Internet

Security Risk: Pentagon Mail Server Was Open On The Internet

The US Department of Defense is considered one of the world’s “most attractive” targets for hacker attacks and the systems are correspondingly well secured. Or rather, you should be. Because until the beginning of the week, a server was unsecured in the network for two weeks.

The Department of Defense (DoD) houses information and secrets about one of the largest military apparatuses in the world and the US authorities leave nothing to chance here. Security is particularly important. The glitch that TechCrunch has just made public is all the more embarrassing: As the site reports, a (self-inflicted) security gap was closed on Monday of this week that went unnoticed for two weeks.

The server was open in the network

Because the misconfiguration of a server meant that it was not protected by a password, which made it possible, at least in theory, for anyone on the Internet to access sensitive mailbox data via a browser. The only requirement was knowledge of the appropriate IP address.

The data on the affected server can undoubtedly be described as sensitive: because it contained a mailbox system on which around three terabytes of internal military e-mails were stored. Many of these concerned the US Special Operations Command (USSOCOM), which is a US military unit responsible for conducting special military operations.

The gap was tracked down by security researcher Anurag Sen last weekend, including with the help of the crawler Shodan. Sen immediately informed the US authorities and later also TechCrunch. A large amount of sensitive information about military personnel was stored on the server, including “SF-86” forms that government employees must fill out in order to obtain a security clearance.

According to TechCrunch, the potential damage is limited because no information could be classified as secret or confidential – at least what was seen. A Pentagon spokesman said no one had “hacked” the systems. Whether there was access to the system, apart from Anurag Sen’s discovery, the DoD would not or could not say.

Recent Posts

Navigating the Digital Frontier: How Mobile Proxy Infrastructure Empowers Modern Technology Journalism and Enterprise Data Mining

For tech analysts, software engineers, and digital journalists tracking real-time market shifts on platforms like…

5 hours ago

Decoupling Digital Identity: How Modern App Ecosystems Rely on Virtual Telecommunications Architecture

Modern mobile security models treat phone numbers as default digital passports, forcing tech consumers and…

6 hours ago

Top Extended Detection and Response Platforms for Large Enterprises: A Vendor Comparison Guide

Large enterprises have a lot of security data, but identifying the signals that truly matter…

6 hours ago

5 Lab Methods Scientists Use to Find What’s Really in Tap Water

A glass of tap water reveals little about its chemical makeup. Clear water may still…

1 day ago

Medical Technology Leadership Programs and Industry Collaborators: The Essential Resource Roundup

In today’s healthcare landscape, collaboration between academic programs and corporate leaders fuels both technological innovation…

2 days ago

Smartphone ban: Italy will soon pay for distracted pedestrians

Italy is cracking down on cell phone use in traffic and will soon be targeting…

2 days ago