In 12 Minutes, All Communications Nationally is Gone

It was a very real condition until just hours ago where the United States Secret Service found the threat. W can only hope it has been neutralized and there is no more threat…but read on…

After checking several sources for as much complete information, below are some terrifying details. There are likely more to be revealed in coming days as the investigation continues.

Per the Secret Service website:


NEW YORK – The U.S. Secret Service dismantled a network of electronic devices located throughout the New York tristate area that were used to conduct multiple telecommunications-related threats directed towards senior U.S. government officials, which represented an imminent threat to the agency’s protective operations.

This protective intelligence investigation led to the discovery of more than 300 co-located SIM servers and 100,000 SIM cards across multiple sites.

In addition to carrying out anonymous telephonic threats, these devices could be used to conduct a wide range of telecommunications attacks. This includes disabling cell phone towers, enabling denial of services attacks and facilitating anonymous, encrypted communication between potential threat actors and criminal enterprises.

While forensic examination of these devices is ongoing, early analysis indicates cellular communications between nation-state threat actors and individuals that are known to federal law enforcement.

“The potential for disruption to our country’s telecommunications posed by this network of devices cannot be overstated,” said U.S. Secret Service Director Sean Curran. “The U.S. Secret Service’s protective mission is all about prevention, and this investigation makes it clear to potential bad actors that imminent threats to our protectees will be immediately investigated, tracked down and dismantled.”

These devices were concentrated within 35 miles of the global meeting of the United Nations General Assembly now underway in New York City. Given the timing, location and potential for significant disruption to New York telecommunications posed by these devices, the agency moved quickly to disrupt this network. The U.S. Secret Service’s Advanced Threat Interdiction Unit, a new section of the agency dedicated to disrupting the most significant and imminent threats to our protectees, is conducting this investigation. This investigation is currently ongoing.

The Department of Homeland Security’s Homeland Security Investigations, the Department of Justice, the Office of the Director of National Intelligence and the NYPD, as well as other state and local law enforcement partners, provided valuable technical advice and assistance in support of this investigation.

This is an ongoing investigation.

***

The BBC in part also adds this:

The devices were seized from SIM farms at abandoned apartment buildings across more than five sites. Officials did not specify the locations.

The discovery followed an investigation into anonymous “telephonic threats” directed at three US government officials this spring, unnamed officials told the New York Times.

One of the officials works in the Secret Service and the other two work at the White House, according to the newspaper.

Investigators also told CBS News they found 80g of cocaine, illegal firearms, computers and phones.

***

CBS includes in part:Telephonic threats to multiple senior U.S. officials this past spring – including multiple people protected by the Secret Service – first triggered the investigation, but officials say the network was seized within the last three weeks.

Still, another official added that “it would be unwise to assume” there aren’t other such networks in the U.S.

The investigation remains ongoing, according to the U.S. Secret Service. There have been no arrests yet, but officials said, “there could be arrests down the road,” adding that “from an operational perspective, we want those behind the network to know that the Secret Service is aware and that we’re kind of coming for them.”

This photo provided by the U.S. Secret Service, in New York, Monday, Sept. 22, 2025, shows part of a wall of SIM boxes that were seized by the agency. (U.S. Secret Service via AP)

This photo provided by the U.S. Secret Service, in New York, Monday, Sept. 22, 2025, shows part of a wall of SIM boxes that were seized by the agency. (U.S. Secret Service via AP)

Then from the Associated Press in part:

The operation had the capability of sending up to 30 million text messages a minute, McCool said.

“The U.S. Secret Service’s protective mission is all about prevention, and this investigation makes it clear to potential bad actors that imminent threats to our protectees will be immediately investigated, tracked down and dismantled,” the agency’s director, Sean Curran, said in a statement.

Officials also warned of the havoc the network could have caused if left intact. McCool compared the potential impact to the cellular blackouts that followed the Sept. 11 attacks and the Boston Marathon bombing, when networks collapsed under strain. In this case, he said, attackers would have been able to force that kind of shutdown at a time of their choosing.

U.S. Naval Operations in the Caribbean VS. Maduro VS China

There are nine naval assets in the Caribbean due to Venezuela and Nicolas Maduro and his position as a drug king pin. the assets include destroyers, amphibious assault ships, reconnaissance, fighter aircraft, a submarine and drones.

Newsweek has a great map of the deployments and ship descriptions. Included in the Newsweek piece is the following:

The deployment reflects the Trump administration’s assertive approach to countering drug trafficking while signaling pressure on the Venezuelan government. Late on Tuesday, U.S. forces in the region launched a missile strike that destroyed a suspected drug boat linked to Venezuela, killing those on board, Trump said on his Truth Social platform.

By positioning advanced warships and long-range aircraft near Venezuelan waters, Washington is seeking to demonstrate both tactical capability and political resolve. In response, Venezuela is mobilizing troops and military assets, raising the prospect of a direct standoff in the southern Caribbean.

What is likely not revealed by these operations in the Caribbean is the matter of China. China has moved into the region in a huge force and very few are even aware of this threat. How so you ask?

In part: By 2022, ten countries had already joined Beijing’s so-called Belt and Road Initiative: Cuba, Suriname, Guyana, Trinidad and Tobago, Grenada, Barbados, Dominica, Antigua and Barbuda, the Dominican Republic, and Jamaica

China’s growing influence in Cuba and the broader Caribbean region has raised concerns among U.S. experts, who warn that Beijing’s expanding economic and military presence could pose a strategic threat to the United States.

China has significantly expanded its influence in the region through economic investments, diplomatic ties, and military cooperation, particularly with authoritarian regimes like Cuba. Experts warn that these efforts are part of a broader strategy to turn the Caribbean into a “Chinese lake,” according to Newsweek report published on Sunday.

According to World Trade Organization data, Chinese manufacturing exports surged to $1.81 trillion in 2023, a 30-fold increase from 2002, while the U.S. global trade deficit exceeded $1.2 trillion. Chinese trade with the Caribbean skyrocketed from $1 billion in 2002 to $8 billion in 2019, including $6.1 billion in exports and $1.9 billion in imports.

China’s Deepening Ties With Cuba

Cuba has been one of China’s most loyal allies in the region for decades, with strong economic and military cooperation. A significant uptick in this relationship was observed in 2021, following Cuba’s July 11 (11J) protests, when Chinese paramilitary forces trained Cuban elite security units responsible for suppressing dissent. The Brigada Especial Nacional (BEN), a unit under Cuba’s Ministry of the Interior, reportedly received tactical training from China’s People’s Armed Police (PAP), a paramilitary force specializing in riot control and counterterrorism.

Sources told ADN Cuba that PAP training in Cuba began approximately six years before the 2021 protests, focusing on sniper tactics, intervention strategies, and specialized training for elite Cuban security forces. This collaboration underscores China’s role in bolstering the Cuban regime’s ability to suppress political opposition.

Beyond infrastructure projects and military cooperation, China is also strengthening its diplomatic and cultural footprint in communist Cuba. In May 2024, Beijing and Havana resumed direct flights between the two countries. The Cuban regime has also introduced visa exemptions for Chinese citizens with ordinary passports, making travel between both nations easier. More details here.

20th anniv. of China-Bahamas ties marked in Beijing - Xinhua | English ...

*** FNC has called on experts to describe the Chinese threat so close to to the U.S. coastline.

China is steadily expanding in the Bahamas through projects that blur economic development and geopolitical aims, an expert warned.

“The People’s Republic of China has been making diplomatic, economic and even military and quasi-military inroads into the Caribbean, South and Central America for the past couple of decades,” retired Rear Adm. Peter Brown, former Homeland Security advisor to President Donald Trump, told Fox News Digital.

Brown pointed to the rise in dual-use infrastructure projects along the Bahamas coastline, which is located just 50 miles off the coast of Florida.

“It doesn’t take a lot of imagination for the People’s Republic of China to use its commercial footprint in the Bahamas to monitor, exploit and perhaps even do worse to [the] U.S.,” he said.

Pointing to the Chinese-controlled British Colonial Hotel in Nassau, Bahamas, Brown said that its location directly across from the U.S. Embassy could give way to intelligence gathering on U.S. personnel.

“It doesn’t take a lot of imagination to think that additional electronics were put in there with the purpose and the task of keeping an eye not only on the U.S. Embassy itself, but also the U.S. Embassy visitors,” he said.

The hotel is owned by a Chinese company, Chow Tai Fook Enterprises, which has raised geopolitical concerns given its location. Fox News Digital has reached out to the British Colonial Hotel for comment.

China has invested heavily in the Bahamas through a range of additional high-profile projects, including a $40 million grant for a national stadium, a $3 billion mega-port in Freeport, and $40 million for the North Abaco Port and Little Abaco Bridge.

Additionally, China EXIM Bank provided over $54 million in loans to construct a four-lane highway and nearly $3 billion to finance the development of the Baha Mar Resort.

*** You can bet our high tech naval assets are picking up information and reporting back to the national security council and Secretary of State Marco Rubio…it is no wonder he has spent a good deal of time in the region.

Should DOGE include the E for Espionage Also?

ProPublica is not one of my ‘go-to’ sites but they get a hat tip for this one.… the enemy foreign and domestic has burrowed in…anyone really paying enough attention? One could argue CISA has failed as has  the NSA and Microsoft…..

Microsoft is using engineers in China to help maintain the Defense Department’s computer systems — with minimal supervision by U.S. personnel — leaving some of the nation’s most sensitive data vulnerable to hacking from its leading cyber adversary, a ProPublica investigation has found.

The arrangement, which was critical to Microsoft winning the federal government’s cloud computing business a decade ago, relies on U.S. citizens with security clearances to oversee the work and serve as a barrier against espionage and sabotage.

But these workers, known as “digital escorts,” often lack the technical expertise to police foreign engineers with far more advanced skills, ProPublica found. Some are former military personnel with little coding experience who are paid barely more than minimum wage for the work.

“We’re trusting that what they’re doing isn’t malicious, but we really can’t tell,” said one current escort who agreed to speak on condition of anonymity, fearing professional repercussions.

The system has been in place for nearly a decade, though its existence is being reported publicly here for the first time.

Microsoft told ProPublica that it has disclosed details about the escort model to the federal government. But former government officials said in interviews that they had never heard of digital escorts. The program appears to be so low-profile that even the Defense Department’s IT agency had difficulty finding someone familiar with it. “Literally no one seems to know anything about this, so I don’t know where to go from here,” said Deven King, spokesperson for the Defense Information Systems Agency.Biden review board blames Microsoft for China hack that targeted US ... source

National security and cybersecurity experts contacted by ProPublica were also surprised to learn that such an arrangement was in place, especially at a time when the U.S. intelligence community and leading members of Congress and the Trump administration view China’s digital prowess as a top threat to the country.

The Office of the Director of National Intelligence has called China the “most active and persistent cyber threat to U.S. Government, private-sector, and critical infrastructure networks.” One of the most prominent examples of that threat came in 2023, when Chinese hackers infiltrated the cloud-based mailboxes of senior U.S. government officials, stealing data and emails from the commerce secretary, the U.S. ambassador to China and others working on national security matters. The intruders downloaded about 60,000 emails from the State Department alone.

With President Donald Trump and his allies concerned about spying, the State Department announced plans in May to “aggressively revoke visas for Chinese students” — a pledge that the president seems to have walked back. The administration is also trying to arrange the sale of the popular social media platform TikTok, which is owned by a Chinese company that some lawmakers believe could hand over sensitive U.S. user data to Beijing and fuel misinformation with its content recommendations. But experts told ProPublica that digital escorting poses a far greater threat to national security than either of those issues and is a natural opportunity for spies.

“If I were an operative, I would look at that as an avenue for extremely valuable access. We need to be very concerned about that,” said Harry Coker, who was a senior executive at the CIA and the National Security Agency. Coker, who also was national cyber director during the Biden administration, added that he and his former intelligence community colleagues “would love to have had access like that.”

It is difficult to know whether engineers overseen by digital escorts have ever carried out a cyberattack against the U.S. government. But Coker wondered whether it “could be part of an explanation for a lot of the challenges we have faced over the years.”

Microsoft uses the escort system to handle the government’s most sensitive information that falls below “classified.” According to the government, this “high impact level” category includes “data that involves the protection of life and financial ruin.” The “loss of confidentiality, integrity, or availability” of this information “could be expected to have a severe or catastrophic adverse effect” on operations, assets and individuals, the government has said. In the Defense Department, the data is categorized as “Impact Level” 4 and 5 and includes materials that directly support military operations.

John Sherman, who was chief information officer for the Department of Defense during the Biden administration, said he was surprised and concerned to learn of ProPublica’s findings. “I probably should have known about this,” he said. He told the news organization that the situation warrants a “thorough review by DISA, Cyber Command and other stakeholders that are involved in this.”

In an emailed statement, the Defense Information Systems Agency said that cloud service providers “are required to establish and maintain controls for vetting and using qualified specialists,” but the agency did not respond to ProPublica’s questions regarding the digital escorts’ qualifications.

It’s unclear whether other cloud providers to the federal government use digital escorts as part of their tech support. Amazon Web Services and Google Cloud declined to comment on the record for this article. Oracle did not respond to requests for comment.

Microsoft declined to make executives available for interviews for this article. In response to emailed questions, the company provided a statement saying its personnel and contractors operate in a manner “consistent with US Government requirements and processes.”

Global workers “have no direct access to customer data or customer systems,” the statement said. Escorts “with the appropriate clearances and training provide direct support. These personnel are provided specific training on protecting sensitive data, preventing harm, and use of the specific commands/controls within the environment.” In addition, Microsoft said it has an internal review process known as “Lockbox” to “make sure the request is deemed safe or has any cause for concern.” A company spokesperson declined to provide specifics about how it works but said it’s built into the system and involves review by a Microsoft employee in the U.S.

Over the years, various people involved in the work, including a Microsoft cybersecurity leader, warned the company that the arrangement is inherently risky, those people told ProPublica. Despite the presence of an escort, foreign engineers are privy to granular details about the federal cloud — the kind of information hackers could exploit. Moreover, the U.S. escorts overseeing these workers are ill equipped to spot suspicious activity, two of the people said.

Even those who helped develop the escort system acknowledge the people doing the work may not be able to detect problems.

“If someone ran a script called ‘fix_servers.sh’ but it actually did something malicious then [escorts] would have no idea,” Matthew Erickson, a former Microsoft engineer who worked on the escort system, told ProPublica in an email. That said, he maintained that the “scope of systems they could disrupt” is limited.

Yes, China is Surrounding the S. China Sea, but what about Florida?

The two faced dragon….tie to really recalibrate the relationship between the United States and China AGAIN….Previously n this website, I have discussed not only by a post but several times on radio about how the former intelligence/snooping base owned by Russia in Cuba known as the Lourdes SIGINT station was sold to China….no one in media or the national security realm seems to give it much attention…but now…we have an additional problem with China and that is the Bahamas.

How about the largest Chinese embassy in the world with hundreds of Chinese intelligence officers deployed there…..Embassy of China in Nassau in Nassau, Bahamas (Google Maps)

In part from FNC:

“The People’s Republic of China has been making diplomatic, economic and even military and quasi-military inroads into the Caribbean, South and Central America for the past couple of decades,” retired Rear Adm. Peter Brown, former Homeland Security advisor to President Donald Trump, told Fox News Digital.

Brown pointed to the rise in dual-use infrastructure projects along the Bahamas coastline, which is located just 50 miles off the coast of Florida.

“It doesn’t take a lot of imagination for the People’s Republic of China to use its commercial footprint in the Bahamas to monitor, exploit and perhaps even do worse to [the] U.S.,” he said. Pointing to the Chinese-controlled British Colonial Hotel in Nassau, Bahamas, Brown said that its location directly across from the U.S. Embassy could give way to intelligence gathering on U.S. personnel.

The hotel is owned by a Chinese company, Chow Tai Fook Enterprises, which has raised geopolitical concerns given its location. Fox News Digital has reached out to the British Colonial Hotel for comment.

China has invested heavily in the Bahamas through a range of additional high-profile projects, including a $40 million grant for a national stadium, a $3 billion mega-port in Freeport, and $40 million for the North Abaco Port and Little Abaco Bridge.

In 2019, now-Secretary of State Marco Rubio warned in a Miami Herald op-ed that the devastation caused by the natural disaster could create an opening for the People’s Republic of China to use aid as a Trojan horse to gain a foothold near American shores.

“By targeting the Bahamian government in this period of crisis, Beijing would be making the same opportunistic play to access critical foreign infrastructure,” Rubio wrote in 2019. “But in this case, the national security threat is especially perilous, as it would give China a foothold just 50 miles from the coast of Florida.”

***

How about another look at things in the Caribbean…Chinese expansion

Chinese Expansion in the Caribbean (Extra) - Virtual Mirage

China’s Influence in the Caribbean:

China is a member of both the Inter-American Development Bank (IDB) and the Caribbean Development Bank (CDB) and an observer at the Organization of American States (OAS). Alongside Italy and Germany, China is the third largest shareholder at the CDB with 5.6% of overall shares, exponentially higher than the majority of Caribbean countries.

The People’s Republic of China’s (PRC) engagement in the Caribbean has largely focused on investments in infrastructure and developing trade relationships. As of 2022, ten Caribbean countries have signed up to Belt and Road (BRI) – Cuba, Jamaica, Dominican Republic, Antigua & Barbuda, Dominica, Barbados, Grenada, Trinidad & Tobago, Guyana, and Suriname.

The PRC is working towards diminishing the region’s ties to Taiwan as the region contains the largest bulk of Taiwan’s diplomatic allies. Today, St. Lucia, St. Vincent and the Grenadines, St. Kitts and Nevis, Haiti, and Belize remain the only Caribbean nations that recognize Taiwan.

China’s Trade and Economic Investment in the Caribbean

While the Caribbean’s trade with China has grown at a slower pace than overall trade with the region, it increased from $1 billion in 2002 to $8 billion in 2019, with an estimated $6.1 billion in Chinese exports and $1.9 billion in imports.

China is a major trading partner of Cuba’s and Chinese businesses are involved in the Cuba’s telecommunications, tourism, mining, and energy sectors.

Cuba is highly dependent on China and ongoing economic challenges resulted in the reconstructing of an estimated $4 billion in debt to China in 2011 and another restructuring in 2015. For more reading click here.

The U.S. Must Join China’s Belt and Road In Developing The Caribbean ...

The U.S. Must Join China’s Belt and Road In Developing The Caribbean ...

Iran’s Mint Sandstorm, are you a Victim?

So, a senior official in the Trump campaign was the victim of an email phishing trick and it worked….countless emails were hacked/stolen and began to be distributed. Microsoft has confirmed this and several Iranian cyber signatures from previous hack are providing some pretty good attributions to Iran as the hackers. But no worries, the FBI, likely the Pittsburgh office as agreed t investigate.

Just last night after some recent promoting the SPACES event hosted by Donald Trump and Elon Musk was delayed for an estimated 45 minutes due to a DDOS hit. Again, that too had the signature tactics of Iran. Mint Sandstorm Campaign's Targeted Cyber Attacks on Middle Eastern Experts source

Per CSOOnline in part:

The hackers allegedly obtained sensitive data as a result of a successful phishing campaign against Trump officials. Cheung cited the Microsoft report which said in June 2024, Mint Sandstorm, a group run by the Islamic Revolutionary Guards Corp (IRGC) intelligence unit, sent a spear-phishing email to a high-ranking official of a presidential campaign from a compromised email account of a former senior advisor.

“On Friday, a new report from Microsoft found that Iranian hackers broke into the account of a ‘high ranking official’ on the US presidential campaign in June 2024, which coincides with the close timing of President Trump’s selection of a vice-presidential nominee,” Cheung added. More here.

In part:

Threat actor Mint Sandstorm, believed to be linked to Iran, has been observed using bespoke phishing lures to attack high-profile targets while leveraging a new custom backdoor called MediaPI.

In a Jan. 17 blog post, Microsoft Threat Intelligence said the attacks were on individuals working at a high level on Middle Eastern affairs at universities and research organizations in Belgium, France, Gaza, Israel, the United Kingdom, and the United States.

The Microsoft researchers said Mint Sandstorm — also known as APT35 and APT42 — used legitimate, yet compromised accounts to send phishing lures. The researchers said Mint Sandstorm continues to improve and modify the tooling used in targets’ environments, activity that might help the group persist in a compromised environment and better evade detection.

“Based on the identities of the targets observed in this campaign and the use of lures related to the Israel-Hamas war, it’s possible this campaign is an attempt to gather perspectives on events related to the war from individuals across the ideological spectrum,” wrote the researchers.

Mint Sandstorm operates as a state-sponsored actor from Iran and, as a result, serves government agency and potential military objectives, explained Balazs Greksza, threat response lead at Ontinue. Greksza said the group employs tactics such as watering hole attacks and phishing emails, to target governments, NGOs, private entities, and academia for espionage. They often pose as journalists, government officials, or academics on social media and their primary objective is to get hold of sensitive information.

“Actors like APT35 have primary goals around geopolitics, national security, counter-intelligence,” said Greksza. “As openly shared by different intelligence agencies in the past, intelligence goals may shift rapidly based on the needs of national interests, current political and military leadership and their decision and intelligence needs.”

Ngoc Bui, cybersecurity expert at Menlo Security, added that the deployment of the custom backdoor MediaPI, along with the use of other tools like MischiefTut, indicates a shift in the operational tactics of Mint Sandstorm, marking an evolution in their cyber espionage capabilities.

***

This all begs the question, just exactly what is being done to not only protect a political campaign and election, but every website or American out there from Iran, Russia, China or North Korea and their team of hackers?

CSOOnline goes on to read –>

Iran, found extremely capable in the past of conducting cyberattacks against its foes in the Middle East, earlier in 2022 had threatened to avenge the killing of General Qassem Soleimani by the United States in a drone strike ordered by the Trump administration.

During this time, among many other efforts, Mandiant reported that the news site EvenPolitics, a Tehran-controlled disinformation site, had published articles covering the 2022 US midterm elections. An inauthentic amplification network promoting the site was taken down by the X platform that same year, yet EvenPolitics continues to operate, releasing approximately ten articles per week.

Microsoft, in its report, added that Iranian cyber-enabled influence operations “have been a consistent feature of at least the last three US election cycles”.

Iran’s mission to the United Nations, in response to inquiries about the Trump campaign’s allegations, denied any involvement. Speaking to The Associated Press, the mission stated, “We dismiss these reports entirely. The Iranian government has neither the capability nor the intention to interfere in the United States presidential election.”