MARADMIN 296/26 introduces the beginning of the new military occupational specialty of 0315 Scout.
The Scout employs small arms weapon systems while being skilled in field craft and advanced communications that conducts ground reconnaissance, surveillance, and battlespace shaping through assured, long-range communications in support of Infantry Battalions, Light Armored Reconnaissance Battalions, and their subordinate elements.
To discover more about the Scout ⬇️
First ever photos of the new Advanced Airborne Tactical Mission Suite (AATMS) inside the 160th SOAR's AH-6R (Block 3.0 MELB).
p/c: HeliOps Magazine on FB
CASE UPDATE from @FBICharlotte: Former Army Employee and Top Secret Clearance Holder Arrested and Charged with Leaking Classified National Defense Information
Learn more: https://t.co/2yy0urQFEq
Russian General Staff Main Intelligence Directorate (GRU) cyber actors are exploiting vulnerable routers worldwide to intercept and steal sensitive military, government, and critical infrastructure information. The U.S. Department of Justice and the FBI recently disrupted a GRU network of compromised small-office home-office (SOHO) routers used to facilitate malicious DNS hijacking operations. The FBI and the following partners are releasing this announcement to warn the public and encourage network defenders and device owners to take actions to remediate and reduce the attack surface of similar edge devices: U.S. National Security Agency (NSA) and international partners from Canada, Czech Republic, Denmark, Estonia, Finland, Germany, Italy, Latvia, Lithuania, Norway, Poland, Portugal, Romania, Slovakia, and Ukraine.
Understanding the DNS Hijacking Operations
Since at least 2024, Russian GRU 85th Main Special Service Center (85th GTsSS) cyber actors — also known as APT28, Fancy Bear, and Forest Blizzard — have been collecting credentials and exploiting vulnerable routers worldwide, including compromising TP-Link routers using CVE-2023-50224. The GRU actors changed the devices' dynamic host configuration protocol (DHCP) / domain name system (DNS) settings to introduce actor-controlled DNS resolvers. Connected devices, including laptops and phones, inherit these modified settings. The actor-controlled infrastructure resolves and captures lookups for all domain names. The GRU provides fraudulent DNS answers for specific domains and services — including Microsoft Outlook Web Access — enabling adversary-in-the-middle (AitM) attacks against encrypted traffic if users navigate through a certificate error warning. These AitM attacks would allow the actors to see the traffic unencrypted.
The GRU has harvested passwords, authentication tokens, and sensitive information including emails and web browsing information normally protected by secure socket layer (SSL) and transport layer security (TLS) encryption. The GRU has indiscriminately compromised a wide pool of U.S. and global victims and then filtered down impacted users, especially targeting information related to military, government, and critical infrastructure.
Tips to Protect Yourself
The FBI and partners have released relevant guidance and technical indicators, including NCSC-UK cybersecurity advisory "APT28 exploit routers to enable DNS hijacking operations" on 7 April 2026 and CISA's Edge Device Security webpage.
Users of SOHO routers are encouraged to upgrade end-of-support devices, update to latest firmware versions, change default usernames and passwords, and disable remote management interfaces from the Internet. All users should carefully consider certificate warnings in web browsers and email clients.
Organizations that allow remote work should review relevant policies regarding how employees access sensitive data, such as using VPNs and hardened application configurations. Additionally, organizations may consider incentivizing employees to upgrade outdated personal devices involved in remote access.
Report It
If you suspect you have been targeted or compromised by a Russian GRU cyber intrusion, report the activity to your local FBI field office or file a complaint with the IC3. Be sure to provide details about your router, including device type and DHCP configurations.
Visit https://t.co/bgnGBinpGB for additional details.
From Day One, the mission was crystal clear: This was the final, best chance to wipe out Iran’s threat for good - so they can never have a nuclear weapon.
@SecRubio breaks it down ⬇️
USS Tripoli (LHA 7) sails in the Indian Ocean, March 29. The amphibious assault ship is named after the Battle of Derna, which took place during the First Barbary War in 1805.
Today we take a moment to honor the legacy of nearly 500,000 Marines who served during the Vietnam War.
When Marines landed in Vietnam in 1965, their courage was tested in some of the most storied battles and operations in Marine Corps history—including Operation Starlite, Operation Hastings, Khe Sanh, Hue City, and Operation Dewey Canyon.
Their service in the jungles and cities of Vietnam would help reshape the Marine Corps’ approach to warfighting and cement their contributions to the Corps’ history.
---
Original Caption: A Marine from Company G, 2nd Battalion, 4th Marines, runs for cover as NVA soldiers open up with a .50-caliber machine gun during Operation Hastings. The action is taking place in Quang Tri Province, northwest of Da Nang. Photo by: Corporal Mahoney
✍️ (U.S. Marine Corps graphic by Lance Cpl. Noah Matheny)
As a former Marine, this hits close to home.
The Tomahawk burn rate is unsustainable.
As a certified SDVOSB Prime with sole-source authority, Gov Corps Solutions is ready to prime emergency procurement and bring strong Tier-2/3 partners under contract to support munitions surge needs — including IT, cybersecurity compliance, data support, and facilities services.
Open to teaming discussions.
#GovCon #SDVOSB #MarineCorps #Tomahawk #DefenseProcurement
Both my business partner and I are United States Marines.
We built Gov Corps Solutions on the values we lived every day in the Corps: Honor, Courage, Commitment, and Unwavering Integrity.
Today we’re a certified SDVOSB Prime offering IT Support, Federal Cybersecurity & Compliance (RMF/ATO, CMMC, NIST 800-171), Data Analytics, Translation & Language Services, and Facilities Support.
Proudly Veteran-Owned | San Antonio, TX | Ready for Surge Capacity Teaming.
#GovCon #SDVOSB #VeteranOwned #MarineCorps #DefenseContracting #USMC