Europe

German intelligence warning against Russian GRU hacker group about targeting NATO and the EU

A cyber group associated with the 29155 unit of Russia’s military intelligence agency, the GRU, has prompted a warning from German intelligence due to its suspected involvement in a series of cyberattacks targeting NATO and the EU.

The warning was part of a coordinated effort with international agencies, including the FBI, U.S. Cybersecurity and Infrastructure Security Agency (CISA), and the NSA, according to a report by Reuters.

On Monday, September 9, Germany’s Federal Office for the Protection of the Constitution (Bundesverfassungsschutz) publicly named the group, known as UNC2589, which also operates under aliases such as “Cadet Blizzard” and “Ember Bear.” 

The intelligence agencies accused the group of conducting espionage and sabotage, often damaging websites and leaking stolen data as part of its operations. 

These attacks, the agencies noted, are part of a broader pattern of cyber aggression aimed at destabilising Western institutions and extracting sensitive information.

Disruptive activities and cyber espionage of the Russian UNC2589 group

The poisoning of former Russian double agent Sergei Skripal and his daughter Yulia in the UK in 2018 clearly demonstrates this unit’s capability and willingness to engage in hostile activities beyond cyberattacks.

In 2020, Russian military intelligence hackers linked to the same unit launched a cyberattack that compromised tens of thousands of Estonian documents, including sensitive internal and trade secrets, underscoring the broad scope of its operations. 

Such breaches demonstrate the GRU’s intent to undermine not only political and military stability but also economic security within targeted nations.

The GRU is not only collecting intelligence, but also seeking to weaken the cohesion and functionality of Western alliances by targeting NATO and EU institutions.

The coordinated response from agencies like the FBI, CISA, and NSA signals a robust approach, but it also emphasises the need for vigilance and stronger cyber defences within NATO and EU institutions, which remain prime targets for future attacks.

Alex Khomiakov

My passion for journalism began in high school, and I have since devoted my career to reporting on issues that matter to people around the world. I believe that journalism has the power to effect real change in the world, and I am passionate about using my platform to give voice to those who are too often overlooked.

Recent Posts

Putin’s ‘election guarantee’ becomes weapon: how Pro-Russian media in Europe amplify Kremlin’s war narrative

By portraying Vladimir Putin as the only actor able to “ensure security” and “restore legitimacy”…

3 days ago

Lithuania Fights for Freedom of Speech: Society Defends Public Broadcaster LRT

Freedom of speech in Lithuania has become the centre of an unprecedented civic mobilisation, as…

3 days ago

Where Did Nearly One Million Russian Soldiers Go? A Chilling Manpower Puzzle

The question sounds almost abstract at first, like a numbers game. But it is not.…

6 days ago

Pro-Kremlin media coordinate lies about Ukraine’s Kupiansk loss to mask Moscow’s failure

European outlets synchronized a three-stage disinformation campaign that turned Russia's military defeat in Kupiansk into…

7 days ago

Putin Threatens Europe With War Over Kaliningrad: What Is Behind the Escalation?

Russian leader Vladimir Putin has once again raised the spectre of a large-scale war in…

7 days ago

The Kremlin’s Echo in Austria: How Russia-Friendly Outlets Repackage Moscow Propaganda for Local Audiences

Across Europe, Russia’s information strategy has evolved from centralized messaging to local translation—re-tailored for national…

1 week ago