U.S. Cyber Command is the United States military command responsible for conducting cyber operations in support of national defense and military objectives. In the available reporting, it is identified as participating alongside other U.S. military and interagency elements in a 2026 operation against Venezuela. The reporting links the command to operational support effects during that campaign, while claims that it directly caused a major power outage in Caracas remain unconfirmed. The same reporting also references allegations of prior cyber activity affecting Venezuelan oil and gas infrastructure that observers characterized as consistent with Cyber Command’s mission set, but attribution and operational details are not established at high confidence. Based on the supplied facts, U.S. Cyber Command should be understood here as a state military cyber organization associated with offensive cyber support to broader military operations, including potential disruption of critical infrastructure, rather than as a criminal or ransomware actor.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Sectors the actor has been observed targeting.
Geographies tied to known operations.
Attributed origin per open-source reporting.
2 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
US Cyber Command is involved in offensive cyber operations, including potential sabotage of adversarial infrastructure such as electrical grids and oil and gas sectors, in support of military objectives.
US Cyber Command is involved in offensive cyber operations, including potential sabotage of adversarial infrastructure such as electrical grids and oil and gas sectors, in support of military objectives.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.