Russian Hackers Target US Nuclear Scientists, Defense Firms in 1-Year Espionage Campaign
Updated
Updated · CNN · Jul 23
Russian Hackers Target US Nuclear Scientists, Defense Firms in 1-Year Espionage Campaign
3 articles · Updated · CNN · Jul 23
Summary
US and allied agencies on Thursday warned that a Russian hacking group has spent the past year targeting nuclear scientists, defense contractors and government staff in an ongoing espionage campaign.
Proofpoint said the hackers focused on email servers at US nuclear installations and the defense industrial base, apparently seeking nuclear fusion advances and intelligence on Western military logistics and policy.
The group used a rare email exploit that required only opening a message, letting it steal up to 3 months of communications and an organization’s full email directory.
The advisory said the hackers tested techniques on Ukrainian targets before deploying them against NATO countries, a pattern UK officials called particularly concerning.
Thai authorities arrested an alleged member in November, but US officials say Russian cyber targeting of the United States has risen again over the last year.
How did a silent email exploit allow hackers to steal guarded nuclear fusion secrets without a single click?
Why is Russia using Ukrainian networks as a live testing ground before unleashing zero-click cyberattacks on NATO?
If hackers bypass two-factor authentication just by you previewing an email, is any defense system truly secure?
2025–2026 Russian State-Sponsored Hacking Surge: The Void Blizzard Zimbra Exploit, Ukraine Testbench, and NATO’s Cyber Defense Shift
Overview
In 2025–2026, a global crackdown on Russian state-sponsored hackers unfolded after Thailand launched a campaign to cooperate with international warrants, leading to the arrest and extradition of Denis Obrezko. This coincided with the emergence of a critical zero-click Zimbra vulnerability, which allowed Russian groups like Void Blizzard to steal sensitive emails without user interaction. These advanced cyber weapons were first tested in Ukraine before being used against NATO countries, prompting a coalition of 16 nations to issue a joint cybersecurity advisory. As Russia faced sanctions, its hackers targeted Western technology to bypass restrictions, while NATO expanded its toolkit to counter escalating hybrid threats.