In this episode of the Shawn Ryan Show, Kevin Mandia discusses the cyber threat landscape facing the United States, detailing how China, Russia, Iran, and North Korea each employ distinct strategies to target American security and economic interests. Mandia shares insights from major incidents including the 2013 APT-1 report that exposed Chinese military hackers, the SolarWinds supply chain attack, and the Colonial Pipeline ransomware attack. He explains how these events shaped public understanding of nation-state cyber operations and established new standards for attribution and transparency.
The conversation explores the role of artificial intelligence in transforming both cyber offense and defense, including Mandia's work developing autonomous security systems. He also addresses critical vulnerabilities in American infrastructure, the potential for cascading failures across interconnected systems, and the weaponization of information warfare through social media manipulation and deepfakes. The episode examines how adversaries exploit America's open society to amplify discord and undermine public trust without conventional military action.

Sign up for Shortform to access the whole episode summary along with additional materials like counterarguments and context.
Nation-states including China, Russia, Iran, and North Korea employ distinct cyber strategies that pose escalating threats to U.S. security, intellectual property, and economic interests.
China's cyber campaign focuses relentlessly on intellectual property theft to achieve military and economic dominance. Kevin Mandia describes how the 2013 APT-1 report publicly exposed PLA Unit 61398, a military outfit in Shanghai responsible for cyber-espionage against 141 major U.S. organizations across 20 industries. The scale of IP theft is staggering, with estimates placing the economic impact at $300 billion annually, affecting over a million American jobs.
Chinese hackers are methodical once inside networks, systematically traversing file structures and stealing entire sets of files. Mandia notes this exhaustive approach reflects China's deployment of ample human resources, with operators spending hours scrutinizing each machine. Unlike cybercriminals, Chinese state-sponsored groups avoid extortion or public leaks, pursuing long-term strategic advantage rather than direct financial gain. After the APT-1 report's release, observed Chinese compromises dropped significantly, demonstrating that public attribution can act as a deterrent.
Russia's cyber posture blends elite state espionage with state-tolerated criminal activity. The SVR, Russia's foreign intelligence service, excels in precision and stealth, taking minimal data with careful counter-forensics. Unlike China's indiscriminate harvesting, Russian espionage uses a "sniper shot" approach, making intrusions harder to detect.
Russian criminal gangs conduct ransomware and extortion with state tolerance, monetizing breaches and relaying billions in Bitcoin to organized crime annually. The SolarWinds hack exemplified Russian espionage targeting U.S. government agencies and infrastructure. Mandia notes that since around 2015, Russian cyber actors have become less stealthy, likely due to overextension during periods of geopolitical tension.
Iranian cyber actors stand apart for their preference for destruction over theft. They typically breach networks using credentials purchased from the dark web rather than developing zero-day exploits. Once inside, Iranian actors prioritize deleting data and disrupting operations. Amid geopolitical crises, Iranian cyber activity spikes, with the Ministry of Intelligence commissioning automated scanning and intrusion attempts.
North Korea's cyber doctrine is singular: generate revenue to support the regime and weapons development. Government-backed hackers conduct ransomware attacks and steal cryptocurrency, while other teams infiltrate global companies as IT workers, covertly exfiltrating intellectual property. Unlike China and Russia, North Korea focuses on fast, high-volume financial theft rather than long-term espionage.
Major cyber incidents have deeply impacted U.S. national security and set new norms in public attribution and crisis management.
In February 2013, Mandiant released the APT-1 report that publicly attributed extensive cyber espionage to China's PLA Unit 61398. Mandia collaborated with The New York Times to publish the findings, forcing public reckoning with Chinese state-sponsored attacks. Before publication, Mandiant observed up to 70 companies per month being compromised; following the report, that number dropped to zero for several months—an unprecedented demonstration of attribution as deterrent.
Mandiant deployed innovative attribution methods, including using Google Earth to monitor the PLA's building and analyzing Mandarin-language resumes. Their final dataset included 650 forensic indicators, elevating the precision of public attribution in the cybersecurity community.
The SolarWinds attack, uncovered in December 2020, exposed major vulnerabilities in U.S. critical infrastructure. Russian SVR hackers inserted malicious code into SolarWinds' Orion software updates, giving them potential access to 18,042 customer environments. High-value government agencies were breached for over a year before detection.
Mandiant itself discovered it was compromised when its red team tools were stolen. Despite legal counsel hesitating, Mandiant set a new bar for transparency by going public immediately, triggering unprecedented coordination among major security vendors. Mandia described the attack as a "sniper shot"—highly targeted, precision espionage focused on about 50 key entities.
In May 2021, the Colonial Pipeline ransomware attack by the DarkSide criminal group crippled the company responsible for 45% of the U.S. East Coast's fuel supply. The attackers demanded a $4.4 million ransom, leading to a six-day shutdown that caused widespread gas shortages and panic buying, making the real-world impacts of cyberattacks vividly clear.
The emergence of artificial intelligence is transforming the digital landscape. Kevin Mandia describes an environment where AI-driven offense and defense are locked in an escalating technological arms race.
Mandia argues that AI represents the next leap in cyber weapons and essential defense tools. He foresees AI hacking "24–7 with total recall"—constant attempted breaches targeting all devices and networks. Traditional red team engagements requiring days can now be compressed into five to ten minutes through AI. AI can launch 100,000 simultaneous attack vectors, discovering multiple exploit pathways rather than the single path humans find, and it never forgets discovered vulnerabilities.
Following the sale of his company to Google, Mandia created Armadin to pioneer autonomous cyber defense and offense. The company pairs elite red team consultants with AI-native developers, automating hacking processes at nation-state levels. Armadin secured $189.9 million in funding, including investment from the CIA's In-Q-Tel, illustrating unprecedented government support for autonomous offensive and defensive cyber operations.
Armadin's model "pressure-tests" corporate defenses using AI-powered simulated attacks. Companies that withstand Armadin's onslaught earn approval; those that don't are notified to patch weaknesses before real-world attackers exploit them.
Mandia notes that automating discovery and exploitation of vulnerabilities will democratize elite hacking expertise, lowering the technical skill barrier and enabling even small countries and criminal syndicates to mount attacks at the level of top cyber powers. This proliferation of capability will fundamentally alter threats to national and international security.
Mandia cautions that offense will outpace defense for the next one to two years, giving attackers a significant advantage. In the longer term, he believes AI will tip the balance in favor of defenders, emphasizing the importance of securing software at creation—using AI to test and fix code before release.
Kevin Mandia and Shawn Ryan discuss profound vulnerabilities in American critical infrastructure, emphasizing how interconnected systems are susceptible to cascading failures.
Mandia explains there are two primary attack strategies against utilities. The first is "blunt force trauma," or data deletion, which can easily shut down small municipal utilities with minimal resources. The second involves gaining detailed knowledge of major utility systems to subtly alter operational commands. Small utilities lack resources and would fall to cyber attacks, while larger utilities have capabilities but face cascading load problems if one utility goes down.
Small water treatment facilities are particularly hard to defend—attackers could alter processes, potentially poisoning water supplies. Mandia points out a systemic weakness: most companies maintain a universal administrative account that, if breached, grants attackers access to the entire operation.
Mandia asserts that nearly all Fortune 500 companies would fail to function without the internet. He references the 2003 New York blackout, where sustained grid loss in extreme summer conditions nearly unraveled societal order. A successful attack on critical infrastructure would cripple healthcare, financial transactions, communications, and transportation.
Mandia warns of a scenario where multiple nation-states coordinate simultaneous cyber attacks against foundational sectors, resulting in widespread failures with no central coordination for recovery. He urges critical infrastructure operators to conduct drills simulating rapid shifts to manual operations and advises maintaining basic preparedness: supplies, non-digital communication methods, and cash reserves.
Kevin Mandia details the evolving landscape of information warfare, where adversarial nation-states exploit the openness of American society to amplify discord and erode public trust.
Mandia describes how Russian intelligence leverages platforms like X and Facebook to manipulate public sentiment, not by creating wholly new narratives but by artificially amplifying existing social divisions. Russian actors use fake accounts and coordinated campaigns to push opposing narratives simultaneously, maximizing discord. He recalls that in August 2015, his intelligence team traced Russian actors actively influencing Americans on social media, well in advance of the 2016 presidential election.
The strategic use of amplification creates the illusion of large-scale consensus where little exists. What might be only 3% of Americans holding an extreme view can appear as 50% if artificially elevated.
Mandia affirms that the 2016 DNC breach was a watershed moment. Russian military intelligence services hacked Democratic Party servers and released thousands of internal emails, making a leap from espionage purely for intelligence to using stolen data as a weapon to shape politics. The hackers released information in carefully timed waves to maximize political impact, weaponizing authentic communications with undeniable credibility.
Mandia explains that America's commitment to free expression makes it uniquely vulnerable to information warfare. There is often no clear distinction between strong political opinion and deliberate attempts to incite unrest. He contrasts this with authoritarian nations where press and internet freedoms are strictly controlled, making these societies far less susceptible to foreign information operations.
Mandia warns that the future of information warfare includes synthetic media and advanced deepfake technology, making distinguishing reality from fabrication nearly impossible. He projects that political leaders and officials may have fake but forensically convincing communications attributed to them, spreading chaos and undermining legitimacy. Social media algorithms amplify divisive content, benefiting both foreign disinformation and domestic partisan attacks.
Mandia concludes that America's openness enables adversaries to achieve strategic objectives without kinetic attacks. By sowing internal discord and undermining faith in leadership, adversaries can cause Americans to "tear ourselves apart." The most effective offensive strategy is not military attack but cognitive manipulation—setting Americans against one another through sophisticated information and psychological operations.
1-Page Summary
Cyber operations by nation-states pose a complex and escalating threat to U.S. security, intellectual property, and economic interests. Actors including China, Russia, Iran, and North Korea each employ unique strategies and priorities, leveraging the digital domain for espionage, financial gain, and destructive goals.
China’s cyber campaign is defined by its relentless pursuit of intellectual property (IP) with a dual ambition: military and economic dominance. In February 2013, the release of the APT-1 report by Mandiant publicly named PLA Unit 61398—a military outfit operating from a 12-story building in Shanghai’s Pudong district—as the source of cyber-espionage activities against 141 major U.S. organizations across 20 industries. Chinese intrusions targeted not only military networks but also law firms, accounting firms, and any enterprise doing business in China. Stolen assets ranged from technology blueprints and manufacturing processes to business strategies and executive contacts. The scale of IP theft is staggering, with estimates placing the economic impact at $300 billion annually, affecting over a million American jobs.
Kevin Mandia describes how, starting in 2004–2005, China broadly expanded its scope from .mil military domains to companies in the defense industrial base, such as Honeywell, Lockheed Martin, Boeing, Rolls-Royce, UTX, and Raytheon. Chinese hackers infiltrated “heavily attacked” firms—often impossible for companies to withstand over time—as China’s government regarded both economic advantage and military superiority as intertwined. Even universities conducting government research fell victim, facilitated by the presence of Chinese nationals and the low risks of remote, cross-border theft.
Once inside a compromised network, Chinese operators are methodical. Mandia describes how Chinese hackers systematically traverse file structures—alphabetically and directory by directory—compressing and stealing entire sets of files, often grabbing even mundane operating system data. This exhaustive approach reflects China’s deployment of ample human resources, with operators spending hours scrutinizing each machine. Mandiant observed compromises at a rate of 10 to 70 U.S. companies per month, suspecting this was less than 2% of China's true operational reach.
Unlike cybercriminals, Chinese state-sponsored groups avoid extortion, ransomware, or public leaks. Mandia notes that Chinese hackers rarely delete data or destroy systems; he has seen only one operator ever delete logs. Their objective is long-term strategic advantage, not direct financial gain, and their operations are often “polite”—they steal but do not humiliate, extort, or jeopardize business operations with data destruction. This etiquette, while unwritten, is consistently observable, making their actions predictable compared to criminally motivated adversaries.
The exposure of PLA Unit 61398 became public knowledge via the APT-1 report, drawing international attention. Reporters used surveillance and even Google Earth to confirm the organization's Shanghai base, building a compelling narrative that captured broad interest—despite Kevin Mandia’s initial skepticism about public concern for cyber issues. The report had real operational consequences; after its release, the observed rate of Chinese compromises dropped, likely because their infrastructure and tactics were exposed and essentially “burned," forcing them to rebuild their operational capabilities.
Russia’s cyber posture blends elite state espionage with state-tolerated, profit-motivated criminal hacking, creating a two-pronged threat.
The SVR, Russia’s foreign intelligence service, is lauded for precision and stealth. Russian espionage groups, for years, practiced careful counter-forensics, often disappearing when detected. They conducted reconnaissance by taking a directory listing and leaving, only to return days later for specific, targeted data—sometimes as little as 32 files or a month's worth of email. Rarely would they take high-profile targets’ data, instead targeting subordinates. Unlike China’s indiscriminate data harvesting, this “sniper shot” approach minimized exposure and made Russian intrusions much harder to detect and attribute.
Russian cyber operations also encompass criminal activity, mainly ransomware and extortion. Russian criminal gangs operate with state tolerance: profit-motivated compromises monetize intrusions by threatening to leak sensitive information unless ransoms are paid. Billions in Bitcoin are relayed to Russian organized crime annually. Payment often prevents public data release, perpetuating the criminal ecosystem. Russia’s ransomware actors may work government jobs by day and engage in cybercrime by night.
Espionage activities target U.S. government agencies and sensitive infrastructure. The SolarWinds hack, for example, saw Russian groups exfiltrating emails, source code, and details about cybersecurity tools—using keyword searches to pinpoint information, a tactic less commonly observed from China.
Attribution of Russian intrusions is often possible due to discernible “fingerprints,” even if sophisticated. This enables analysts to tie activity to specific Russian units or criminal groups.
Since around 2015, Russian cyber actors have become less stealthy, likely due to overextension and increasing operational tempo during periods of geopolitical tension. The result: more detectable activity and greater incidence of mistakes—departing from their earlier, near-invisible practices.
Iranian cyber actors stand apart for their preference for destruction over theft or extortion.
Nation-State Cyber Threats and Adversaries
Major cyber incidents over the past decade have deeply impacted U.S. national security, critical infrastructure, and industry. Investigations led by cybersecurity firms like Mandiant have driven transparency and set new norms in public attribution, crisis management, and adversary identification.
In February 2013, Mandiant released the APT-1 report that publicly attributed an extensive cyber espionage campaign to China’s PLA Unit 61398, operating from a 12-story building in Shanghai’s Pudong district. This military cyber unit had targeted 141 U.S. companies in 20 industries, marking the first time a Chinese military cyber operation was so thoroughly documented and exposed in public.
Kevin Mandia, Mandiant’s CEO, collaborated with journalists from The New York Times to publish the findings prominently, shifting the cyber threat landscape. Before the report, cyber attribution was often obscured. This disclosure forced public and government reckoning with the reality of Chinese state-sponsored attacks. Mandia explained their intention was to "burn their infrastructure, burn their operation, give our government a tool," allowing independent attribution without direct U.S. governmental accusations.
A key impact was behavioral change: before publication, Mandiant observed up to 70 companies per month being compromised by Chinese actors; following the report, that number dropped to zero for several months—an unprecedented demonstration that public attribution can act as a deterrent to state-sponsored attackers.
Mandiant’s investigation deployed innovative attribution methods, including using Google Earth to monitor the growth of the PLA’s building, analyzing Mandarin-language resumes that revealed military cyber roles, and correlating digital fingerprints across incidents—such as code signatures, attack commands, encryption algorithms, file theft patterns, and target selection. Their final dataset included 650 forensic indicators, elevating the precision of public attribution in the cybersecurity community.
However, after the exposure, China shifted its tactics. By 2020, their operators began using stealthier methods, including multiple zero-day exploits and custom-crafted attacks designed to evade digital forensics—a marked evolution from their previous operational tradecraft.
The SolarWinds supply chain attack, uncovered in December 2020, exposed major vulnerabilities in U.S. critical infrastructure and set a precedent in how the industry coordinates breach response. Russian SVR hackers inserted malicious code into SolarWinds’ Orion software updates, giving them potential access to 18,042 customer environments. High-value government agencies—including the Treasury, State Department, Homeland Security, and the Pentagon—were breached for over a year before the operation was detected.
Mandiant itself (then FireEye) discovered it was compromised, with its prized red team tools stolen, posing a major threat if these were turned against customers. Mandia’s team found the attack vector by noticing irregularities, such as their backup accounts being exploited to steal emails. Immediate internal collaboration and forensic investigation ensued.
Despite legal counsel hesitating against public disclosure, Mandiant set a new bar for breach transparency by going public immediately with the incident—first in the cybersecurity community, then widely. This triggered unprecedented coordination among major security vendors like Microsoft, CrowdStrike, and Palo Alto Networks, who put aside competitive concerns to engineer rapid defenses against misuse of Mandiant’s red team tools.
The SolarWinds attack was described by Mandia as a "sniper shot" rather than a "spray and pray": highly targeted, precision espionage focused on about 50 key government and commercial entities. The response required new levels of industry and government information sharing, breach response, and public communication.
In May 2021, the Colonial Pipeline ransomware attack by the DarkSide criminal group crippled the company responsible for 45% of the U.S. East Coast’s fuel supply. The attackers encrypted corporate systems and demanded a $4.4 million ransom. This led to a six-day shutdown, causing widespread gas shortages and panic buying in the Southeast—making the real-world impacts of cybera ...
Historical Major Cyber Incidents and Investigations
The emergence of artificial intelligence as a formidable player in cyber warfare is transforming the digital landscape. Kevin Mandia, a leading cybersecurity executive, describes an environment where AI-driven offense and defense are locked in an escalating technological arms race with far-reaching implications for national security, criminals, and everyday organizations.
In 2010, Stuxnet’s ability to physically destroy Iran’s nuclear centrifuges signaled the dawn of cyber weapons. Mandia argues that the next leap comes from AI as not only a cyber weapon but also the essential tool for defense. He foresees AI hacking “24–7 with total recall”—constant attempted breaches targeting all devices and networks.
Traditional red team engagements, once requiring days, can now be compressed into minutes through AI. Mandia explains that the process of analyzing and attacking a custom application—a task whose manual execution by two expert humans might take five days—is performed by AI in just five to ten minutes.
AI’s computational speed enables attackers to launch 100,000 separate attack threads simultaneously, discovering many exploit pathways through a network, not just the single point most human experts would identify. Mandia likens this to a “drone swarm” in the cyber domain: defenders might block many, but just one successful attack can breach security.
AI’s “total recall” means it never forgets discovered vulnerabilities. If it found a weakness at Company A, the system will instinctively look for it again later or at other companies, scaling the attack surface across industries. AI systems become more effective over time, applying lessons from every breach to new targets and situations.
Mandia, following the sale of his company to Google, created Armadin to pioneer a new approach in autonomous cyber defense and offense. The company represents a fusion of elite red team consultants with AI-native developers, automating hacking processes at nation-state levels.
Armadin’s core concept is to combine the hacking expertise of Fortune 500 red teamers with developers proficient in creating AI capable of automating their techniques. This “ultimate offense, built by the good guys,” yields an AI system relentlessly probing for vulnerabilities—an autonomous U.S. government cyber weapon designed to challenge and harden defenses.
Armadin secured $189.9 million in funding, including investment from In-Q-Tel, the CIA’s venture arm, illustrating unprecedented government support for autonomous offensive and defensive cyber operations.
Armadin’s model “pressure-tests” corporate defenses using AI-powered simulated attacks. Companies that withstand Armadin’s onslaught earn a de facto seal of approval; those that don’t are notified to patch weaknesses before real-world attackers can exploit them. Mandia views this as key to reducing cyber risk and proactively immunizing networks against sophisticated future threats.
AI marks the end of cyber offense exclusivity, once concentrated in major powers like the U.S. and Israel.
Mandia notes that automating discovery and exploitation of vulnerabilities will democratize elite hacking expertise. AI lowers the technical skill barrier, enabling even small countries and criminal syndicates to mount attacks at the level of the world’s top cyber powers.
Increasingly, specialized AI models will emerge, tailored for offense against distinct targets—cell phones, drones, operating systems, or radio frequencies. These m ...
Ai-powered Cyber Warfare and Defense
Kevin Mandia and Shawn Ryan discuss the profound vulnerabilities in American critical infrastructure, emphasizing how interconnected systems are susceptible to both blunt and sophisticated cyber attacks, with the potential for cascading failures that can disrupt everyday life and the economy.
Mandia explains there are two primary strategies for cyber attackers targeting utilities. The first is “blunt force trauma,” or outright deletion of data, which can easily shut down small municipal utilities and mom-and-pop electric companies with minimal resources and little redundancy. In these cases, simply deleting everything could cause outages in power and water services. The second, more insidious strategy, involves gaining detailed knowledge of a major utility’s systems—often by consulting internal manuals and possibly with inside help—to subtly alter operational commands unique to each system. This slower, stealthier approach can pollute water supplies or degrade utilities over time, requiring a tailored attack for every large provider.
Mandia highlights the vulnerability of small utilities, which lack both the resources and defensive measures to withstand a cyber attack. In contrast, major utilities like Con Edison and PG&E have compensating controls and redundancy, making them less susceptible to simple attacks. However, if a large utility goes down, the resulting load can overwhelm neighboring utilities, causing a ripple effect that could propagate failure across regions. This phenomenon was observed during the Texas power crisis, where a single utility's collapse set off a chain reaction due to interconnected load dependencies.
Small water treatment facilities are singled out as particularly hard to defend. Attackers, if sufficiently informed, could alter water treatment processes, potentially poisoning the water supply or shutting down facilities. Each facility’s unique setup makes broad protection difficult, and defense requires deep manual knowledge and physical separation between IT and operational networks—a gap few maintain perfectly.
Mandia points out a systemic weakness: most companies maintain a universal administrative account for maintenance or patching across their networks. If attackers breach the perimeter, acquiring this “Achilles heel” account often grants them access to the entire operation. Thus, while companies work hard to keep attackers out, once breached, attackers find lateral movement and deeper infiltration “downhill skating.”
Mandia asserts that nearly all Fortune 500 companies would fail to function without the internet. As much or most of their business relies on digital connectivity, going offline leads to severe disruptions, lost capabilities, and operational paralysis.
He references the 2003 New York blackout, where sustained grid loss in extreme summer conditions nearly unraveled societal order. Mandia notes the air conditioning loss and general disruption tested the city’s resilience, underscoring digital dependence and the risk of cascading breakdowns in prolonged outages.
A successful attack on critical infrastructure would not only mean power loss but would cripple healthcare, financial transactions, communications, and transportation. Regional transit could halt, ATMs could become inoperable, and life could dramatically change as everyday functions break down.
Mandia points out the depth of digital reliance: people unable to track runs or calories due to apps being down, organizations unable to transact, and even the integrity of published information becoming questionable. Without power and internet, basic societal functions—including food, water, and communication—are severely compromised.
Critical Infrastructure Vulnerabilities and Worst-Case Scenarios
Kevin Mandia details the evolving landscape of information warfare, where adversarial nation-states exploit the openness of American society and the vulnerabilities of digital platforms to amplify discord, undermine institutions, and erode public trust.
Mandia describes how Russian intelligence leverages platforms like X (Twitter) and Facebook to manipulate public sentiment in the U.S., not by creating wholly new narratives but by artificially amplifying existing social divisions. Russian actors, using fake accounts and coordinated campaigns, push opposing narratives simultaneously to maximize discord, never picking one side but stoking the extremes.
He explains that, “you create division, absolutely. You create discord. It doesn't matter… you pick all sides. Just throw it at us.” Social media’s anonymity amplifies minority views, making fringe opinions seem mainstream. Mandia highlights that while foreign intelligence services are deeply involved, domestic groups and marketers also utilize artificial amplification, muddying the distinction between organic and manipulated discourse.
Mandia recalls that in August 2015, his intelligence team traced Russian actors actively influencing Americans on social media. This marked the first clear warning shot that foreign intelligence was manipulating U.S. political discourse, well in advance of the 2016 presidential election.
Mandia notes that the strategic use of amplification creates the illusion of large-scale consensus where little actually exists. What might be only 3% of Americans holding an extreme view can appear as 50% if the message is artificially elevated. By intensifying preexisting tensions, foreign—and sometimes domestic—actors manipulate Americans into seeing their society as more divided and volatile than it really is.
Mandia affirms that the 2016 DNC breach was a watershed moment. Russian military intelligence services, the GRU and SVR, hacked Democratic Party servers and released thousands of internal emails, making a dramatic leap from espionage purely for intelligence to using stolen data as a weapon to shape politics.
Mandia underscores the tactical deployment of the material. The hackers released the information in carefully timed waves to maximize political impact and media attention. Weaponizing authentic communications—rather than fabricating crude forgeries—gave the leaks undeniable credibility and damaging effect.
Mandia explains that America's commitment to free expression makes it uniquely vulnerable to information warfare. There is often no clear distinction between a strong political opinion and a deliberate attempt to incite unrest or spread falsehoods. This ambiguity creates a fertile environment for foreign actors to manipulate the public debate.
He contrasts this with authoritarian nations such as China, Russia, and Iran, where press and internet freedoms are strictly controlled to defend against the very tactics they deploy abroad. As a result, these societies are far less susceptible to foreign information operations.
Mandia notes the challenge facing U.S. policymakers and tech platforms: there are no clear boundaries between protected speech and harmful propaganda. Companies are forced into a “whack-a-mole” game, removing suspicious foreign accounts while being accused of censorship. Defending public discourse in such an open environment is fundamentally more difficult.
Mandia warns tha ...
Information Warfare and Cognitive Attacks
Download the Shortform Chrome extension for your browser
