Find notable cyber news and cases, enriched with sources, timelines, and signals.

GTIG maps constant multi-vector targeting of the defense industrial base

Trend
First reported
Last updated
Happening score
H score 32
1 unique sources, 1 articles

Summary

Hide ▲

GTIG identified a state-sponsored, hacktivist, and criminal targeting pattern against the defense industrial base (DIB), raising persistent espionage and intrusion risk across defense contractors and suppliers. The activity spans battlefield-supporting technologies, hiring-process abuse, edge devices, and supply-chain paths. It also includes secure messaging abuse, phishing, Android malware, and reconnaissance across multiple actor sets. The breadth of access methods makes detection harder and widens the attack surface for the sector.

Related Happenings

Client-facing app attack rates surged from 55% to 87%

Trend
H score19 First: 20.05.2026 17:37 Last: 20.05.2026 17:37 Sources 1

About this happening: Client-facing apps are seeing a sharp rise in attack pressure, with measured attack rates climbing from 55% in 2022 to 87% in 2026. That shift matters because it shows...

AI-driven attack surge against customer-facing mobile apps in 2026

Trend
H score43 First: 19.05.2026 15:00 Last: 19.05.2026 15:00 Sources 1

About this happening: Customer-facing mobile apps faced a sharp rise in attacks in 2026, with 87% of monitored apps hit versus 55% in 2022. The trend matters because agentic AI is l...

UAE and Gulf cyberattack surge after Iran conflict escalation

Trend
H score29 First: 06.05.2026 08:30 Last: 06.05.2026 08:30 Sources 1

About this happening: Cyberattack volume surged across the UAE and wider Gulf after military operations against Iran began, pushing daily breach attempts to 600,000 to 800,000 and raisi...

ScarCruft sqgame[.]net supply-chain espionage campaign

Campaign
H score8 First: 05.05.2026 12:07 Last: 05.05.2026 12:07 Sources 1

About this happening: ScarCruft's late-2024 supply-chain campaign against sqgame[.]net expanded a niche gaming platform compromise into a multi-platform espionage channel. The operation...

Bitter Middle East spear-phishing campaign targeting civil society figures

Campaign
H score28 First: 09.04.2026 13:45 Last: 09.04.2026 13:45 Sources 1

About this happening: A spear-phishing campaign targeted civil society figures in Middle Eastern countries, including three journalists in Egypt and Lebanon, creating account-compromise ris...

Timeline

  1. 13.02.2026 18:23 2 articles · 5mo ago

    GTIG discloses constant multi-vector targeting of the defense industrial base

    Initial Disclosure

    Google Threat Intelligence Group (GTIG) says China-, Iran-, North Korea-, and Russia-linked state-sponsored, hacktivist, and criminal actors are mounting multi-vector campaigns against the defense industrial base (DIB). The assessed pressure spans battlefield-supporting defense entities, exploitation of hiring processes, edge-device access, supply-chain risk, secure messaging abuse, Android malware, phishing, and reconnaissance, with GTIG describing the sector as under a state of constant, multi-vector siege.

    Show sources