美国国防物资局(DeCA)运营的军事基地军需品商店在8月26-27日期间遭遇大规模冷冻系统故障,至少6个基地受到影响1。根据官方确认,受影响基地包括Fort Huachuca、F.E. Warren AFB、Fort Irwin、Columbus AFB、Travis AFB、NAS Lemoore和Dyess AFB1。Fort Huachuca基地官方声明指出,电源未曾中断,冷冻柜却在此期间进入了主动除霜模式,导致储存的食物遭到加热1。
多项证据暗示这起事件可能涉及网络攻击。根据DeCA的工程文件,冷冻设备的除霜功能由远程监控控制系统(RMCS)管理1。安全研究机构Claroty Team82于8月9日公开发布了对Danfoss AK-SM 800A和Copeland XWEB Pro等商业冷冻控制器的漏洞研究,表明这些设备可被远程操控1。NSA于8月19日发出警告,指网络攻击者正对美国工业控制器进行"有针对性的侦察和能力开发"1。此外,美国司法部和FBI于8月26日宣布查获中国国家支持的黑客组织QTFY的基础设施,该组织曾利用物联网设备进行侦察活动1。
五角大楼在8月29日的声明中承认国防部已注意到DeCA多家店铺存在"可能的冷冻系统中断",但未披露具体原因或确认该事件是否与网络攻击相关1。
Freezing systems at military commissaries operated by the Defense Commissary Agency (DeCA) failed simultaneously across at least six U.S. military bases on August 26–27, 2026, with all affected units entering active defrost mode despite the absence of power outages 1. The impacted installations included Fort Huachuca, F.E. Warren Air Force Base, Fort Irwin, Columbus Air Force Base, Travis Air Force Base, Naval Air Station Lemoore, and Dyess Air Force Base 1. Fort Huachuca officials confirmed in a statement that "power was not interrupted," yet the freezers activated defrost mode, causing stored food to be heated 1.
The simultaneous nature of the malfunction has raised suspicion of a coordinated cyber incident. DeCA engineering documentation explicitly states that defrost operations are controlled through a remote monitoring and control system (RMCS) 1. This technical detail aligns with vulnerability disclosures published on August 9, 2026, by Claroty Team82, which revealed security flaws in commercial freezer controllers including the Danfoss AK-SM 800A and Copeland XWEB Pro that could enable remote manipulation of refrigeration equipment 1. The timing coincides with a broader warning issued by the National Security Agency on August 19, 2026, alerting that cyber attackers were conducting "targeted reconnaissance and capability development" against U.S. industrial control systems 1. Additionally, on August 26, 2026—the same day the freezer failures occurred—the U.S. Department of Justice and FBI announced the seizure of infrastructure belonging to QTFY, a Chinese state-sponsored hacking group known for conducting reconnaissance using Internet of Things devices 1.
The Pentagon acknowledged the incidents on August 29, 2026, stating that the Department of Defense was aware of "potential freezer system disruptions" affecting multiple DeCA locations but did not disclose the underlying cause or whether the failures were related to the disclosed vulnerabilities and threat activity 1.
评论
还没有评论,欢迎留下第一条。