Europe

German intelligence warning against Russian GRU hacker group about targeting NATO and the EU

A cyber group associated with the 29155 unit of Russia’s military intelligence agency, the GRU, has prompted a warning from German intelligence due to its suspected involvement in a series of cyberattacks targeting NATO and the EU.

The warning was part of a coordinated effort with international agencies, including the FBI, U.S. Cybersecurity and Infrastructure Security Agency (CISA), and the NSA, according to a report by Reuters.

On Monday, September 9, Germany’s Federal Office for the Protection of the Constitution (Bundesverfassungsschutz) publicly named the group, known as UNC2589, which also operates under aliases such as “Cadet Blizzard” and “Ember Bear.” 

The intelligence agencies accused the group of conducting espionage and sabotage, often damaging websites and leaking stolen data as part of its operations. 

These attacks, the agencies noted, are part of a broader pattern of cyber aggression aimed at destabilising Western institutions and extracting sensitive information.

Disruptive activities and cyber espionage of the Russian UNC2589 group

The poisoning of former Russian double agent Sergei Skripal and his daughter Yulia in the UK in 2018 clearly demonstrates this unit’s capability and willingness to engage in hostile activities beyond cyberattacks.

In 2020, Russian military intelligence hackers linked to the same unit launched a cyberattack that compromised tens of thousands of Estonian documents, including sensitive internal and trade secrets, underscoring the broad scope of its operations. 

Such breaches demonstrate the GRU’s intent to undermine not only political and military stability but also economic security within targeted nations.

The GRU is not only collecting intelligence, but also seeking to weaken the cohesion and functionality of Western alliances by targeting NATO and EU institutions.

The coordinated response from agencies like the FBI, CISA, and NSA signals a robust approach, but it also emphasises the need for vigilance and stronger cyber defences within NATO and EU institutions, which remain prime targets for future attacks.

Alex Khomiakov

My passion for journalism began in high school, and I have since devoted my career to reporting on issues that matter to people around the world. I believe that journalism has the power to effect real change in the world, and I am passionate about using my platform to give voice to those who are too often overlooked.

Recent Posts

How Propaganda and Cash Bonuses Feed Russia’s War Machine Despite High Losses

Russia’s war in Ukraine increasingly runs on a blunt exchange: money up front, myth on…

1 day ago

“You Don’t Need to Pay Influencers in Serbia”: Fact-Checker Ivan Subotić on How Russian Propaganda Thrives for Free

Ivan Subotić is the editor-in-chief at the Serbian portal FakeNews Tracker and collaborates with the…

2 days ago

Two Norwegian Sites, One Kremlin Script: Derimot.no and Steigan.no Under the Microscope

Pro-Russian propaganda in Norway rarely looks like a bot swarm or a shadowy “state channel”.…

6 days ago

Pro-Kremlin outlets weaponize Russia’s Oreshnik strike on Ukraine to intimidate Europe, justify aggression

A coordinated propaganda campaign across Central and Western Europe portrays Russia's Oreshnik missile strike on…

1 week ago

How a Russian Fake Nearly Reignited Ukrainian–Hungarian Tensions, and Why Pro-Orbán Media Took the Bait

In recent years, Viktor Orbán has earned a reputation as the most openly anti-Ukrainian leader…

1 week ago

Russian “Z-Nuns” in Sweden: How Churches Became a Channel for Espionage and War Financing

What began as a seemingly harmless act of charity in Swedish churches has turned into…

1 week ago