• Nearly 200 more miles of the U.S. border with Mexico have been placed under Air Force supervision, enabling wider use of military force and heftier charges against people crossing illegally into the country. But experts wonder why the step is being taken as crossings plummet and heightened charges are thrown out by judges.

    Last June, Pentagon leaders announced that they would take charge of land along the final 250 miles of the Rio Grande, which had been administered by State Department employees on the International Boundary and Water Commission. Designated National Defense Area 3, the land was placed under the control of Joint Base San Antonio, which is operated by the Air Force. As with similar zones established last year, the NDA designation effectively turned the land into a military base that can be patrolled by troops. As well, trespassers are subject to misdemeanor charges related to illegally entering Defense Department property. 

    On Friday, Air Force leaders announced that they have militarized two new swaths of land along the Rio Grande. One adds about 40 miles to the existing NDA 3, extending the zone upriver to Roma, Texas. The other is a 150-mile stretch from Falcon Dam to Del Rio that has been dubbed NDA 6.

    A press release from the office of Air Force Secretary Troy Meink said that the moves were intended to “strengthen interagency coordination and bolster security operations along the U.S. southern border.” It said the Department of the Air Force and U.S. Northern Command “will coordinate closely to support operational requirements and ensure effective installation management” and that Joint Task Force Southern Border troops are tasked with “temporarily detaining trespassers until they are transferred to the appropriate law enforcement authorities.” 

    Last month, the military began launching the Seasats Lightfish, a long-endurance autonomous surface vessel, into its portion of the Rio Grande to watch for border crossings. Other assets deployed to the southern border include UH-72 Lakota helicopters, C-130 Hercules and C-17 Globemaster transports, Stryker armored vehicles, the destroyer Cole, and thousands of U.S. troops.

    Since April, the Trump administration has created NDAs in Arizona, California, New Mexico, and Texas as extensions of Army, Navy, Air Force, and Marine Corps bases. By July, they covered roughly one-third of the U.S.-Mexico border. 

    Defense experts have questioned the expansion of the newest Air Force-controlled border zones, especially as administration officials boast that crossings have sunk to record-low levels. There were roughly 444,000 southwest border crossings by land last year, down from 2.1 million in 2024, according to U.S. Customs and Border Protection data.

    “If you believe the administration's line that there's basically no more illegal immigration, it seems that the step is probably unnecessary. I can't really see a rationale for doing it,” said Jennifer Kavanagh, a senior fellow and director of military analysis at the Defense Priorities think tank. “The only reason to really do it is this continuing press to militarize Trump's foreign policy and Trump's approach to border security.”

    Since the creation of the first militarized border zones last year, dozens of cases against people accused of crossing into the NDAs were thrown out by federal judges. Some magistrates argued the government hadn’t established enough probable cause that migrants had willingly intended to cross onto Defense Department property; others criticized the placement of the warning signs.

    As well, the militarization of the lands mean some communities are “effectively cut off from access to public lands,”  the American Civil Liberties Union said in a September news release. The ACLU also warned that U.S. citizens may unexpectedly face federal trespassing charges as the NDAs grow. 

    “For immigrant communities, the stakes are especially high: crossing into an NDA now means risking federal trespassing charges in addition to immigration charges,” the ACLU said in the release. “U.S. citizens, too, may face prosecution if they enter poorly marked areas while traveling, hiking, hunting, or working near the border.”

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • As the Army’s Transformation-in-Contact brigades test and help develop new technology, they’re also shaping how soldiers will be trained to use it.

    At Fort Stewart, Georgia., soldiers in the 3rd Infantry Division are working on a pair of courses to certify soldiers to operate small unmanned aerial systems, part of servicewide effort to create doctrine around using drones throughout every formation. 

    “3rd ID, specifically, is developing ways to qualify their operators on the different systems, and we are sending feedback back through the proper channels to big Army, to work on developing an Army-wide qualification course,” Capt. William Langley, who leads the UAS and electronic warfare element in the 2nd Armored Brigade’s 6th Squadron, 8th Cavalry Regiment, told reporters Tuesday.

    Both the 1st and 2nd Armored Brigade Combat Teams are participating in TiC, with a special focus on integrating drones into tank units, said Capt. Brenden Shutt, the division’s innovation officer. 

    “The legacy UAS systems were focused on dedicated 15-series UAS operators, whereas now, we're leaning more toward training standard infantry and armor soldiers to be the UAS operators,” Shutt said.

    So far the division has been focusing on UAS classified in groups 1 and 2—that is, under 55 pounds. They’ve fielded more than 150 of them, Langley said, including the Anduril Ghost-X, Performance Drone Works C100, the Neros Archer, the Teal 2, and the AeroVironment Switchblade 600

    “We mainly use these in a hunter-killer format, so we use the recon assets to find the targets, and then Archers…to strike the target,” Langley said. 

    To qualify, soldiers start with about 40 hours of simulation training before ever touching the UAS itself. 

    “After that, we work with smaller [first-person view drones], and they have to hit some obstacle courses and hit some gates before they go to a larger FPV, where they then actually learn to fly them, and then put certain skills into practice and learn to integrate them into conventional armor/infantry tactics,” Langley said.

    And rather than picking out a handful of soldiers to be the designated UAS operators, 3rd ID wants everyone to be familiar with flying a drone, in the way they are all qualified on their rifles.

    “Previously, it was very much a select group of people who were tasked with leveraging this technology to deliver effect,” Shutt said. “Now, every single soldier, from a maintainer to an infantryman to a signal soldier who fixes the radios—all of them kind of have a baseline understanding of how drones work, and could, with the sim time, with a little bit of minimal field training, be able to deliver effects during an operational or training environment.”

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Microsoft today released updates to fix more than 50 security holes in its Windows operating systems and other software, including patches for a whopping six “zero-day” vulnerabilities that attackers are already exploiting in the wild.

    Zero-day #1 this month is CVE-2026-21510, a security feature bypass vulnerability in Windows Shell wherein a single click on a malicious link can quietly bypass Windows protections and run attacker-controlled content without warning or consent dialogs. CVE-2026-21510 affects all currently supported versions of Windows.

    The zero-day flaw CVE-2026-21513 is a security bypass bug targeting MSHTML, the proprietary engine of the default Web browser in Windows. CVE-2026-21514 is a related security feature bypass in Microsoft Word.

    The zero-day CVE-2026-21533 allows local attackers to elevate their user privileges to “SYSTEM” level access in Windows Remote Desktop Services. CVE-2026-21519 is a zero-day elevation of privilege flaw in the Desktop Window Manager (DWM), a key component of Windows that organizes windows on a user’s screen. Microsoft fixed a different zero-day in DWM just last month.

    The sixth zero-day is CVE-2026-21525, a potentially disruptive denial-of-service vulnerability in the Windows Remote Access Connection Manager, the service responsible for maintaining VPN connections to corporate networks.

    Chris Goettl at Ivanti reminds us Microsoft has issued several out-of-band security updates since January’s Patch Tuesday. On January 17, Microsoft pushed a fix that resolved a credential prompt failure when attempting remote desktop or remote application connections. On January 26, Microsoft patched a zero-day security feature bypass vulnerability (CVE-2026-21509) in Microsoft Office.

    Kev Breen at Immersive notes that this month’s Patch Tuesday includes several fixes for remote code execution vulnerabilities affecting GitHub Copilot and multiple integrated development environments (IDEs), including VS Code, Visual Studio, and JetBrains products. The relevant CVEs are CVE-2026-21516, CVE-2026-21523, and CVE-2026-21256.

    Breen said the AI vulnerabilities Microsoft patched this month stem from a command injection flaw that can be triggered through prompt injection, or tricking the AI agent into doing something it shouldn’t — like executing malicious code or commands.

    “Developers are high-value targets for threat actors, as they often have access to sensitive data such as API keys and secrets that function as keys to critical infrastructure, including privileged AWS or Azure API keys,” Breen said. “When organizations enable developers and automation pipelines to use LLMs and agentic AI, a malicious prompt can have significant impact. This does not mean organizations should stop using AI. It does mean developers should understand the risks, teams should clearly identify which systems and workflows have access to AI agents, and least-privilege principles should be applied to limit the blast radius if developer secrets are compromised.”

    The SANS Internet Storm Center has a clickable breakdown of each individual fix this month from Microsoft, indexed by severity and CVSS score. Enterprise Windows admins involved in testing patches before rolling them out should keep an eye on askwoody.com, which often has the skinny on wonky updates. Please don’t neglect to back up your data if it has been a while since you’ve done that, and feel free to sound off in the comments if you experience problems installing any of these fixes.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Test Data Management tools for 2026 ranked for QA and DevOps teams, comparing speed, self service, masking, CI/CD fit, and enterprise readiness.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The information technology (IT) workers associated with the Democratic People’s Republic of Korea (DPRK) are now applying to remote positions using real LinkedIn accounts of individuals they’re impersonating, marking a new escalation of the fraudulent scheme. “These profiles often have verified workplace emails and identity badges, which DPRK operatives hope will make their fraudulent

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Update: The Pentagon will reportedly carry out performance reviews of major U.S. defense firms and plans to make “noncompliance determinations” in the weeks ahead, The Hill and the Wall Street Journal reported Monday. 

    The reviews come on the heels of an executive order President Trump signed last month vowing closer scrutiny of the industry as he pushed for a 50-percent boost to the Pentagon budget—to $1.5 trillion—in the year ahead. 

    Some defense firms have already responded to the executive order. Indeed, “During quarterly earnings calls late last month, executives from RTX, General Dynamics and other contractors boasted about billions of dollars in capital investments their companies have made to expand weapons manufacturing and defended dividend payouts,” the Journal notes. 

    Read more about the latest earnings calls from leaders at Boeing, Northrop Grumman, RTX, Booz Allen Hamilton and more here via Defense One’s Lauren C. Williams, who writes our weekly Defense Business Brief each Wednesday. 

    New: CNO’s “fighting instructions” call for condition-dependent deployments. These instructions to the fleet were released on Monday by Adm. Daryl Caudle during a speech at the Naval War College.

    Caudle wants to move away from the standard six- or seven-month deployments that are now routine for aircraft carriers and most surface warships. Instead, he explained to USNI News, the fleet will plan to deploy ships for shorter periods of time when needed, and according to their physical and warfighting condition. 

    “Naval analysts have long warned that the one-size-fits-all model of carrier strike group deployment is reaching its limits, stretching the tolerance of crews and ships and leading to maintenance delays, long gaps between carrier deployments in theater and a routine of extended deployments,” USNI News writes. Read more, here.

    Developing: Connecticut submaker General Dynamics Electric Boat says it will hire 8,000 workers this year, which is a “significant ramp-up compared to the 3,000 hires” planned in 2025, local news The Day reported on Saturday. An estimated 3,500 of those new jobs are expected at EB’s Quonset Point facilities in Rhode Island. A further 2,500 are planned for Groton, “another 1,000 would be divided between engineering and design,” and the remaining 1,000 are expected to be spread “throughout other aspects of the company,” according to a memo from EB President Mark Rayha.

    Panning out: “Hiring of such magnitude could increase total employees by more than 25%, depending on how much attrition occurs this year. EB, a division of General Dynamics Corp., last year settled with two of its unions to increase pay and benefits significantly,” The Day reports.  

    Related:HII CEO touts productivity gains—but says new contracts are needed to sustain progress,” Lauren Williams reported for Defense One on Thursday. 

    ICYMI: Some U.S. defense firms have joined a parade of “honorary” donations to Trump for Kennedy Center renovations. After the president fired board members at the John F. Kennedy Center for the Performing Arts and became the new chairman, “companies from defense contractors to tech giants and law firms became new donors to the center,” and others went public with their donations “after linking their gifts to Trump and top White House officials,” Donald Shaw of the nonprofit newsroom Sludge reported Monday. 

    Why it matters: “Several of the companies that are new Kennedy Center donors or that are now explicitly linking their donations to Trump also have substantial business interests that have been directly affected by Trump administration actions.”

    “Among the companies newly appearing as Kennedy Center donors since Trump’s inauguration are Anduril,” Shaw reports. Anduril last year won “a $363 million contract with the Department of Homeland Security for border surveillance towers and a $94 million with the Pentagon for its Altius drone systems,” in addition to contracts related to Trump’s unproven and still-developing Golden Dome missile defense program. Congressional experts and former Pentagon officials estimate that system could wind up costing U.S. taxpayers between $542 billion and $3.6 trillion over the next two decades. 

    RTX also reported a $500,000 honorary donation for the Kennedy Center, which the defense contractor made in May. That accounted for all but $3,000 of the firm’s disclosed contributions for 2025, Shaw reports. RTX is also involved in development work related to the sprawling Golden Dome program. 

    Many other non-defense firms made donations as well. That includes “social media giant Meta, which faces ongoing antitrust scrutiny from the Federal Trade Commission (at least $250,000),” and Chevron, which “disclosed more than $1.15 million in donations to the Kennedy Center late last year.” The White House “rescinded and later reissued Treasury Department licenses governing Chevron’s ability to operate in Venezuela,” and Chevron is now “expected to be among the largest beneficiaries of Trump’s January 2026 actions in Venezuela,” Shaw reports. 

    Coverage continues below…


    Welcome to this Tuesday edition of The D Brief, a newsletter focused on developments affecting the future of U.S. national security, brought to you by Ben Watson with Bradley Peniston. It’s more important than ever to stay informed, so we’d like to take a moment to thank you for reading. Share your tips and feedback here. And if you’re not already subscribed, you can do that here. On this day in 1962, the U.S. exchanged captured Soviet spy Rudolf Abel for captured American U2 spy-plane pilot Gary Powers.

    The Marine Corps says it just passed an audit for the third year in a row. “Independent auditors verified that the Marine Corps’ financial records are materially accurate, complete, and compliant with federal regulations and issued an unmodified opinion for Fiscal Year 2025,” the service said in a statement Monday. 

    The Marine Corps is the second-smallest branch of the military, with 171,000 active-duty forces. That places it well ahead of the Space Force’s 10,000 Guardians, which operate in close conjunction with the Air Force and its 318,000 troops. The Navy ranks second at 343,000 and the Army is the largest service with 456,000 active-duty soldiers as of Nov. 30, 2025. 

    DOD says a new AI is bringing “decision superiority” to the military. The Defense Department on Monday said it has launched a partnership with Sam Altman’s OpenAI “to integrate ChatGPT” into the military’s generative AI platform GenAI.mil. The process “is already accelerating operational tempo and sharpening the decision superiority of its users,” according to a statement Monday. It also said “comprehensive training for all Department personnel will continue, empowering them to effectively learn the platform and integrate AI capabilities into their daily workflows.”

    The OpenAI partnership is an extension of the Pentagon’s AI Acceleration Strategy released in January—which is the military’s third AI-acceleration strategy in four years, as Defense One’s Patrick Tucker reported. Read more, here.  

    In other AI reporting this week, as the technology increasingly finds its way into the American healthcare system, “reports arise of botched surgeries and misidentified body parts,” four journalists write for Reuters in a special report published Monday. 

    Shutdown coverup? “Some Army civilian employees who were supposed to be furloughed during the recent shutdown went to work anyway, then were instructed to fill out time cards stating that they had not. Now the workers fear that this violated standard procedures and forced them to break the law,” report GovExec’s Eric Katz and Defense One’s Thomas Novelly. Story, here.

    Watchdog: Pentagon’s #2 official Feinberg appears in 20 documents throughout the Epstein files. The Project on Government Oversight on Friday flagged another military official whose name appears inside the FBI’s repository of documents related to Jeffrey Epstein, who committed suicide while incarcerated late in Trump’s first term. 

    “DOD Deputy Secretary Steve Feinberg is referenced in 20 documents in the Epstein files, while the company he founded, Cerberus, appears in 360 files,” POGO’s René Kladzyk reported Friday. “The Epstein files also include emails about Cerberus sent by higher ups from Deutsche Bank, the beleaguered financial entity which managed Epstein’s investments from 2013 to 2018 and allegedly played an ‘essential role’ in Epstein’s sex-trafficking scheme.” More, here.

    Trump 2.0

    European security report describes Trump as a “wrecking ball” let loose on the world. After observing now five years of Trump in the White House, and coming off the heels of his assertive and combative foreign policy regarding Venezuela and Greenland, European officials this week warn “The U.S. approach to European security is now perceived as volatile, oscillating between reassurance, conditionality, and coercion,” according to the latest annual report from researchers and former officials working at the Munich Security Conference, which is hosted each February in Germany.

    Topline: “The world has entered a period of wrecking-ball politics. Sweeping destruction—rather than careful reforms and policy corrections—is the order of the day” while the U.S. president tries to break free “from the existing [world] order’s constraints and rebuild a stronger, more prosperous nation.” 

    With Trump’s rejection of the “rules-based order” that emerged in the wake of the Second World War, some experts are preparing for the emergence of a “deals-based order” stemming from his coercive and transactional foreign policy—most recently evidenced in his extractive approach toward Venezuela’s interim leadership after the U.S. abduction of President Nicholas Maduro last month. The result would be “a world shaped by transactional deals rather than principled cooperation, private rather than public interests, and regions shaped by regional hegemons rather than universal norms. Ironically, this would be a world that privileges the rich and powerful, not those who have placed their hopes in wrecking-ball politics,” the report warns. 

    And because the White House now seems to ape Moscow’s approach toward international borders and national sovereignty, this decidedly different approach from the U.S. has set many across Europe on edge. “Trump and his team often display an unsettling affinity for Russian President Vladimir Putin,” the report’s authors write. “To many in Europe, it feels like their long-time captain has joined their archrival’s team.” As European countries continue to pour money and arms into Ukraine’s defense against a Russian invasion, “It is thus far from clear whether the wrecking-ball politics applied by the US administration will really clear the ground for creative construction that ultimately benefits the many. Instead, it looks as if it is simply leaving a world of rubble.”

    A similar outlook is emerging in the Pacific, a region where “the US claims to be countering Chinese dominance, [but] regional players view its recent actions as contradictory to that goal,” the report says. 

    What’s more, conflict forecasts are not encouraging. “According to the AI-driven conflict forecasting system of the Peace Research Institute Oslo, the highest battle-related death tolls this year will be witnessed in precisely the conflicts that Trump had promised to end, among them those in Ukraine, Israel-Palestine, and Sudan.”

    What then are the options for those on the margins of Trump’s orbit? In short, they will need to make building—that is, reforms and repairs—more enticing and effective than the wrecking ball of Trump’s deconstruction. “Containing the worst expressions of a policy of destruction will require these actors to step up,” the authors write. And that includes “by significantly investing in their own power resources and pooling them through closer cooperation,” but they “will also have to credibly demonstrate that meaningful reforms and political course corrections are viable—and much more likely to satisfy growing demands for improvements than a policy of widespread destruction.” Read over the full report (PDF), here

    Related reading: Trump’s former National Security Advisor John Bolton warns “The world is threatened by the president’s self-absorption and incoherence,” writing Tuesday in a piece for The Atlantic entitled, “A Foreign Policy Worse Than Regime Change.”

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Researchers reveal the new 0APT cyber group is fabricating attacks on large organisations. Learn how they use fake data to trick companies into paying.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Cybersecurity researchers have disclosed details of an emergent ransomware family dubbed Reynolds that comes embedded with a built-in bring your own vulnerable driver (BYOVD) component for defense evasion purposes within the ransomware payload itself. BYOVD refers to an adversarial technique that abuses legitimate but flawed driver software to escalate privileges and disable Endpoint Detection

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • This week in cybersecurity from the editors at Cybercrime Magazine

    Sausalito, Calif. – Feb. 10, 2026

    Read the full story in GoBankingRates

    “The World In 2030,” a Bank of America research paper, cites Cybersecurity Ventures, whose analysis showed that cybercrime — such as hacking, fake videos, and stealing personal data — was expected to cost the world $10.5 trillion by 2025, making it the world’s third largest economy behind the U.S. and China. And with the exponential rise of AI deep fake videos and phone calls, these crimes will become more effective and harder to stop.

    Part of the reason why those losses are so high, according to Adam Evans, Royal Bank of Canada’s SVP and CISO, is that businesses too often underestimate the risks, and too often under-invest in protecting themselves.

    GOBankingRates, a Gen Digital media property, reports that the rise in online threats will cause both businesses and governments to spend much more on cybersecurity (especially in the U.S.).

    This includes areas like banking, defense, and infrastructure, and it could increase profits for security companies and open the door to online security innovation.

    “Cybersecurity is the only line item that theoretically has no spending limit,” says Morgan. “There is a budget before a company suffers a cyberattack or a series of them, and then there’s the actual spend that takes place afterwards. What business or consumer isn’t going to do and spend whatever it takes to recover from being hacked?”

    While all other tech sectors are driven by reducing inefficiencies and increasing productivity, cybersecurity spending is driven by cybercrime, as reported in the 2026 Cybersecurity Market Report published by Cybercrime Magazine in partnership with Evolution Equity Partners.

    In 2015, Bank of America CEO Brian Moynihan declared that the nation’s second-largest lender had an unlimited cybersecurity budget. “Moynihan was brutally honest,” says Morgan. “But really, what he said then is true now and in the future for Fortune 500 and Global 2000 enterprises all the way down to Main Street businesses. He just had the courage to say it without worrying about the repercussions.”

    The bottom line, according to GOBankingRates: Online risks will drag down growth unless security spending keeps up, but cybersecurity itself could end up becoming its own business sector.

    Read the Full Story



    Cybercrime Magazine is Page ONE for Cybersecurity. Go to any of our sections to read the latest:

    • SCAM. The latest schemes, frauds, and social engineering attacks being launched on consumers globally.
    • NEWS. Breaking coverage on cyberattacks and data breaches, and the most recent privacy and security stories.
    • HACK. Another organization gets hacked every day. We tell you who, what, where, when, and why.
    • VC. Cybersecurity venture capital deal flow with the latest investment activity from various sources around the world.
    • M&A. Cybersecurity mergers and acquisitions including big tech, pure cyber, product vendors and professional services.
    • BLOG. What’s happening at Cybercrime Magazine. Plus the stories that don’t make headlines (but maybe they should).
    • PRESS. Cybersecurity industry news and press releases in real time from the editors at Business Wire.
    • PODCAST. New episodes daily on the Cybercrime Magazine Podcast feature victims, law enforcement, vendors, and cybersecurity experts.
    • RADIO. Tune into WCYB Digital Radio at Cybercrime.Radio, the first and only round-the-clock internet radio station devoted to cybersecurity.

    Contact us to send story tips, feedback and suggestions, and for sponsorship opportunities and custom media productions.

    The post Bank Of America: Cybercrime Will Get Much Worse appeared first on Cybercrime Magazine.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Most engagement data is compromised by bots and spoofing. Datavault AI treats engagement as a security problem, verifying real human actions at the source.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶