Company Details
army-national-guard
56,864
150,787
92811
nationalguard.com
0
ARM_1014038
In-progress

Army National Guard Company CyberSecurity Posture
nationalguard.comWelcome to the Army National Guard's page on LinkedIn. The Army National Guard, also known as the National Guard, is one component of The Army (which consists of the Active Army, the Army National Guard, and the Army Reserve). National Guard Soldiers serve both community and country. Our versatility enables us to respond to domestic emergencies, overseas combat missions, counterdrug efforts, reconstruction missions and more. If you are interested in learning more about the career opportunities and educational benefits made possible through service in the National Guard, visit www.NATIONALGUARD.com or talk with our team today at https://bit.ly/2uXk12R. For those seeking official information and news tied to the Army National Guard, visit www.ng.mil.
Company Details
army-national-guard
56,864
150,787
92811
nationalguard.com
0
ARM_1014038
In-progress
Between 650 and 699

ANG Global Score (TPRM)XXXX

Description: The Army National Guard suffered a significant breach where a Chinese cyberespionage group nicknamed 'Salt Typhoon' extensively compromised its network. The hackers exfiltrated maps, data traffic, network configuration, and administrator credentials. The breach spanned from March to December 2024 and affected networks in every US state and at least four US territories. This incident has raised concerns about the vulnerability of critical infrastructure and the potential for future cyber-attacks.
Description: The US Army National Guard experienced a significant data breach by a Chinese state-sponsored threat actor known as Salt Typhoon. The attackers were present in the networks from March to December 2024, stealing sensitive data including administrator credentials, network traffic diagrams, geographical maps, and personally identifiable information (PII) of service members. The breach also compromised data traffic between the state’s network and other US states and territories, potentially allowing the attackers to pivot to other networks and compromise more government and military targets.


No incidents recorded for Army National Guard in 2025.
No incidents recorded for Army National Guard in 2025.
No incidents recorded for Army National Guard in 2025.
ANG cyber incidents detection timeline including parent company and subsidiaries

Welcome to the Army National Guard's page on LinkedIn. The Army National Guard, also known as the National Guard, is one component of The Army (which consists of the Active Army, the Army National Guard, and the Army Reserve). National Guard Soldiers serve both community and country. Our versatility enables us to respond to domestic emergencies, overseas combat missions, counterdrug efforts, reconstruction missions and more. If you are interested in learning more about the career opportunities and educational benefits made possible through service in the National Guard, visit www.NATIONALGUARD.com or talk with our team today at https://bit.ly/2uXk12R. For those seeking official information and news tied to the Army National Guard, visit www.ng.mil.


The Israel Defense Forces (IDF) is the military of the State of Israel, responsible for the nation's defense and security. Founded in 1948, the IDF ranks among the most battle-tested armed forces in the world, having had to defend the country in six major wars. At the age of 18, men and women are

Joining the British Army, you’ll get much more from life than you ever would with a civilian career – you’ll have the opportunity to do something that really matters, with a team that are like family to you. The sense of belonging in the Army is next level: when you’ve trained with each other and ov

OUR ARMY: READY, DECISIVE, RESPECTED Our Army is the bedrock of our nation's defence. We draw our strength from our Regulars, NSFs and Operationally Ready NSmen. We thrive on the support of our Families, Employers and fellow Singaporeans. Ready in peace, we are capable of a full spectrum of o

U.S. Army Corps of Engineers Mission: Provide vital public engineering services in peace and war to strengthen our Nation’s security, energize the economy, and reduce risks from disasters. Privacy Policy/Social Media Guidelines: https://www.usace.army.mil/SocialMedia/ U.S. Army Corps of Engineers

The mission of the Department of War is to provide military forces necessary to protect the security of our country. The U.S. military defends the homeland, deters adversaries, and builds security around the world by projecting U.S. influence and working with allies and partners. In case deterrence

The Albanian Armed Forces (AAF) (Albanian: Forcat e Armatosura të Republikës së Shqipërisë (FARSH)) were formed after the declaration of independence in 1912. Today it consists of: the General Staff, the Albanian Land Force, the Albanian Air Force and the Albanian Naval Force. According to the Al

MISSION Throughout all 50 states and around the world, the Navy Reserve force delivers real-world capabilities and expertise to support the Navy mission — building a more lethal, warfighting culture focused on great power competition. VISION The Navy Reserve provides essential naval warfighting cap

The mission of the U.S. Coast Guard is to protect the public, the environment, and U.S. economic interests — along the coast and our coastal borders, in the nation's ports and waterways, in international waters, or in any maritime region as required to support national security. As one of the six b

Het Ministerie van Defensie bestaat uit de Koninklijke Marine, de Koninklijke Landmacht, de Koninklijke Luchtmacht, de Koninklijke Marechaussee, het Commando DienstenCentra en de Defensie Materieel Organisatie. Aan het hoofd van de Bestuursstaf (het departement) staat de minister van Defensie. We
.png)
FORT INDIANTOWN GAP, Pa. — The Pennsylvania National Guard is strengthening its cyber defense posture through increased coordination across...
Cybersecurity Initiatives. Governor Mike DeWine signing legislation with The Adjutant General and others standing behind desk. Ohio Gov.
Amid increasing cyberattack risks, the Army National Guard is testing a pilot program in five cities to help local cybersecurity efforts.
The 300 guardsmen from Georgia are being sent to relieve some of the approximately 2300 National Guard troops active in the nation's...
By Maj. Benjamin Hughes. COLUMBIA, Md. – More than 200 security and infrastructure cybersecurity experts gathered at the Technology...
The roughly 2,000 National Guardsmen deployed to Washington, D.C. have been tasked with assisting local law enforcement, but the lines...
BETTER COMMAND OF THE BATTLEFIELD - A service member from the 19th Special Forces Group (Airborne), Utah National Guard, prepares for...
WASHINGTON — Bringing innovative technologies to Soldiers and incorporating next generation software and capabilities will be among the...
Saudi Arabia expanded its strategic ties with the United States by formally joining the Defense Department National Guard Bureau State...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Army National Guard is http://www.NATIONALGUARD.com.
According to Rankiteo, Army National Guard’s AI-generated cybersecurity score is 698, reflecting their Weak security posture.
According to Rankiteo, Army National Guard currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Army National Guard is not certified under SOC 2 Type 1.
According to Rankiteo, Army National Guard does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Army National Guard is not listed as GDPR compliant.
According to Rankiteo, Army National Guard does not currently maintain PCI DSS compliance.
According to Rankiteo, Army National Guard is not compliant with HIPAA regulations.
According to Rankiteo,Army National Guard is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Army National Guard operates primarily in the Armed Forces industry.
Army National Guard employs approximately 56,864 people worldwide.
Army National Guard presently has no subsidiaries across any sectors.
Army National Guard’s official LinkedIn profile has approximately 150,787 followers.
Army National Guard is classified under the NAICS code 92811, which corresponds to National Security.
No, Army National Guard does not have a profile on Crunchbase.
Yes, Army National Guard maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/army-national-guard.
As of November 27, 2025, Rankiteo reports that Army National Guard has experienced 2 cybersecurity incidents.
Army National Guard has an estimated 779 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach.
Title: Cyber Espionage Breach of US Army National Guard Network
Description: A US state's Army National Guard network suffered a breach by the group Salt Typhoon. Maps and data were stolen between March and December 2024.
Type: Cyber Espionage
Attack Vector: Network Compromise
Threat Actor: Salt Typhoon
Motivation: Intelligence Gathering, Critical Infrastructure Sabotage
Title: Salt Typhoon Accessed National Guard Systems
Description: A Chinese state-sponsored threat actor known as Salt Typhoon accessed the network of the US Army National Guard for nine months, stealing sensitive data including administrator credentials, network traffic diagrams, geographical maps, and personally identifiable information (PII) of service members.
Type: Data Breach
Attack Vector: Exploiting vulnerabilities in Cisco's routers and similar hardware
Vulnerability Exploited: CVEs in Cisco's routers
Threat Actor: Salt Typhoon (Chinese state-sponsored)
Motivation: Disrupt networksSteal key intelligencePrepare for potential conflict over Taiwan
Common Attack Types: The most common types of attacks the company has faced is Breach.
Identification of Attack Vectors: The company identifies the attack vectors used in incidents through Cisco's routers.

Data Compromised: Maps, Data traffic, Network configuration, Network diagrams, Administrator credentials, Pii of service members
Systems Affected: US state Army National Guard networkCounterparts' networks in every other US state and at least four US territories

Data Compromised: Administrator credentials, Network traffic diagrams, Geographical maps, Personally identifiable information (pii) of service members, Data traffic between state's network and other us states and territories
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Maps, Data Traffic, Network Configuration, Network Diagrams, Administrator Credentials, Pii Of Service Members, , Administrator Credentials, Network Traffic Diagrams, Geographical Maps, Personally Identifiable Information (Pii) and .

Entity Name: US Army National Guard
Entity Type: Government
Industry: Defense
Location: Unnamed US State

Entity Name: US Army National Guard
Entity Type: Government/Military
Industry: Military
Location: United States

Type of Data Compromised: Maps, Data traffic, Network configuration, Network diagrams, Administrator credentials, Pii of service members

Type of Data Compromised: Administrator credentials, Network traffic diagrams, Geographical maps, Personally identifiable information (pii)
Sensitivity of Data: High

Source: NBC News

Source: Property of the People

Source: BleepingComputer
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: NBC News, and Source: Property of the People, and Source: BleepingComputer.

High Value Targets: Us State Army National Guard Network,
Data Sold on Dark Web: Us State Army National Guard Network,

Entry Point: Cisco's routers
High Value Targets: Critical Infrastructure Organizations, Communications Firms, Government, Military, Defense Organizations,
Data Sold on Dark Web: Critical Infrastructure Organizations, Communications Firms, Government, Military, Defense Organizations,
Last Attacking Group: The attacking group in the last incident were an Salt Typhoon and Salt Typhoon (Chinese state-sponsored).
Most Significant Data Compromised: The most significant data compromised in an incident were Maps, Data Traffic, Network Configuration, Network Diagrams, Administrator Credentials, PII of Service Members, , Administrator credentials, Network traffic diagrams, Geographical maps, Personally identifiable information (PII) of service members, Data traffic between state's network and other US states and territories and .
Most Significant System Affected: The most significant system affected in an incident was US state Army National Guard networkCounterparts' networks in every other US state and at least four US territories.
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Maps, PII of Service Members, Personally identifiable information (PII) of service members, Data traffic between state's network and other US states and territories, Data Traffic, Administrator Credentials, Geographical maps, Network Configuration, Administrator credentials, Network Diagrams and Network traffic diagrams.
Most Recent Source: The most recent source of information about an incident are NBC News, BleepingComputer and Property of the People.
Most Recent Entry Point: The most recent entry point used by an initial access broker was an Cisco's routers.
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.