Spook Wars is Hunter Storm’s informal term for the complex territory where cybersecurity, intelligence, counterintelligence, cyber operations, cyberwarfare, electronic warfare, information operations, influence, deception, and related disciplines intersect.
Spook Wars | The Real-World Intelligence, Cyber, Information, Influence, and Electromagnetic Operations Behind the Invisible Battlefield
Spook Wars is an informal term Hunter Storm created to describe the strange, overlapping territory where cybersecurity, cyber operations, intelligence, counterintelligence, electronic warfare, information operations, influence operations, psychological operations, military deception, operations security, and related disciplines meet.
It is not an official military or intelligence-community doctrinal term.
It is, however, a useful human term for a very real collection of professional activities.
And there is a reason I use it.
Where “Spook Wars” Came From
The term did not originate as an attempt to invent a new category of warfare.
It came from real-world experience.
During my work in and around cybersecurity, information security, intelligence-adjacent environments, technology, and systems operations, I encountered situations that could no longer be adequately described simply as “cybersecurity.”
The deeper I went, the more obvious the overlap became.
Networks connected to people.
People connected to organizations.
Organizations connected to information.
Information connected to decisions.
Decisions connected to operations.
Operations connected to technology, communications, intelligence, influence, security, and sometimes national-security concerns.
The boundaries existed on organizational charts. In the real world, the effects crossed them.
That is the territory I eventually began referring to, informally, as Spook Wars.
The phrase also became part of my own shorthand and humor while working through real-world situations. When I later wrote about my Playing Reindeer Games, FCFU, and TRUCK-YU frameworks, I introduced a LinkedIn post with:
“1, 2, 3, 4, let’s have a spook war!”
That line captures the spirit of the term better than a sterile definition ever could.
The humor is mine. The underlying disciplines are not.
- Spook Wars meaning
- Spook Wars definition
- cyber operations
- cyber intelligence
- intelligence operations
- counterintelligence
- information warfare
- information operations
- influence operations
- psychological operations
- electronic warfare
- electromagnetic warfare
- cyber-electromagnetic activities
- military deception
- operations security
- SIGINT
- HUMINT
- OSINT
- GEOINT
- MASINT
- cyber threat intelligence
- cognitive warfare
- narrative warfare
- gray-zone operations
- hybrid warfare
- irregular warfare
Spook Wars is not an official doctrinal term. The disciplines behind it are.
Cybersecurity is only one piece of the invisible battlefield. Explore the professional terminology behind intelligence, cyber operations, counterintelligence, electronic warfare, information operations, influence, deception, and the territory Hunter Storm calls “Spook Wars.”
What “Spook Wars” Actually Includes | Intelligence, Cyber, Information and Influence Operations
There is no single professional field called Spook Wars. Instead, the term sits across a collection of established disciplines.
Depending on the mission, organization, jurisdiction, authorities, and operational environment, the relevant terminology may include:
- Cybersecurity
- Cyber operations
- Cyberspace operations
- Cyber threat intelligence
- Cyber intelligence
- Signals intelligence (SIGINT)
- Human intelligence (HUMINT)
- Open-source intelligence (OSINT)
- Geospatial intelligence (GEOINT)
- Measurement and signature intelligence (MASINT)
- Imagery intelligence (IMINT)
- Communications intelligence (COMINT)
- Electronic intelligence (ELINT)
- Foreign instrumentation signals intelligence (FISINT)
- Technical intelligence (TECHINT)
- Financial intelligence (FININT)
- Counterintelligence (CI)
- Counterintelligence activities in cyberspace
- Electronic warfare (EW)
- Electromagnetic spectrum operations (EMSO)
- Electromagnetic warfare
- Information operations (IO)
- Military deception (MILDEC)
- Operations security (OPSEC)
- Psychological operations (PSYOP)
- Military information support operations (MISO)
- Influence operations
- Information warfare
- Information advantage
- Strategic communications
- Military information activities
- Cognitive warfare
- Narrative warfare
- Political warfare
- Irregular warfare
- Unconventional warfare
- Hybrid warfare
- Gray-zone activities
- Foreign malign influence
- Foreign information manipulation and interference (FIMI)
- Propaganda and counterpropaganda
- Disinformation, misinformation, and malinformation
- Covert action
- Clandestine operations
- Deception operations
- Security operations
- Insider-threat operations
- Technical surveillance countermeasures (TSCM)
- Protective intelligence
- Threat intelligence
- Operational security and information protection
- Command-and-control warfare
- Information environment operations
- Cyber-electromagnetic activities (CEMA)
These terms should not be treated as interchangeable. Instead, they represent different disciplines, capabilities, authorities, missions, and historical periods.
The point of this page is therefore not to collapse them into one giant category. The point is to show how the pieces relate.
The Intelligence Side of the House
One of the easiest ways to understand the broader landscape is to begin with intelligence.
The U.S. Intelligence Community recognizes several established intelligence disciplines, including HUMINT, SIGINT, OSINT, GEOINT, and MASINT.
HUMINT — Human Intelligence
HUMINT is intelligence derived from human sources.
Despite the popular association between HUMINT and spies, espionage, and clandestine activity, HUMINT is considerably broader. Official descriptions include overt collection such as debriefings and military attaché reporting.
Common associated terminology:
- Human intelligence
- Human-source intelligence
- Source reporting
- Debriefing
- Elicitation
- Espionage
- Agent operations
- Clandestine human collection
- Overt collection
Not all HUMINT is clandestine, and not all clandestine activity is HUMINT. That distinction matters.
SIGINT — Signals Intelligence
SIGINT is intelligence derived from electronic signals and systems associated with foreign targets. NSA describes SIGINT as including intelligence derived from communications systems, radar, weapons systems, and other electronic systems.
Common SIGINT subdivisions and associated terminology include:
- COMINT — Communications Intelligence
- ELINT — Electronic Intelligence
- FISINT — Foreign Instrumentation Signals Intelligence
- TELINT — Telemetry Intelligence in historical usage
- Traffic analysis
- Signal analysis
- Electronic collection
- Communications collection
Some terminology has changed or been reorganized over time, which is why older intelligence literature can look different from contemporary terminology.
OSINT — Open-Source Intelligence
OSINT is intelligence derived from publicly available information.
Sources can include:
- News reporting
- Public websites
- Government publications
- Academic publications
- Social media
- Public records
- Commercial databases
- Broadcast media
- Images and video
- Publicly available technical information
OSINT is not synonymous with “Googling.” Professional OSINT involves collection, validation, analysis, contextualization, and production of intelligence from publicly available sources. ODNI explicitly identifies OSINT as a recognized intelligence discipline.
GEOINT — Geospatial Intelligence
GEOINT involves analysis and visual representation of geographically referenced information. It can incorporate:
- Imagery
- Geospatial information
- Mapping
- Terrain
- Location
- Spatial relationships
- Pattern analysis
ODNI describes GEOINT as integrating imagery, imagery intelligence, and geospatial information.
MASINT — Measurement and Signature Intelligence
MASINT involves technically derived measurements and signatures associated with physical phenomena.
It is particularly useful where the information of interest is not simply a photograph or communication, but a measurable signature of an object, event, or phenomenon. ODNI describes MASINT as specialized technical measurements of physical phenomena and their associated quantitative signatures.
Additional Intelligence Terms
Depending on the organization and mission, researchers may also encounter:
- IMINT — Imagery Intelligence
- TECHINT — Technical Intelligence
- FININT — Financial Intelligence
- CYBINT — Cyber Intelligence
- CTI — Cyber Threat Intelligence
- Medical intelligence
- Scientific and technical intelligence
- All-source intelligence
- Fusion
- Intelligence analysis
- Intelligence production
- Collection management
- Targeting intelligence
- Indications and warning (I&W)
- Situation awareness
- Pattern analysis
- Link analysis
- Network analysis
- Threat assessment
These disciplines can be combined through intelligence fusion or all-source analysis rather than treated as isolated silos.
Counterintelligence | The Other Side of the Intelligence Equation
Counterintelligence (CI) is not simply “intelligence about intelligence.”
It is a distinct discipline concerned with identifying, deceiving, exploiting, disrupting, or protecting against espionage and other intelligence-related threats, as well as specified forms of sabotage and related activity.
Relevant terminology includes:
- Counterintelligence
- CI analysis
- CI investigations
- CI collection
- CI operations
- Counterespionage
- Counterintelligence support
- Insider threat
- Foreign intelligence entity
- Foreign intelligence service
- Espionage
- Recruitment
- Penetration
- Compromise
- Deception
- Surveillance
- Counter-surveillance
- Operational security
- Security investigations
Modern counterintelligence also intersects with cyberspace. The U.S. Department of Defense maintains specific policy addressing counterintelligence activities in cyberspace, demonstrating that CI and cyber are not merely metaphorically connected.
Cyberspace Operations
Cybersecurity is about protecting systems, information, organizations, and people from cyber threats. Cyberspace operations are broader.
Current U.S. military legal and doctrinal references describe cyberspace operations as the employment of cyberspace capabilities where the primary purpose is to achieve objectives in or through cyberspace.
Historically, readers will also encounter:
- CNO — Computer Network Operations
- CNA — Computer Network Attack
- CND — Computer Network Defense
- CNE — Computer Network Exploitation
These terms were prominent in earlier U.S. doctrine. Older Department of Defense material explicitly described CNO as encompassing CNA, CND, and related CNE activities.
Contemporary doctrine uses cyberspace operations and more specific mission categories rather than treating the older CNO terminology as the universal umbrella.
This is one reason historical terminology matters when reading older cybersecurity, military, intelligence, and national-security literature.
Cyber Threat Intelligence
Cyber Threat Intelligence (CTI) connects cybersecurity with intelligence analysis. CTI can involve:
- Adversary identification
- Threat actor analysis
- Indicators
- Tactics, techniques, and procedures (TTPs)
- Infrastructure analysis
- Malware analysis
- Campaign analysis
- Attribution assessment
- Vulnerability intelligence
- Strategic threat assessment
- Operational intelligence
- Tactical intelligence
- Threat hunting
- Intelligence-driven defense
This is one of the clearest places where the traditional boundary between “security” and “intelligence” becomes difficult to maintain.
Electronic Warfare
Electronic warfare (EW) concerns military action involving the electromagnetic spectrum and related electromagnetic effects.
Modern joint doctrine distinguishes major EW functions including:
- Electronic attack (EA)
- Electronic protection (EP)
- Electronic warfare support (ES)
JP 3-85 describes EA as actions that can degrade, disrupt, or destroy susceptible adversary systems; EP as protecting friendly systems; and ES as activities supporting awareness and operations involving the electromagnetic environment.
This is important because electronic warfare is not simply another name for hacking. Cyber operations and EW can interact, but they operate through different mechanisms and capabilities.
Electromagnetic Spectrum Operations
The broader professional vocabulary also includes:
- EMSO — Electromagnetic Spectrum Operations
- JEMSO — Joint Electromagnetic Spectrum Operations
- Electromagnetic environment
- Electromagnetic interference (EMI)
- Electromagnetic compatibility (EMC)
- Electromagnetic support
- Electronic attack
- Electronic protection
- Electronic warfare support
- Emissions control (EMCON)
- Spectrum management
- Spectrum operations
The electromagnetic spectrum is itself an operational environment, which is why modern cyber and electromagnetic doctrine increasingly treats these activities as interconnected rather than completely separate.
Information Operations
Information Operations (IO) is another term that causes enormous confusion because its meaning has evolved and because it is frequently used casually to mean almost anything involving information.
In U.S. military doctrine, IO concerns the integrated employment of information-related capabilities to achieve effects involving decision-making and the information environment. Current Army doctrine describes information operations in terms of influencing, disrupting, corrupting, or usurping adversary decision-making while protecting one’s own.
Historical doctrine is particularly important here.
Older joint doctrine explicitly connected IO with capabilities including:
- Electronic warfare
- Computer network operations
- Psychological operations
- Military deception
- Operations security
That historical vocabulary is still encountered throughout older literature. Modern doctrine has evolved, so readers should always check the date and governing doctrine when interpreting the term.
Military Deception
MILDEC — Military Deception involves deliberately misleading an adversary to cause an action or inaction favorable to the deceiver. Associated terminology includes:
- Military deception
- Deception operation
- Deception plan
- Deception objective
- Deception story
- Deception indicator
- Feint
- Ruse
- Decoy
- Concealment
- Misdirection
- Spoofing
The critical distinction is that deception is an effect-oriented discipline, not merely lying. It can involve manipulation of observable indicators, timing, signatures, information, or behavior.
Operations Security
OPSEC — Operations Security is the process of identifying critical information and determining how friendly actions could expose it to adversary observation or exploitation.
Related concepts include:
- Critical information
- Indicators
- Adversary intelligence collection
- Signature management
- Information protection
- Need-to-know
- Compartmentation
- Cover
- Operational security
- Communications security
- COMSEC — Communications Security
- INFOSEC — Information Security
- EMSEC — Emissions Security
OPSEC is fundamentally about protecting information by understanding how ordinary activities can reveal more than intended.
PSYOP and MISO
Two terms readers will encounter frequently are:
PSYOP — Psychological Operations
and
MISO — Military Information Support Operations.
They are not simply interchangeable historical abbreviations.
The U.S. Army changed terminology from PSYOP to MISO in 2010 and subsequently returned to PSYOP terminology for the branch and career field; contemporary Army materials still describe PSYOP personnel as conducting MISO.
That means researchers may legitimately encounter both terms, sometimes in documents only a few years apart.
The broader subject involves deliberate communication and influence directed toward specified foreign audiences in support of operational or strategic objectives.
Influence Operations
Influence operations is a broad term covering activities intended to affect attitudes, perceptions, decisions, behavior, or other human responses.
Related terminology includes:
- Influence operations
- Influence activities
- Influence campaign
- Influence effects
- Foreign influence
- Foreign malign influence
- Influence operations in cyberspace
- Strategic influence
- Cognitive influence
- Human-domain operations
- Audience analysis
- Target audience analysis
- Persuasion
- Behavioral influence
- Narrative influence
The term is broad enough that context matters enormously. A government communication campaign, a military influence operation, a foreign influence campaign, a commercial persuasion campaign, and an online manipulation campaign are not automatically the same thing.
Information Warfare
Information warfare is widely used in military, intelligence, academic, commercial, and popular literature.
But it is also one of the terms most likely to become dangerously vague.
Historically, U.S. doctrine used “information warfare” in various ways. Later joint doctrine moved away from treating information warfare as the formal umbrella term for IO.
Today, readers may encounter the phrase referring to combinations of:
- Information operations
- Cyber operations
- Electronic warfare
- Influence
- Deception
- Propaganda
- Psychological operations
- Intelligence
- Counterintelligence
- Attacks against information systems
- Protection of information and decision-making
For that reason, “information warfare” should always be interpreted in context rather than assumed to have one universal definition.
Cognitive Warfare
Cognitive warfare is a newer and increasingly visible term describing efforts aimed at perception, cognition, judgment, decision-making, and human behavior.
Related language includes:
- Cognitive domain
- Cognitive effects
- Cognitive influence
- Cognitive security
- Decision advantage
- Decision-cycle disruption
- Human domain
- Perception management
- Behavioral influence
- Neurocognitive influence
The terminology is evolving rapidly, and different organizations use it differently. That makes it a useful research term—but a poor substitute for specifying the actual activity being discussed.
Cognitive Warfare Origin
Cognitive warfare is a newer and increasingly visible term describing efforts aimed at perception, cognition, judgment, decision-making, and human behavior.
Hunter Storm Research Lineage: The conceptual lineage of this subject in Hunter Storm’s work traces to Hacking Humans: The Ports and Services Model of Social Engineering (1994–2007), which modeled human cognition, behavior, motivations, and vulnerabilities through a systems-oriented framework. Hunter Storm’s subsequent lineage research identifies cognitive warfare doctrine among the fields that substantially overlap with, or reflect concepts developed in, her earlier framework.
Related language includes:
- Cognitive domain
- Cognitive effects
- Cognitive influence
- Cognitive security
- Decision advantage
- Decision-cycle disruption
- Human domain
- Perception management
- Behavioral influence
- Neurocognitive influence
The terminology is evolving rapidly, and different organizations use it differently. That makes it a useful research term—but a poor substitute for specifying the actual activity being discussed.
Narrative Warfare and Narrative Operations
Another increasingly common vocabulary is:
- Narrative warfare
- Narrative operations
- Narrative competition
- Strategic narratives
- Counter-narratives
- Narrative shaping
- Information narratives
- Battle of the narrative
Narratives matter because people do not process information as disconnected data points. They interpret events through existing models, identities, expectations, and stories.
This is one reason information operations, influence operations, psychological operations, public affairs, propaganda, and political warfare can overlap without being identical.
Propaganda, Disinformation, Misinformation, and Malinformation
These terms are often used interchangeably in ordinary conversation. They should not be.
Misinformation
False or inaccurate information that is shared without necessarily requiring an intent to deceive.
Disinformation
False or misleading information deliberately created or disseminated to deceive or manipulate.
Malinformation
Genuine or factual information used in a misleading, harmful, or manipulative context.
Propaganda
Information, communication, or messaging deliberately structured to influence perceptions, attitudes, or behavior in support of an objective.
Propaganda can contain truth, falsehood, selective truth, or combinations thereof.
That is one reason simply labeling something “propaganda” does not establish that every factual statement contained within it is false.
Foreign Information Manipulation and Interference
European and international security literature increasingly uses: FIMI — Foreign Information Manipulation and Interference to describe coordinated or intentional manipulative activity by foreign actors involving the information environment.
Related terms include:
- Foreign information manipulation
- Foreign interference
- Foreign influence
- Malign influence
- Information manipulation
- Information interference
- Hybrid influence
- Influence operations
U.S. organizations may use overlapping but different terminology, including foreign malign influence and related counter-influence concepts. ODNI currently identifies counterinfluence among its national integration missions.
Political Warfare
Political warfare concerns the use of political, informational, economic, diplomatic, intelligence, and other instruments to achieve strategic objectives without relying exclusively on conventional military force.
Related terms include:
- Political warfare
- Strategic competition
- Coercive diplomacy
- Influence
- Economic statecraft
- Diplomatic pressure
- Information operations
- Irregular warfare
- Unconventional warfare
- Proxy operations
Political warfare can therefore overlap with cyber, intelligence, influence, economic, diplomatic, and information activities without being reducible to any one of them.
Gray-Zone Activity
Gray-zone or gray-zone competition generally describes activities conducted below the threshold—or in the ambiguous space—between ordinary statecraft and overt armed conflict.
Associated language includes:
- Gray-zone operations
- Gray-zone competition
- Below-threshold activity
- Hybrid activity
- Coercion
- Deniable activity
- Proxy activity
- Irregular warfare
- Political warfare
- Influence operations
The term is descriptive rather than a magic category. A particular operation still needs to be identified by what it actually does.
Hybrid Warfare
Hybrid warfare generally refers to combinations of conventional, irregular, political, economic, informational, cyber, and other instruments employed in coordinated ways.
The term is especially common in strategic and defense literature.
A hybrid threat can involve combinations of:
- Military forces
- Irregular forces
- Proxy actors
- Criminal networks
- Cyber capabilities
- Information operations
- Political influence
- Economic pressure
- Propaganda
- Coercion
The U.S. Army’s current doctrine, for example, defines a hybrid threat as a diverse and dynamic combination of regular, irregular, terrorist, or criminal elements acting together toward mutually beneficial effects.
Irregular Warfare and Unconventional Warfare
These are related but distinct terms.
Irregular warfare (IW) concerns competition and conflict involving state and non-state actors where influence over populations, legitimacy, and political outcomes can be central.
Unconventional warfare (UW) is a more specific military concept associated with enabling resistance or insurgent forces against an occupying or controlling power.
Neither should simply be substituted for “cyberwarfare.”
Cyber capabilities can support irregular or unconventional warfare, but the terms describe broader operational concepts.
Covert, Clandestine, Overt, and Deniable
These words are frequently misunderstood outside intelligence and national-security communities.
Overt
An activity conducted openly, where the actor and/or activity is not intentionally concealed.
Clandestine
An activity where the operation itself is intended to be concealed.
Covert
An activity where the identity or sponsorship of the actor is intended to remain concealed. These concepts concern what is being concealed and are not synonymous with “secret.” A clandestine operation and a covert operation can have very different meanings.
Related terms include:
- Deniability
- Plausible deniability
- Attribution
- Non-attribution
- Cutout
- Proxy
- Front
- Cover
- Legend
- False flag
These terms also have highly specific meanings in different professional contexts and should not be treated as interchangeable.
Cyber-Electromagnetic Activities
One particularly useful bridge between cyber and electromagnetic operations is: CEMA — Cyber-Electromagnetic Activities.
In Army usage, CEMA refers to the planning, integration, and synchronization of cyberspace and electronic warfare operations. It is not itself simply another weapon or capability; it is an integrating concept.
This is an excellent example of why the boundaries between disciplines can become difficult to see from outside the profession.
The same operational problem may involve:
- Cyber
- Electromagnetic spectrum activity
- Intelligence
- Information operations
- Targeting
- Communications
- Electronic warfare
- OPSEC
The organizational labels may differ. The operational environment does not politely respect the organizational chart.
Targeting, Effects, and Decision Advantage
Modern operations increasingly emphasize effects rather than treating each capability as an isolated specialty.
That vocabulary includes:
- Targeting
- Target development
- Target systems analysis
- Effects
- Desired effects
- Decision advantage
- Decision superiority
- Command and control
- C2
- C4ISR
- Kill chain
- Find, fix, track, target, engage, assess (F2T2EA)
- Intelligence preparation of the operational environment
- Operational environment
- Information environment
- Mission command
- Situational awareness
Information, cyber, electromagnetic, intelligence, and influence capabilities can be synchronized because they may affect the same adversary decision cycle.
Army publications explicitly describe information activities as interdependent and distinguish activities such as inform, influence, attack, and protect.
Why the Vocabulary Matters
This enormous vocabulary can make the subject look more complicated than it actually is. The opposite is often true.
The vocabulary exists because different activities have different purposes, authorities, risks, methods, and effects.
- Hacking a network is not the same thing as collecting intelligence from it.
- Collecting intelligence is not the same thing as conducting counterintelligence.
- Counterintelligence is not the same thing as electronic warfare.
- Electronic warfare is not the same thing as information operations.
- Information operations are not synonymous with propaganda.
- Propaganda is not synonymous with disinformation.
- Influence is not synonymous with deception.
And cybersecurity is not synonymous with any of them. But these activities can interact. That intersection is where things become interesting.
The Invisible Battlefield Is Bigger Than Cybersecurity
This is why I resist the idea that my professional world can be adequately described as simply “something with computers.”
Cybersecurity is a critical part of the environment. It is not the entire environment.
Modern systems are simultaneously:
- Technical
- Human
- Organizational
- Informational
- Economic
- Political
- Social
- Electromagnetic
- Cognitive
- Operational
A network can be attacked technically.
A person can be targeted socially.
An organization can be manipulated informationally.
A decision can be influenced psychologically.
A communication can be intercepted electronically.
An adversary can be mapped through intelligence collection.
A vulnerability can be exploited through cyberspace.
A capability can be protected through OPSEC.
A narrative can be manipulated through influence operations.
And multiple effects can occur at the same time.
That is the invisible battlefield.
Why I Call It “Spook Wars”
The term is intentionally informal. “Spook” is longstanding slang for an intelligence operative or intelligence professional, although its usage can be broader and sometimes pejorative depending on context.
I use Spook Wars more broadly and somewhat irreverently to describe the territory where intelligence, cyber, information, influence, deception, electronic warfare, counterintelligence, and related operational disciplines intersect.
It is shorthand.
It is not doctrine.
It is not a claim that every activity listed on this page is performed by intelligence agencies.
It is not a claim that every cybersecurity incident is an act of warfare.
And it is absolutely not a claim that all of these professional disciplines are interchangeable.
It is simply a memorable name for a complicated neighborhood.
From Cybersecurity to the Wider Operational Environment
For people who know me primarily through my cybersecurity work, this distinction matters.
My professional path crossed systems architecture, intrusion detection, information security, security operations, incident response, technology, organizational systems, and broader information environments.
The problems did not always remain inside the boundaries of a conventional cybersecurity job description.
That’s why the deeper material on this site sometimes uses terminology that comes from intelligence, military operations, information operations, counterintelligence, influence, and other fields.
The terminology is not decorative.
It exists because the underlying disciplines exist.
When I use a formal term, I try to use it in its appropriate context.
When I use an informal term such as Spook Wars, I will tell you that it is informal.
That distinction is important to me.
A Note About Classification, Authorities, and Professional Context
The existence of a professional term does not mean that every person can legally or practically perform the activity associated with it.
Intelligence collection, counterintelligence, covert action, military operations, law-enforcement activity, surveillance, and related activities can involve specific authorities, jurisdictions, oversight requirements, classifications, and rules of engagement.
Those distinctions matter.
They also matter when interpreting someone’s professional experience.
A person can understand or work adjacent to a discipline without being a member of the organization that formally owns that mission.
Likewise, a cybersecurity professional can encounter problems with intelligence implications without becoming an intelligence officer.
The boundary is contextual.
Spook Wars in Plain English
If all of this terminology is making your head hurt, here’s the short version:
Spook Wars is my informal name for the part of the invisible battlefield where computers stop being “just computers.”
It’s where technology intersects with:
people → information → intelligence → security → influence → decisions → operations.
Sometimes the problem is technical.
Sometimes it is human.
Sometimes it is organizational.
Sometimes it is informational.
Sometimes it is all of those things simultaneously.
And sometimes the most important thing happening is the thing nobody can see directly.
That’s why I built the terminology map.
Because if you only know the word cybersecurity, you can miss a surprisingly large part of the battlefield.
Where to Go Next
If you arrived here from Inside the Invisible Battlefield | Why Hunter Storm Created a Cybersecurity Learning Series, you have already crossed the first doorway.
That introductory series was designed for people who did not work in cybersecurity and wanted to understand enough about the digital world to stop being helpless targets.
This page goes farther. From here, readers can explore the broader research into:
- Cybersecurity and cyber operations
- Intelligence and intelligence analysis
- Counterintelligence
- Information warfare
- Influence operations
- Psychological operations
- Military deception
- Operations security
- Electronic warfare
- Cyber-electromagnetic activities
- AI and information environments
- Systems security
- Institutional resilience
- Human factors
- Emerging technologies
- And the deeper operational research and white papers that sit behind the public-facing work
The terminology is the map. The individual research articles are the terrain. And somewhere between the two is where the really interesting questions begin.
Spook Wars | The Short Definition
Spook Wars is an informal Hunter Storm term for the overlapping operational territory involving cybersecurity, cyberspace operations, intelligence, counterintelligence, electronic warfare, information operations, influence operations, psychological operations, military deception, operations security, and related activities affecting information, technology, human behavior, and decision-making.
Spook Wars is not an official doctrinal term.
The disciplines behind it are very real. And that distinction is the whole point.
Discover More from Hunter Storm
- Acknowledgments | Behind the Influence and Lineage Mapping of Hacking Humans
- Audience and Global Influence
- EVENT — Live Presentation | University of Advancing Technology (UAT) — Featured Speaker: Social Engineering: Building a More Secure World Thru Innovative Use of the Truth
- How Internet Pranks Became the Blueprint for Psychological Warfare
- Hunter Storm Official Site
- Inside the Invisible Battlefield | Why Hunter Storm Created a Cybersecurity Learning Series
- The Basics of Online Privacy | Who Sees What You Post?
- The Storm Project | AI, Cybersecurity, Quantum, and Intelligence
