Skip to main content

Personal info of 30,000-plus Pentagon employees compromised in contractor breach

The personal information of more than 30,000 Pentagon workers has been compromised as a result of a data breach at a contractor, revealing information as sensitive as credit card data. Although no classified material was said to be compromised in the hack, the actual date of the attack remains unknown. It was initially revealed on October 4, but security staff warned that it may have taken place earlier and merely gone unnoticed.

Despite the Pentagon running a number of schemes like “Hack the Pentagon,” to help harden its digital infrastructure against weaknesses, hacks and breaches have taken place multiple times in recent years. This latest one appears to be the fault of a contractor, who at this time remains unnamed. The results could be wide-reaching though, as both military and civilian workers were affected.

The Pentagon did confirm the breach in a statement but has attempted to downplay its impact. Pentagon spokesperson, Lieutenant Colonel Joseph Buccino said in a statement via APNews, “It’s important to understand that this was a breach of a single commercial vendor that provided service to a very small percentage of the total population.”

He went on to say that the Pentagon was continuing to look into the breach and that it would notify all of those potentially affected by it. The Department of Defense has since severed ties with the contractor reportedly responsible for the breach, although the unnamed vendor does still remain under contract.

This breach comes at a poor time for the U.S. government, which was only recently criticized by the Government Accountability Office, which suggested that although improvements had been made to the Pentagon’s security,  it still did not have adequate protections in place for its weapons systems. As new and more sophisticated cyber attacks become commonplace in peacetime and war, the GAO suggested that the Pentagon needs to improve its provisions against such tactics.

The security of government-sanctioned voting machines has also been brought into question in the lead-up to the 2018 mid-term elections in November. A recent Def Con event highlighted that even children were capable of breaching the machines’ security, potentially bringing into question any vote counting results achieved on such hardware in a few weeks’ time.

Editors' Recommendations

Google’s new privacy tool lets you know if your personal info was leaked
A Google presenter announcing alerts for personal info.

Google has just announced the expansion of its upcoming privacy tool. Made to protect your personally identifiable information (PII) from being too easy to find, the "Results About You" tool was first announced in May 2022. It will soon begin rolling out to a wider audience, and once it's out, you'll be able to easily request the removal of your personal data.

Now, at Search On 22, Google shared that it will be expanding this tool with an additional useful feature -- the ability to set up alerts if, and when, your PII appears on the web.

Read more
2024 Chevrolet Equinox EV aims for affordability with $30,000 base price
Front three quarter view of the 2024 Chevrolet Equinox EV.

The 2024 Chevrolet Equinox EV isn’t the General Motors brand’s first electric model, but it might be the most consequential. Chevy has plenty of EV experience, but with the Equinox EV, which is scheduled to go on sale in fall 2023, it’s prioritizing mass-market appeal.

The third electric vehicle unveiled by Chevy this year, following the Silverado EV and Blazer EV, the Equinox EV aims for greater affordability with a targeted starting price of around $30,000. Its compact crossover SUV form factor is also more suited to American tastes than the current Chevy Bolt EV and Bolt EUV.

Read more
TikTok continues to rebut reports of a security breach
The TikTok app on a smartphone's screen. The smartphone is sitting on a white table.

Popular short-form video app TikTok recently found itself having to refute claims that it had been hacked, and is continuing to rebut the charge.

According to BleepingComputer, as early as late last week, a hacking group known as AgainstTheWest, posted to a forum saying that it had hacked TikTok and a messaging app known as WeChat. The forum post also included screenshots, which were of "an alleged database belonging to the companies, which they say was accessed on an Alibaba cloud instance containing data for both TikTok and WeChat users."

Read more