Palantir联邦云服务
Search documents
美军内部文件曝光:测试中的新战场通信系统漏洞百出,“风险极高”
Xin Lang Cai Jing· 2025-10-04 18:26
Core Viewpoint - The modernization of the U.S. Army's battlefield communication network, primarily led by Silicon Valley companies, faces significant security issues, with the Anduril-developed NGC2 system classified as "extremely high risk" due to numerous vulnerabilities [1][4]. Group 1: System Overview - The NGC2 system, developed by Anduril with support from Palantir and other contractors, is designed for real-time data connectivity among soldiers, sensors, vehicles, and commanders [1]. - The government contract for the NGC2 project is valued at approximately $100 million [1]. Group 2: Security Concerns - An internal memorandum from the U.S. Army's Chief Technology Officer, Gabriele Chiulli, expressed severe concerns about the initial security evaluation of the NGC2 system, highlighting the inability to control information access and verify software security [1][4]. - The memorandum indicated that any authorized user could access all applications and data, raising the risk of sensitive information misuse [3]. Group 3: Vulnerabilities and Deficiencies - The system's third-party applications have not undergone the Army's security assessments, with one application identified to have 25 high-severity code vulnerabilities [3]. - The memorandum criticized the Army's lack of visibility and control over the platform's security, suggesting a rush to implement features without adequate oversight [4]. Group 4: Response and Future Actions - Anduril stated that the issues raised in the memorandum have been addressed through normal development processes, asserting that the report reflects a previous state rather than the current status [4]. - The U.S. Army's Chief Information Officer, Leonel Garciga, mentioned that many issues have been resolved, with only one application still having some vulnerabilities [5]. - The NGC2 system is a top priority for the Army's modernization efforts, with full deployment expected by 2026 [5].