Security researchers discovered that more than 12% of applications marketed to US military personnel contain code from China and Russia. The findings raise concerns about potential surveillance and data compromise risks.
Analysts examined hundreds of mobile apps targeting active-duty soldiers and military families, uncovering foreign code embedded within their infrastructure. The contaminated apps included fitness trackers, financial tools, and social platforms available through mainstream app stores.
The presence of Chinese and Russian code suggests either intentional insertion during development or compromise of software supply chains. Such code could enable unauthorized data collection, location tracking, or device manipulation.
Military personnel represent high-value targets for foreign intelligence agencies seeking operational insights, personal leverage, or network access. The widespread distribution of compromised apps amplifies exposure across multiple service branches.
Defense officials have been notified of the findings. Military branches are reviewing app guidelines for personnel and exploring vetting mechanisms for third-party software. Users are advised to audit app permissions and avoid downloading unnecessary applications on military or work devices.
Iran's Islamic Revolutionary Guard Corps (IRGC) claimed it destroyed Amazon's central data infrastructure in Bahrain using cruise missiles. Amazon has not commented on the alleged attack.
The UK government has abandoned its digital ID card program following widespread public opposition. The decision clears the way for a tax cut initiative aimed at easing the cost of living crisis.
A breach of AI music generator Suno exposed personal data from 55 million users, according to Have I Been Pwned. Stolen information includes names, phone numbers, and physical addresses.
The Qilin ransomware gang is actively exploiting a critical authentication bypass vulnerability in Palo Alto Networks' PAN-OS GlobalProtect to breach corporate networks. Arctic Wolf disclosed the active exploitation campaign.