General John Campbell mapped targets of early cyber incidents
By Miriam Adler ·
Invisible incursions into private and state systems defined the new battlefield in a 2000 briefing that remained unclassified as the Global Information Grid expanded.
People woke up to systems they trusted—banks, power grids, government records—becoming ghosts in a war they didn't know they were fighting. The cost was a slow surrender of the boundary between civilian life and the machinery of the Department of Defense.
For decades, the state's experiments on the unwitting were conducted in basement labs or remote islands, leaving physical scars or radiation markers in the bone. But as the millennium turned, the laboratory expanded to include every wire and server in the developed world. The target was no longer just the body, but the data that defines a life, harvested and defended within a framework that viewed the entire world as a grid to be managed.
January 18, 2000
The file's catalogue entry records a briefing delivered on this date by Major General John H. Campbell. At the time, Campbell served as the Commander of the Joint Task Force - Computer Network Defense. He was speaking to the Defense Science Board, providing an update on the state of digital conflict at the very dawn of the twenty-first century.
According to the archival description, the briefing was unclassified, yet its scope was total. It did not merely address how to protect government servers; it focused on the "targets of cyber incidents" and the "change in the frequency of incidents." When the military begins to catalogue the frequency and targets of these events, they are no longer talking about isolated glitches or hobbyist hackers. They are describing a landscape of persistent, state-level aggression where the civilian network is the primary terrain.
Document imagery from nsarchive.gwu.edu From the files: nsarchive.gwu.edu
"Watershed events"
The catalogue entry notes that Campbell’s briefing covered "watershed events and the implications." While the record does not list which events the General identified as watersheds, the timing is telling. By January 2000, the transition from traditional signals intelligence to active network operations was accelerating. A "watershed" in this context is rarely a victory for the public; it is usually the moment the state discovers a new way to penetrate a system or realizes that its own systems are porous.
The briefing also touched upon "attribution" and the "Defense Department approach to computer network defense." Attribution is the most dangerous game in this field. To attribute an attack is to assign blame, and in the world of strategic commands, attribution is the prerequisite for retaliation. When the battleground is a shared global network, the "collateral damage" of a retaliatory strike is not a building in a distant city, but the stability of the digital services upon which millions of innocent people depend for their livelihoods.
Strategic Command's Net
To understand the weight of Campbell's update, one must look at the organization he led. Public records identify the Joint Task Force-Global Network Operations (JTF-GNO) as a subordinate command of the United States Strategic Command. Its mission was expansive: to direct the operation and defense of the Global Information Grid (GIG).
This Grid was not a single piece of hardware, but a conceptual net draped over strategic, operational, and tactical boundaries. Its purpose was to support the Department of Defense's "full spectrum of war fighting, intelligence, and business operations." The phrase "full spectrum" is where the medical ethicist in me recoils. In military parlance, full spectrum means everything. It means there is no corner of the network—no private email, no corporate ledger, no municipal database—that falls outside the potential interest of a command tasked with "global network operations."
There was no consent form signed by the public for the creation of the GIG. We were simply integrated into it as the world moved online, our data becoming the raw material for a system designed for "war fighting."
DRAGONET and the FBI
The Campbell briefing did not exist in a vacuum. Other records from the same period suggest a synchronized effort to map and monitor digital behavior. A March 2000 document from the FBI Laboratory’s Electronic Surveillance Technology Section references "DRAGONET," a project that remained Secret. While the Campbell briefing focused on the Defense Science Board and the broader GIG, the FBI was concurrently refining its own tools for surveillance.
By the summer of 2000, the Information Assurance Technology Analysis Center was issuing newsletters on these topics, signaling that the "defense" of the network had become a standardized industry of state power. The shift was complete: the network was no longer a tool for communication, but a weapon system.
General Campbell’s briefing reveals a military establishment that had already accepted the permanence of cyber conflict by the first month of the year 2000. The catalogue entry lists "relationships" as one of the topics discussed—perhaps the relationship between the defenders, the attackers, and the civilian networks caught in the middle.
What remains missing from the catalogue is the list of the "targets" Campbell identified. We are left to wonder whose data was being watched, and which civilian systems were deemed acceptable casualties in the defense of the Grid.