UAD A.I CyberSecurity Scoring
UAD
Company Information
Website:http://www.army.mil/devcom
Employees number:510
Number of followers:26,439
NAICS:541821
Industry Type:Government Relations Services
Homepage:army.mil
UAD Risk Score (AI oriented)
Between 700 and 749
UADGovernment Relations Services
Updated:
07/07/2026
07/07/2026
720/1000
Moderate
Ba
UAD Global Score (TPRM)
xxxx
UADGovernment Relations Services
Score locked

UADModerate
Current Score
720Ba (MODERATE)
01000
2 incidents
-19 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
722
AUGUST 2026
721
JULY 2026
741
Cyber Attack
06 Jul 2026 • UAD
U.S. Army: Hacktivists call out Trump by hacking and defacing US Army websites
U.S. Army Websites Defaced with Pro-Kurdish Messages Targeting Trump
720
MEDIUM-21
USA1783456259
U.S. Army Websites Defaced with Pro-Kurdish Messages Targeting Trump
Two U.S. Army websites the Open Innovation Lab and the AI Integration Center were defaced earlier this week, displaying pro-Kurdish messages and inflammatory remarks about former President Donald Trump. The incident, first reported by Cyberscoop, involved modified error pages that appeared when users attempted to access non-existent web pages on the sites.
The defaced messages labeled Trump a "pedophile" and a "thief", referencing his association with the late financier Jeffrey Epstein, and also mentioned Tom Barrack, the U.S. ambassador to Turkey. Additionally, the hackers called for a "free Kurdistan", suggesting a political motive behind the breach.
Security researcher Ronald Lovelace identified the defacement, which was visible as of Monday. The U.S. Army took the affected pages offline shortly after being contacted by Cyberscoop, though it remains unclear how the attackers gained access. The websites reportedly run on WordPress with multiple plugins, a common vector for exploitation. There is no confirmation whether any data was stolen during the incident.
While the Army has not disclosed further details, the breach aligns with recent hacktivist activity targeting U.S. government systems. Earlier this year, hackers breached the Department of Homeland Security (DHS), leaking records related to immigration enforcement contracts. This week, DHS confirmed another intrusion, this time affecting an intelligence-sharing platform used by federal, state, and local authorities.
The Army is currently investigating the defacement. The Department of Defense has not commented on the incident.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
REFERENCES
JUNE 2026
741
MAY 2026
740
APRIL 2026
740
MARCH 2026
739
FEBRUARY 2026
738
JANUARY 2026
754
Cyber Attack
03 Jan 2026 • UAD
U.S. Military: Breach Roundup: Software Update Caused Verizon Outage
U.S. Military Cyberattack on Venezuela's Electricity Grid
737
CRITICAL-17
USA1768516767
Cybersecurity Roundup: Major Incidents and Emerging Threats
U.S. Military Cyberattack Linked to Venezuela Grid Outage
The New York Times reported that a January 3 cyberattack on Venezuela’s electricity grid coincided with a U.S. military operation, suggesting a coordinated cyber-kinetic strike. U.S. officials claim the attack demonstrated precision targeting, including the ability to restore grid operations at will. While President Trump hinted at U.S. involvement, experts note the challenges of synchronizing cyber and physical attacks, citing Russia’s struggles in Ukraine. The operation’s full scope remains under scrutiny.
ICE and Border Patrol Staff Data Exposed Online
A public website, ICE List, published the identities, work emails, and phone numbers of nearly 2,000 ICE and Customs and Border Patrol agents, including frontline personnel. Founder Dominick Skinner stated the dataset aims for "accountability," though agents have previously concealed identities during enforcement actions. The leak follows heightened scrutiny of ICE after the fatal shooting of a U.S. citizen by an agent on January 7, prompting protests and potential military deployment under the Insurrection Act.
BreachForums User Data Leaked in Massive Dump
A hacker released a database containing 323,986 BreachForums users’ usernames, emails, and IP addresses. The breach, attributed to a user named "James," appears to stem from a backend compromise rather than scraping. The dataset includes metadata from a MyBB forum installation, with users spanning the U.S., Germany, and other nations. The forum’s current administrator dismissed the leak as outdated, but cybersecurity firm Resecurity confirmed many records as authentic. BreachForums, previously seized by law enforcement, has faced repeated disruptions since 2022.
Endesa Customer Data Breach Exposes Millions
Spanish energy firm Endesa confirmed a breach of its commercial systems, potentially exposing personal and financial data of over 20 million customers. A threat actor claimed responsibility, alleging the theft of a 1TB database containing names, national IDs, contract details, and IBAN numbers. Endesa stated passwords and credentials were unaffected but did not disclose the breach’s timing or affected customer count.
Telegram Proxy Links Expose Users’ Real IP Addresses
A new privacy flaw in Telegram’s mobile app allows attackers to harvest users’ real IP addresses via malicious proxy links. The issue, demonstrated by researcher "0x6rss," exploits Telegram’s automated proxy testing, which bypasses VPNs to send direct requests to attacker-controlled servers. The vulnerability affects both Android and iOS, with proof-of-concept code published on GitHub.
MuddyWater Upgrades Toolkit with Rust-Based Malware
Iran-linked cyberespionage group MuddyWater is deploying "RustyWater," a Rust-based remote access Trojan, in spear-phishing campaigns targeting Middle Eastern organizations. The malware, delivered via weaponized Word documents, features modular capabilities, anti-analysis techniques, and registry-based persistence. CloudSEK researchers note the shift to Rust reflects a broader trend toward stealthier, compiled malware.
Dutch Hacker Jailed for Port Cyberattack Aiding Cocaine Smuggling
A Dutch appeals court sentenced a 44-year-old man to seven years in prison for hacking port systems to facilitate the smuggling of 210 kg of cocaine. The defendant used a USB device to breach systems, obtaining operational data to evade detection. The court ruled the attack was a deliberate act of organized crime support.
ServiceNow Patches Critical AI Agent Vulnerability
ServiceNow addressed CVE-2025-12420, a flaw allowing unauthenticated attackers to impersonate users and abuse AI-driven workflows. Dubbed "BodySnatcher," the vulnerability enables identity spoofing via a victim’s email, bypassing SSO and MFA in certain configurations. The issue affects on-premises deployments of specific components.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
REFERENCES
DECEMBER 2025
754
NOVEMBER 2025
754
OCTOBER 2025
754
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for UAD ??
What was UAD's A.I Rankiteo Cyber Score in August 2026 ??
What was UAD's A.I Rankiteo Cyber Score in July 2026 ??
What was UAD's A.I Rankiteo Cyber Score in June 2026 ??
What was UAD's A.I Rankiteo Cyber Score in May 2026 ??
What was UAD's A.I Rankiteo Cyber Score in April 2026 ??
What was UAD's A.I Rankiteo Cyber Score in March 2026 ??
What was UAD's A.I Rankiteo Cyber Score in February 2026 ??
What was UAD's A.I Rankiteo Cyber Score in January 2026 ??
What was UAD's A.I Rankiteo Cyber Score in December 2025 ??
What was UAD's A.I Rankiteo Cyber Score in November 2025 ??
What was UAD's A.I Rankiteo Cyber Score in October 2025 ??
What is the average per-incident point impact on UAD's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with UAD ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view UAD's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?