Apps marketed to American service members are quietly carrying software written overseas—including code from companies based in countries the Pentagon treats as adversaries, according to Wired.

Wired reports on what it describes as a first-of-its-kind analysis of applications built for US troops. The review found that more than one in eight of those apps contained foreign code. Some of that code, according to Wired, traced back to firms in nations the Pentagon officially designates as adversaries, a category that includes China and Russia.

The concern is not necessarily that any single app was caught spying. Rather, modern software is assembled from many reusable components, and code sourced from foreign developers can introduce risk that is hard to see from the outside. When that software runs on the phones of people in uniform, it can touch sensitive information—location, contacts, communications, and daily routines—that adversaries would value.

Wired's framing as a "first-of-its-kind" look suggests this kind of supply-chain scrutiny has not been systematically applied to the apps troops actually download and use, even as the Pentagon publicly names certain countries as security threats.

The finding highlights a gap between official policy and everyday practice: the same government that flags specific nations as adversaries may have service members running software built, at least in part, by companies in exactly those places.

Why it matters: if roughly an eighth of the apps aimed at US troops carry foreign code, the risk isn't hypothetical or rare—it's built into the tools service members use every day, and closing that gap is a national-security problem hiding in plain sight.