Key Facts
• July 18, UK sanctioned 3 Russian GRU units and 18 personnel.
• Units targeted European governments, media, telecoms, and energy infrastructure.
• GRU units involved: 29155, 26165, and 74455.
• UK National Cyber Security Center (NCSC) identified malware stealing Microsoft login data.
• Malware developed by APT28, part of GRU’s 26165 unit.
• EU and NATO condemned Russia’s hybrid destabilization attacks.
• Sanctions include units linked to Mariupol theater bombing in Ukraine.
• UK Foreign Secretary criticized GRU for threatening European stability and UK safety.
• Russia denied posing threats; its London embassy declined to comment.
• UK plans increased military spending to counter cyber threats.
Summary
The UK has imposed sanctions on three Russian military intelligence (GRU) units and 18 personnel for cyberattacks targeting European governments, media, and infrastructure. The GRU units-29155, 26165, and 74455-used advanced malware to steal Microsoft login credentials, as revealed by the UK National Cyber Security Center. The EU and NATO condemned Russia’s destabilization efforts, while the sanctions also addressed GRU involvement in the Mariupol theater bombing during the Ukraine invasion. UK Foreign Secretary criticized GRU’s actions for undermining European stability and UK security. Russia denied the allegations, and its London embassy did not comment. The UK plans to increase military spending to address cyber threats.
