</title>
		<link>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/07/12/air-force-cyber-squadron-offers-its-malicious-file-detection-software-to-private-sector/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/07/12/air-force-cyber-squadron-offers-its-malicious-file-detection-software-to-private-sector/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Mon, 12 Jul 2021 19:04:30 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2021/07/12/air-force-cyber-squadron-offers-its-malicious-file-detection-software-to-private-sector/</guid>

					<description><![CDATA[The 90th Cyberspace Operations Squadron signed patent license agreements with private companies to use code that it developed to detect malicious files on a network.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/07/12/air-force-cyber-squadron-offers-its-malicious-file-detection-software-to-private-sector/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">44848</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/computersearchC.jpg.jpg" width="1200" height="628" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — In a first for the Air Force’s new information warfare entity, the service inked patent license agreements with the private sector for code it developed in house to detect software vulnerabilities.</p>



<p class="wp-block-paragraph">The software, called <a href="https://techlinkcenter.org/technologies/whiddler-anti-malware-scanner-software-with-zero-day-detection-capabilities/d483d018-e691-4125-94b5-b640d26b70aa" target="_blank">Whiddler</a>, scans files on a network and calculates the probability of whether a file is malicious. It looks for suspicious items that don’t have a signature and therefore might escape antivirus software that scans for known problematic signatures.</p>



<p class="wp-block-paragraph">The first agreement was in December 2020 and the second in May 2021. The agreements are the first for organizations under 16th Air Force, however, not the first within the Air Force itself.</p>



<p class="wp-block-paragraph">The Air Force signed a cooperative research and development agreement, or CRADA, with the first company, and officials said they are working on another with the second company. The service did not name the companies or disclose the dollar amounts for the agreements.</p>



<p class="wp-block-paragraph">Under these agreements, the companies can use the technology developed by the 90th Cyberspace Operations Squadron and transfer it to the private sector to better identify software risks on networks.</p>



<p class="wp-block-paragraph">Officials said completing these deals has multiple benefits for not just the Air Force or Department of Defense, but potentially for the larger commercial ecosystem.</p>



<p class="wp-block-paragraph">It provides “the ability to improve our technology that maybe we ourselves are no longer maintaining,” Rebecca Lively, deputy director of the 90th Cyberspace Operations Squadron, told C4ISRNET in an interview. “Through that cooperative agreement, we are able to reap the benefits of those improvements at no cost to the government or at least to now cost to our unit.”</p>



<p class="wp-block-paragraph">With the technology transferred to a third party, the government can choose whether its wants to adopt improvements to the code that the companies make.</p>



<p class="wp-block-paragraph">The companies can modify and improve the code and sell it to industry, making the larger community more secure, officials said. The arrangement keeps the government removed from marketing to industry but provides an advanced tool to some businesses with proprietary detection methods that hackers haven’t learned to defeat.</p>



<p class="wp-block-paragraph">“I think that’s the intent of technology transfer as a whole is that ability to take something that the government has invested funds in, taxpayer funds and let it benefit the taxpayers more broadly than we do just in the DoD,” Lively said.</p>



<p class="wp-block-paragraph">As a result, the Air Force is helping companies better protect consumers and companies from cyber threats, said Eric Rosenberg, chief of cyber intellectual property law at the 67th Cyberspace Wing.</p>



<p class="wp-block-paragraph">A big pillar of the DoD’s approach to cybersecurity is enabling others. Many experts have referred to the need for a so-call whole-of-society approach to cybersecurity that combines the government and private sector efforts to create a more stable cyberspace.</p>



<p class="wp-block-paragraph">“The United States government, in tandem with industry partners, must improve its defensive posture to prevent and or minimize the impacts and impose cost in time and money on those who exploit such vulnerabilities and target American companies and citizens,” Gen. Paul Nakasone, commander of U.S. Cyber Command, told the House Armed Services Committee in May.</p>



<p class="wp-block-paragraph">Officials also noted another benefit for the DoD in inking these patent license agreements with the private sector for recruitment and retention.</p>



<p class="wp-block-paragraph">“People want to see their work published, and people want that recognition that you can get by being an inventor on a genuine patent. That’s something especially in the more classified environment we don’t see as often,” Lively said. “We have the ability to leverage these patents license fees that are coming back to pay bonuses to the inventors or who helped that collaboration … That’s a huge piece there, but again, it adds a little to recruiting and retention and it ties to being able to reward our folks.”</p>



<p class="wp-block-paragraph">Rosenberg also noted that these licensing agreements validate a certain maturity of the labs within the 67th Cyberspace Wing and 16th Air Force.</p>



<p class="wp-block-paragraph">“I think it shows that we developed as a lab and we’re able to pull off more and more sophisticated technology transfer agreements,” he said. “I think that sets the stage for us to engage in more complicated in cooperation with the private sector.”</p>
]]></content:encoded>
	</item>
		<item>
		<title>Air Force tests new approach for assigning cyber missions</title>
		<link>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/07/06/air-force-tests-new-approach-for-assigning-cyber-missions/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/07/06/air-force-tests-new-approach-for-assigning-cyber-missions/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Tue, 06 Jul 2021 20:13:06 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Home]]></category>
		<category><![CDATA[Left Column]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Your Air Force]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2021/07/06/air-force-tests-new-approach-for-assigning-cyber-missions/</guid>

					<description><![CDATA[A task force seeks to "operationalize" the 67th Cyberspace Operations Wing, giving commanders more authority and responsibility to assign units to missions.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/07/06/air-force-tests-new-approach-for-assigning-cyber-missions/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">28550</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/200730-Z-DY403-002.JPG.jpg" width="3000" height="2143" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — The Air Force’s 67th Cyberspace Wing is experimenting with a new method for doling out tasks to defensive cyberspace operators.</p>



<p class="wp-block-paragraph">Previously, squadron and group commanders were left out of the operational chain of command, primarily serving in an organize, train and equip role. This was the case despite the deep background in cyberspace operations these commanders might have, not to mention the ability for them — in their organize, train and equip role — to have greater insight into what teams are right for specific missions.</p>



<p class="wp-block-paragraph">But Col. Jeffrey Phillips’, the wing’s commander, is working on “operationalizing” the unit — a top priority he outlined in a strategic vision from February.</p>



<p class="wp-block-paragraph">He has since created Task Force Mustang, which serves in a dual-hat role commanding the 567th Cyberspace Operations Group and the task force itself. This essentially means the commander is in charge of manning, training and equipping as well as operationally leading teams that are administratively aligned under the group.</p>



<p class="wp-block-paragraph">The commander now has a greater scope of responsibility because he or she is leading operational planning efforts and assigning teams to missions. “That construct has enabled us to more efficiently get cyber protection teams on task to defend critical systems that are of importance to both the Air Force and joint force commanders,” Phillips told C4ISRNET in an interview.</p>



<p class="wp-block-paragraph">He added that in some cases, there were defensively focused cyber protection teams that hadn’t been on a mission in 18 months to two years because there wasn’t the right organization available to prioritize work and assigning a mission space.</p>



<p class="wp-block-paragraph">Now, a colonel in charge of both aspects can use his or her deep knowledge to identify required lines of effort and the campaign plans that need addressed, then assigning units and giving orders while working through the <a href="https://www.c4isrnet.com/information-warfare/2020/03/16/the-air-forces-new-glue-to-pull-information-warfare-together/" target="_blank">616th Operations Center</a>, Phillips said.</p>



<p class="wp-block-paragraph">“Now these O-6 level commanders, because they know what priorities need to be worked, what lines of effort need to be worked, they’re driving those operations instead of those airman sitting back waiting to be tasked when that might not happen if it’s not a priority for somebody else,” he said. “It gives the 567th COG/Task Force Mustang commander the ability to drive that and be proactive instead of reactive.”</p>



<p class="wp-block-paragraph">He said the task force has executed several missions under this new plan and found it valuable.</p>



<p class="wp-block-paragraph">Based on lessons learned from Task Force Mustang, team members may begin experimenting with offensive teams under his wing within the 67th Cyber Operations Group, Phillips said.</p>



<p class="wp-block-paragraph">Additionally, through Task Force Mustang, the Air Force has discovered partnerships between cyber protection teams and <a href="https://www.c4isrnet.com/cyber/2020/07/16/air-force-wants-to-expand-training-for-cyber-teams/" target="_blank">mission defense teams</a>; the latter are specialized groups that protect critical Air Force missions and installations such as critical infrastructure or computers associated with aircraft and remotely piloted systems.</p>



<p class="wp-block-paragraph">The cyber protection teams that might not have been on mission for a while will travel to various bases and link up with mission defense teams, sharing tactics and secrets, given they essentially use the same equipment.</p>



<p class="wp-block-paragraph">“We found a natural symbiotic relationship between the CPTs that are out on mission and the MDTs that utilize the same weapon systems, so we’ve gone to some bases where the MDTs have not gone to training yet,” Phillips said. “They’ve had their weapon system there, and so the CPTs have actually been able to load their weapon system on whatever cyber terrain the wing commander deems they want to protect, and they’ve been able to do some hands-on training with the MDT personnel that haven’t had formal training yet.”</p>
]]></content:encoded>
	</item>
		<item>
		<title>Air Force activates first of its kind wing for spectrum</title>
		<link>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/06/28/air-force-activates-first-of-its-kind-wing-for-spectrum/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/06/28/air-force-activates-first-of-its-kind-wing-for-spectrum/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Mon, 28 Jun 2021 18:24:47 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[Your Air Force]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2021/06/28/air-force-activates-first-of-its-kind-wing-for-spectrum/</guid>

					<description><![CDATA[Air Combat Command activated the 350th Spectrum Warfare Wing.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/news/your-air-force/2021/06/28/air-force-activates-first-of-its-kind-wing-for-spectrum/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">37738</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/f-35-to-japan.jpg.jpg" width="640" height="480" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — The Air Force officially activated June 25 a new, first of its kind wing aimed at the increasing importance of the electromagnetic spectrum.</p>



<p class="wp-block-paragraph">The 350th Spectrum Warfare Wing, <a href="https://www.c4isrnet.com/smr/information-warfare/2020/07/26/how-the-defense-department-is-reorganizing-for-information-warfare/" target="_blank">which has been in the works for more than a year</a>, received the designation to start work from Air Combat Command June 25, a release said. The group hopes to enable, equip and optimize the fielding of EMS capabilities with the aim of providing a sustainable and competitive advantage in the non-physical realm. The wing will also provide maintenance, operational and technical expertise for electronic warfare support.</p>



<p class="wp-block-paragraph">The wing is headquartered at Eglin Air Force Base while a permanent location is chosen. It reports to the Air Force Warfare Center, which performs operational test and evaluation, tactics development, and advanced training.</p>



<p class="wp-block-paragraph">In recent years, adversaries have noted how U.S. forces are reliant in the spectrum and have sought to disrupt them by adopting high-tech methods to block access and jam or spoof communications.</p>



<p class="wp-block-paragraph">“The competition in the electromagnetic spectrum is more important than ever before. The Joint Force is connected by and delivers effects in and through the EMS,” Col. William Young, commander of the 350th Spectrum Warfare Wing, said. “If we lose the fight in the EMS, we will lose the fights in all other domains. We’re here to help make sure that doesn’t happen. Standing up this unit emphasizes the Air Force’s commitment to consolidating and modernizing our entire enterprise so that joint warfighters have freedom to attack, maneuver and protect themselves at the time, place and parameters of our choosing.”</p>



<p class="wp-block-paragraph">The wing is the result of a yearlong study the Air Force kicked off in 2018 that examined the service’s approach to the electromagnetic spectrum.</p>



<p class="wp-block-paragraph">“The activation of the 350th Spectrum Warfare Wing is the latest step the Air Force has taken to maintain our competitive advantage in electromagnetic warfare,” Maj. Gen. Case Cunningham, commander of the Air Force Warfare Center, said. “Placing this critical mission under a wing commander dedicated to this mission set is fundamental to accelerating needed change and ensuring our warfighters can continue to fight and win in the EMS.”</p>



<p class="wp-block-paragraph">The wing’s activation is also one piece to a <a href="https://www.c4isrnet.com/electronic-warfare/2021/06/17/us-air-force-attempts-to-awaken-spectrum-ops-after-decades-of-waning-electromagnetic-warfare/" target="_blank">larger multifaceted approach</a> the Air Force is taking to reinvigorate its operations within the electromagnetic sphere to gain an advantage against adversaries. Other methods include reorganizing headquarters staff and modernizing legacy equipment.</p>
]]></content:encoded>
	</item>
		<item>
		<title>US Cyber Command exercise will help shape new tactics for changing threats</title>
		<link>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/06/23/us-cyber-command-exercise-will-help-shape-new-tactics-for-changing-threats/</link>
					<comments>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/06/23/us-cyber-command-exercise-will-help-shape-new-tactics-for-changing-threats/#respond</comments>
		
		<dc:creator><![CDATA[Mark Pomerleau]]></dc:creator>
		<pubDate>Wed, 23 Jun 2021 18:38:42 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/airforcetimes/uncategorized/2021/06/23/us-cyber-command-exercise-will-help-shape-new-tactics-for-changing-threats/</guid>

					<description><![CDATA[For the first time this year, Cyber Command is using it's premier annual exercise to reevaluate some of its cyber teams.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/airforcetimes/newsletters/daily-news-roundup/2021/06/23/us-cyber-command-exercise-will-help-shape-new-tactics-for-changing-threats/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">32426</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/062221-WM477-011.jpg.jpg" width="6000" height="4000" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">WASHINGTON — U.S. Cyber Command is using its annual training exercise this week to codify best practices for defensive cyber teams.</p>



<p class="wp-block-paragraph">Cyber Flag, the command’s premier annual training event, is happening on the heels of Cyber Command’s budget request that proposes <a href="https://www.c4isrnet.com/cyber/2021/06/14/air-force-would-contribute-bulk-of-new-cyber-mission-force-teams/" target="_blank">adding more teams and potentially altering their composition</a> to adapt to a rapidly changing threat landscape.</p>



<p class="wp-block-paragraph">For the first time, the exercise will help identify characteristics of successful <a href="https://www.c4isrnet.com/cyber/2021/01/29/hand-to-hand-combat-on-computer-networks-how-cyber-threat-hunters-work/" target="_blank">cyber protection teams</a>, which conduct defensive cyberspace operations.</p>



<p class="wp-block-paragraph">This year’s exercise, Cyber Flag 21-2, includes over 430 individuals from 17 teams from the U.S., UK, Canada, National Guard, House of Representatives and U.S. Postal Service and is taking place across eight time zones. The event uses the Persistent Cyber Training Environment — an online client that allows Cyber Command warriors to log on from anywhere for training and mission rehearsal.</p>



<p class="wp-block-paragraph">The exercise was set in the Pacific region at a fictitious allied logistics support depot where teams had to contend with attacks from two adversaries: One was more advanced and focused on denial and disruption, while the other was less sophisticated and focused on theft of intellectual property and personally identifiable information.</p>



<p class="wp-block-paragraph">In the past, Cyber Command used the exercise to <a href="https://www.c4isrnet.com/home/2017/07/03/cyber-flag-exclusive-what-goes-into-validating-a-cyber-team/" target="_blank">validate teams</a>, but as the threat has evolved, leaders wanted to test concepts and codify new team structures to optimize success.</p>



<p class="wp-block-paragraph">“We’re continuously evaluating the proficiency of our force. We’re evaluating where the gaps are. We’re evaluating the new TTPs [tactics, techniques and procedures] that the adversary presents,” Coast Guard Rear Adm. Christopher Bartz, chief of exercises and training at Cyber Command, told reporters June 22. “We are evolving our training at the speed that the adversary is evolving their TTPs.”</p>



<p class="wp-block-paragraph">The exercise will allow Cyber Command, which sets <a href="https://www.c4isrnet.com/cyber/2021/05/05/air-force-cyber-school-will-add-online-training-tool/" target="_blank">general standards</a> across all the services for <a href="https://www.c4isrnet.com/dod/2020/01/10/pentagon-gets-big-win-on-cyber-forces/" target="_blank">cyber teams’ training</a> and the <a href="https://www.c4isrnet.com/dod/2017/09/07/cyber-command-moves-toward-standardized-cyber-kits/" target="_blank">equipment they use</a>, to extract best practices and spread those through the cyberspace community, officials explained.</p>



<p class="wp-block-paragraph">Bartz equated the effort to other constructs within the military, such as aviation stand teams that go to various units and communicate best practices through the broader aviation community.</p>



<p class="wp-block-paragraph">With broader domestic participation, officials said they can observe how others conduct defensive cyber operations, contributing to a more holistic governmentwide approach for national security and defense.</p>



<p class="wp-block-paragraph">Also for the first time this year, teams competed against each other with an overall winner to be selected at the conclusion of the exercise June 25. Assessors will observe how teams identify threats and the techniques defenders use to eject threats from the network or deny further compromise.</p>



<p class="wp-block-paragraph">In written testimony to Congress this year, Gen. Paul Nakasone, commander of Cyber Command, outlined one of the command’s top priorities: realigning cyber protection teams.</p>



<p class="wp-block-paragraph">“USCYBERCOM is working with the combatant commands to ensure they have dependable defensive support for their missions while we retain forces to deal with global challenges to the DoDIN [Department of Defense Information Network],” he wrote.</p>



<p class="wp-block-paragraph"><b>Expanded scope</b></p>



<p class="wp-block-paragraph">Cyber Command’s expanded use of <a href="https://www.c4isrnet.com/cyber/2021/01/28/latest-version-of-cyber-training-to-roll-out-in-coming-months/" target="_blank">PCTE</a> allowed the exercise to grow significantly. The range itself was five times larger than last year, <a href="https://www.c4isrnet.com/dod/cybercom/2020/06/15/for-the-first-time-cyber-commands-major-exercise-will-use-new-training-platform/" target="_blank">the first year Cyber Command used the platform for its largest exercise</a>.</p>



<p class="wp-block-paragraph">The PCTE team even established a custom help desk for Cyber Flag — capable of assisting with everything from forgotten passwords to major engineering fixes.</p>



<p class="wp-block-paragraph">The team applies lessons from the exercise to future events and versions of the platform. For example, the team improved the chat function in the platform after users found it hard to use last year, and they’re awaiting feedback.</p>



<p class="wp-block-paragraph">The platform and program team have grown to be able to support thousands of activities daily, even last week supporting two major exercises simultaneously: Cyber Flag and <a href="https://www.c4isrnet.com/cyber/2021/06/23/guardsmen-train-for-real-world-cyber-disruptions/" target="_blank">Cyber Yankee</a>, a National Guard-focused exercise that took place in New England.</p>



<p class="wp-block-paragraph">The platform supported the cyber operations kit for UK operators during Cyber Flag, making their experience more realistic. “We want the experience of our foreign allies to be just as valuable and meaningful as any other CMF [cyber mission force] user on PCTE,” said W. Cory Bogler, lead PCTE operations engineer for Product Manager Cyber Resiliency &amp; Training in the Army Program Executive Office Simulation, Training and Instrumentation.</p>



<p class="wp-block-paragraph">Officials from the PCTE team said the next Cyber Flag — Cyber Flag 21-3 in October — will include participation from all the Five Eyes intelligence alliance nations: the U.S., UK, Canada, <a href="https://www.c4isrnet.com/cyber/2020/12/04/dod-and-australia-ink-first-ever-cyber-training-partnership/" target="_blank">Australia</a> and New Zealand.</p>
]]></content:encoded>
	</item>
	</channel>
</rss>
