London Daily

Focus on the big picture.
Wednesday, May 13, 2026

EU targets Russian intelligence, Chinese, North Korean companies in first ever cybercrime-related sanctions batch

EU targets Russian intelligence, Chinese, North Korean companies in first ever cybercrime-related sanctions batch

The European Union has imposed sanctions on six people and three entities, including a Russian military intelligence unit over their alleged involvement in various hacking activities, in the first ever such move from Brussels.
EU officials slapped the “Special Technologies” unit (GTsST) of the Russian military intelligence (also known as GRU) with sanctions, accusing it of being behind several high-profile cyber-attacks - including the infamous NotPetya virus that inflicted $10 billion worth of damage to the world economy in 2017.

The origins of that virus are still unclear. Yet, what is known for certain is that it targeted Russian companies just as it did foreign firms. This fact, however, never bothered any western officials blaming the NotPetya attack on Moscow.

Other supposed crimes allegedly committed by Russian intelligence include several attacks targeting Ukraine’s power grid in 2015 and 2016. While various cybersecurity experts confirmed the Ukrainian power grid was indeed targeted in cyberattacks, little is known about their origin. Some US experts, however, blamed them on the usual culprit - Russia - without providing any solid evidence.

The EU also linked the GTsST to the mysterious Sandworm hacking group. No conclusive evidence of the group’s existence has been presented to the public as of yet - though it has also been blamed for various attacks by Western media, including the very same NotPetya virus now used by the EU to impose sanctions on the GRU unit. Sandworm has also been accused of spying on NATO - and one journalist for the Wired tech website even wrote a book on its supposed activities.

The connection between the group and GRU was made by US spy agency NSA in a May press release. The NSA, which itself is infamous for its world-spanning secret surveillance activities, warned that the Sandworm hackers supposedly gained access to mail servers and took control of them. It did not provide any proof to substantiate its claims.

The EU also singled out four people it described as GTsST operatives who Dutch authorities accused of trying to hack into the OPCW wifi network, but were prevented from doing so by local intelligence.

Two Chinese nationals accused of contributing to ‘Operation Cloud Hopper’ - a series of cyberattacks aimed at stealing commercially sensitive data from multinational companies around the world - also made it onto the sanctions list.

Other names on the list include Chinese company Haitai Technology Development and a North Korean firm, Chosun Expo.

Haitai Technology Development is accused of providing “financial, technical or material support” for Operation Cloud Hopper for simply employing the two Chinese individuals included on the sanctions list. Chosun Expo, in turn, was similarly accused of facilitating the WannaCry ransomware attack, which crippled 200,000 computers in 150 countries in 2017.

That attack was attributed to the notorious Lazarus Group – an organization of hackers reportedly active at least since 2009. Although little is known about it, some experts earlier linked it to North Korea. Pyongyang repeatedly denied having anything to do with it.

Brussels has not provided any specific evidence that could prove the guilt of any of the mentioned parties.

According to EU foreign policy chief, Josep Borrell, the list of restrictions include travel bans and asset freezes. It is unclear, however, if there are in fact any accounts to freeze in the first place - or whether any of the targeted individuals planned to travel to the EU at all.

Yet, imposing the sanctions - the EU’s first related to cybercrime - seems to be a good PR stunt at the expense of perennial boogeymen Russia, China and North Korea. Indeed, the move drew quick praise from London.

The UK Foreign Office welcomed the sanctions drive and boasted that it was virtually one of the first to identify these “malicious actors” when the EU had not yet made its move. It added that the UK, which has now left the union, was “at the forefront of efforts to establish the EU Cyber Sanctions regime.”
Newsletter

Related Articles

0:00
0:00
Close
The Great Western Exit: Why Best Citizens Are Fleeing the Rich World [PODCAST]
The New Robber Barons of Intelligence: Are AI Bosses More Powerful Than Rockefeller?
The End of the Old Order [Podcast]
Britain’s Democracy Is Now a Costume
The AI Gold Rush Is Coming for America’s Last Open Spaces [Podcast]
The Pentagon’s AI Squeeze: Eight Tech Giants Get In, Anthropic Gets Shut Out [Podcast]
The War Map: Professor Jiang’s Dark Theory of Iran, Trump, China, Russia, Israel, and the Coming Global Shock [Podcast]
Labour Is No Longer a National Party [Podcast]
AI Isn’t Stealing Your Job. It’s Dismantling It Piece by Piece.
Lawyers vs Engineers: Why China Builds While America Litigates [Podcast]
Churchill’s Glass: The Drunk, the Doctor, and the Myth Britain Refuses to Sober Up From
Apple issues an unusual warning: this is how your iPhone can be hacked without you doing anything
Kennedy’s Quiet War on Antidepressants Sparks Alarm Across America’s Medical Establishment
The Met Gala Meets the Age of Billionaire Backlash
Russian Oligarch’s Superyacht Crosses Hormuz via Iran-Controlled Route
Gunfire Disrupts White House Correspondents’ Dinner as Trump Is Evacuated
A Leak, a King, and a Fracturing Alliance
Inside the Gates Foundation Turmoil: Layoffs, Scrutiny, and the Cost of Reputational Risk
UK Biobank Breach Exposes Health Data of 500,000, Listed for Sale on Chinese Platform
KPMG Cuts Around 10% of US Audit Partners After Failed Exit Push
French Police Probe Suspected Weather-Data Tampering After Unusual Polymarket Bets on Paris Temperatures
CATL Unveils Revolutionary EV Battery Tech: 1000 km Range and 7-Minute Charging Ahead of Beijing Auto Show
Crypto Scammers Capitalize on Maritime Chaos Near the Strait of Hormuz: A Rising Threat to Shipping Companies
Changi Airport: How Singapore Engineered the World’s Most Efficient Travel Experience
Power Dynamics: Apple’s Leadership Shakeup, Geopolitical Risks in the Strait of Hormuz, and Europe's Energy Strategy Amidst Global Challenges
Apple's Leadership Transition: Can New CEO John Ternus Navigate AI Challenges and Geopolitical Pressures?
Italy’s €100K Tax Gambit: Europe’s Soft Power Tax Haven
News Roundup
Microsoft lost 2.5 millions users (French government) to Linux
Privacy Problems in Microsoft Windows OS
News roundup
Péter András Magyar and the Strategic Reset of Hungary
Hungary After the Landslide — A Strategic Reset in Europe
Meghan Markle Plans Exclusive Women-Focused Retreat During Australia Visit
Starmer and Trump Hold Strategic Talks on Securing Strait of Hormuz Amid Rising Tensions
Unofficial Australia Visit by Prince Harry and Meghan Expected to Stir Tensions with Royal Circles
Pipeline Attack Cuts Significant Share of Saudi Arabia’s Oil Export Capacity
UK Stocks Rise on Ceasefire Momentum and Renewed Focus on Diplomacy
UK to Hold Further Strategic Talks on Strait of Hormuz Security
Starmer Voices Frustration as Global Tensions Drive Up UK Energy Costs
UK Students Voice Concern Over Proposal for Automatic Military Draft Registration
Rising Volatility Drives Uncertainty in UK Fuel and Petrol Prices
UK Moves to Deploy ‘Skyhammer’ Anti-Drone System to Strengthen Airspace Defense
New Analysis Explores UK Budget Mechanics in ‘Behind the Blue’ Feature
Man Arrested After Four Die in Channel Crossing Tragedy
UK Tightens Immigration Framework with New Sponsor Rules and Fee Increases
UK Foreign Secretary Highlights Impact of Intensified Strikes in Lebanon
UK Urges Inclusion of Lebanon in US-Iran Ceasefire Framework
UK Stocks Ease as Ceasefire Doubts in Middle East Weigh on Investor Confidence
UK Reassesses Cloud Strategy Amid Criticism Over Limited Support Measures
×