European Union Imposes Sanctions on Russian Military Hackers Over Widespread Cyberattacks
In a coordinated effort, the European Union (EU) and the United Kingdom have jointly sanctioned dozens of Russian individuals and entities accused of coordinating a network of hacking groups responsible for attacks across Europe. The sanctions target nine individuals and four entities, including high-ranking officials from Russia’s military intelligence agency (GRU), cybercriminals, and private companies allegedly linked to the Kremlin.
The GRU officers in question, Vyacheslav Stafeyev, Ivan Senin, and Ivan Kasyanenko, are accused of directing cyber and hybrid operations targeting European critical infrastructure. These individuals have been sanctioned by both the EU and the UK, with officials claiming they played a key role in orchestrating a series of high-profile attacks.
One such attack occurred in December when dozens of entities in Poland’s power grid were hit by a cyberattack that damaged operational technology (OT) equipment beyond repair. The incident was later attributed to the Russian state-backed hacking group Sandworm, which attempted to deploy destructive malware and disable compromised devices. More recently, Poland blocked another cyberattack targeting the IT infrastructure of its main government nuclear research institute.
The EU has also publicly identified the 16th Centre of Russia’s Federal Security Service (FSB) as controlling several cyber threat groups, including the notorious Turla hacking group. The FSB unit has spent years targeting government networks and critical infrastructure in multiple European countries, running complex cyberespionage campaigns since 2010.
Turla hackers were linked to a recent failed strike targeting Poland’s critical infrastructure, which could have cut power to over half a million people during winter. The EU has condemned Russia’s behavior, labeling it as a “misuse of the cyber ecosystem” that targets public services and critical infrastructure, causing disruptions and financial losses.
The sanctions come on the heels of the European Commission’s proposal for new cybersecurity legislation aimed at strengthening defenses against cybercrime and state-backed threat groups targeting European critical infrastructure. This move follows a series of similar sanctions imposed on Chinese and Iranian companies accused of coordinating cyberattacks targeting EU member states’ critical infrastructure in March.
As the threat landscape continues to evolve, it’s essential for security teams to stay vigilant and proactive in detecting and preventing attacks. With many breaches slipping through detection, breach and attack simulation tests can help strengthen defenses and prevent unseen threats from causing harm. By staying informed about emerging threats and adapting to new security measures, organizations can better protect themselves against the ever-growing number of cyberattacks targeting European critical infrastructure.
Source: Bleeping Computer — 2026-07-13