← All talks

Alexander - Digital front of military operations! What is it?!

BSides Ukraine · 202020:5722 viewsPublished 2020-12Watch on YouTube ↗
Tags
About this talk
Alexander, a Ukrainian civil servant, examines the evolution of military cyber operations across NATO, Russia, China, Iran, and North Korea. The talk explores how warfare is shifting from kinetic combat to digital space, covering strategic, operational, and tactical levels of cyber warfare, planning methodologies, and real-world case studies from conflicts including Ukraine and Azerbaijan.
Show transcript [en]

Hello everyone, dear viewers and listeners. My name is Alexander. I would like to thank the organizers of the B-Sides conference, who also offered me to take part as a speaker. For some time I was thinking about what topic to talk about, what material to make, and I decided to tell you partly the topic that concerns me, because I am a civil servant. And how cyber operations are conducted in the leading military countries and what they are like. The topic of my interview is cyber career generals. Today I will tell you about the pre-competition formation of the "Operation" because at the same time we understand that The military front is more and more moving towards digital space.

We are moving from typical kinetic combat to countering in digital space, including in the military sphere. I would also like to tell you about the types of military cyber operations today. and tell us more about their planning and implementation. What is the essence of what they are doing? Together with you, we will talk about the consequences of such operations and what awaits us in the future. It will be a philosophical discussion. So, let's go. The premise of creating a separate type of operation as a cybernetic operation was the development of the so-called non-traditional methods of conducting war or hybrid war, as it is now called, it is Unconventional Warfare. Such determination is also described in strategic documents and in

the instructions in Western countries. Accordingly, the traditional methods of war are composed of many components, not only military, but also such components as cybernetic components and information and psychological operations. The non-traditional war consists of components such as: kinetic and direct combat actions, information and psychological operations, and cyber operations. In my answer, I will not talk about the topics such as: In cooperation with other departmental areas, I am only telling about military actions carried out by the military according to their regulatory documents. They do not involve the use of any civil components or other departmental components. The goals of the nutrition methods of war are: destroying the enemy with the methods of kinetic operations, demotivating the enemy with the help of information and

psychological operations, directly influencing the combat capability, moral readiness of the enemy to resist, to act, influence on trust in their military-political leadership, and so on. As we can see, cyber operations are aimed at destroying the communication networks and all other components to reduce the effectiveness of its actions. And disinformation is also a component and generally military operations. It is often carried out during planning and so on. Let's move on to cyber operations. All military operations, regardless of their type, for example, military, air, land or special operations, It is divided into three types of levels: strategic, operational and tactical operations. Accordingly, the strategic ones are carried out at the international level, with the influence of the use of numerous components, resources, special services

and others. We will talk about it little today, we will talk more I would like to talk about tactical and operational level of cyber operations. Operational level is carried out during the implementation of military operations, planning and use. An example of this is the operational level, which is like our zone of operation of the United Forces. This is a classic example of operations. Cybernetic operations can also be carried out at this level. And the tactical level is operations at the level of one unit of different numbers, which can directly perform this direct task. And, in the security community, the security actions can also be paralleled with the offensive operations and the operations to protect their own objects. On the

other hand, the protection of their own objects is also an important component. Today I would like to tell you about the upcoming cyber operations. Until 2016, no country or any alliance in military formation has declared the upcoming cyber operations. They declared only the so-called operations of cyber protection and support of infrastructure objects and in general information cybersecurity issues. As for the upcoming ones, they have already appeared after the loud incidents. When the military planners understood that it was necessary to work on the advance, as in the strategies, whoever starts first during the attack, always wins. And building only the principle of defense, we lose the initiative, as in every military. The commander or leader loses the initiative, so now there is

an understanding that we are approaching the upcoming cyber operations. The directives of the CINCO, as I understand, state that military cyber operations are aimed at directly influencing military components of the War Convention of Differences.

the influence on civilian population, on civilian or critical infrastructure. I think that there are consequences for this, violations of the conditions of war. And I will tell you this information. Does NATO Alliance adopt such principles in its operations? Accordingly, other military formations such countries as the Russian Federation, China, Iran, North Korea, they have a slightly different strategy, but we will talk about it a little later. Now let's move on to the direct offensive operations. I will not reveal any so-called defensive operations to you. News or insights, basically all those that we use in the cyber community of each of the aspects, that is, accordingly, the construction of security policies, protocols, as well as technical protection of various Internet resources, there is something unique, I can't

tell you, because it's all a classic of political protection of your own resources. As for the upcoming operations, we will look at the approach in more detail on this slide. We see the national and strategic level of operation planning. This is when, for example, NATO alliance gives permission to conduct cyber operations. Then coordinates all this, gives tasks control and execution of the Kubernetes operation CyberMissionForces, as you can see, such a component. But in order to directly execute the task on the target, as we see, the orange cloud on the diagram and get the local effect, you develop the entire planning for the operation. And it is used, as we see, by a lot of components.

It is a unit that delivers various equipment, a unit that develops special equipment and physical or other units that accompany or help your teams to perform operations or solve tasks. They all work synchronized according to one plan and coordination. The units of electronic-radio combat are also actively used for effect detection. The difference between a classic cyber attack and a it is possible to use physical components to directly influence objects from which the air is breathed. For example, if we destroy a system or element in the connection that is in contact with the world, we have the means for this, or the means of radio-electronic reconnaissance, or the detection of the final, or the replacement we can

use them, and the effectiveness of these operations is much higher. In the complex, the use of electronic warfare, electronic intelligence, and the sub-sections of cybernetic operations that carry out and the following defects are the possible development and the effect. Why are such cybernetic operations carried out? As I said, these are the four main directions of any kind of development. military operations, if we can get some specific element into the system or disrupt the system, our approach will be less effective. Or disinform it through channels of personal contact, or then use their information for demotivation or conducting psychological operations.

What are the consequences of cyber operations? The information I told you is also declared by the Alliance, but as I said, the principles are not to prevent civilian population from being affected. Unfortunately, we notice that not all countries the rules of war are being followed, including in the game space. In our country, we see the use of Islamic defences. We can say with confidence, and there are many examples of this, and investigations of the risks of accidents, that the Russian Federation is conducting military cybernetic operations, as well as in the past, we see the implementation of cybernetic operations in Russia, when the system of communication was removed from the control, as well as State structures websites, websites of mass media

to get information space advantage and to carry out information and psychological operations in the future. Iran is also an example. You can see the main We conducted cyber operations successfully or not, constantly engaging with others. And, as I said, a conflict in Azerbaijan. We also conducted cyber operations from Armenia and Azerbaijan. But I can also say that the Russian Federation also conducted and put efforts into this for their own interests. The results of such cybernetics are violation of critical structure objects, influence on military-political leadership of the enemy, influence on elections, as we can see. This is an example of cybernetics of the level On the operational level, if you have colleagues, soldiers who live near the operation zone where the joint forces

operation is carried out in our country, we can also note numerous attempts in the zone to conduct defences, as well as violation of the normal operation of communication means because in this region, the electronic fighting means are actively used. We are interested in what means they use to provide physical support for any device that performs electromagnetic radiation. So, they work at this level. Also, on the local level, on the tactical, on the operational level, operations with disarmament are carried out. Usually, operations with disarmament of communication tools, units or external units that are critical and important for the enemy or someone else. I also want to tell you about I have already said that the resistance is moving to the digital front. It

is not for me to say whether it is good or bad, but it is in the presence and we are also forced to resist modern challenges. Now, after the decision has been made to develop algorithms, to conduct computer operations, to develop principles, methods, and technical solutions, the decision-making systems for conducting operations are being built, as well as the efficient monitoring system, of machine learning and artificial intelligence to predict and prevent the implementation of such operations and to minimize the probability of such operations. I have finished my note on this topic. I want to wish everyone not to get sick now, to filter your information space from various news and always develop. Thank you for your attention.

[ feedback ]