From Malware to Murder — The Kremlin’s Digital Death March Faces Sanctions
In a bold escalation of cyber accountability, the United Kingdom has sanctioned 18 Russian GRU intelligence officers, citing their direct roles in cyber operations that laid the groundwork for mass civilian deaths in Ukraine and assassination attempts abroad.
According to Britain’s Foreign Secretary David Lammy, the sanctions aren’t just punitive—they are a geopolitical signal that Russian hybrid threats will no longer be tolerated under the fog of war or the veil of cyberspace.
“The Kremlin should be in no doubt: we see what they are trying to do in the shadows—and we won’t tolerate it,” Lammy declared. “GRU spies are running a campaign to destabilize Europe, undermine Ukraine’s sovereignty, and threaten the safety of British citizens.”
These sanctions follow growing revelations about GRU units conducting digital reconnaissance that directly enabled missile strikes, disinformation warfare, and sabotage operations across Ukraine and allied territories.
The Units Behind the Chaos: A Breakdown of Russia’s Cyber War Machine
The British government has officially sanctioned three key GRU units, each with a notorious record in digital subversion and real-world destruction:
Unit 74455 (aka Sandworm / Voodoo Bear):
One of the most destructive cyber groups on the planet, credited with:
- Attacks on Ukraine’s power grid (2015-2016)
- The NotPetya malware that crippled international businesses
- Deployment of WhisperGate malware during the run-up to Russia’s 2022 invasion
Unit 26165 (aka Fancy Bear / Blue Delta):
Known for:
- Hacking Western logistics firms and government agencies
- Deploying AUTHENTIC ANTICS malware, a stealth tool that persists in Microsoft cloud environments
- Playing a suspected role in cyber prep for missile strikes on Mariupol, including the Mariupol Theatre massacre, which killed hundreds of civilians
Unit 29155:
Infamous for its black-ops track record:
- Allegedly behind the Salisbury Novichok poisoning of former GRU officer Sergei Skripal and his daughter Yulia
- Linked to covert sabotage and physical assassinations throughout Europe
The U.K.’s National Cyber Security Centre (NCSC) confirmed that these units have conducted both information warfare and infrastructure attacks, describing the threat level as persistent and “beyond conventional cybercrime.”
AUTHENTIC ANTICS: The Malware No One Saw Coming
Among the most alarming discoveries from the British investigation was a stealthy malware toolkit called AUTHENTIC ANTICS—a signature piece of digital espionage designed by Unit 26165. According to the NCSC:
“It was specifically designed to enable persistent endpoint access to Microsoft cloud accounts by blending in with legitimate activity. Emails were sent to actor-controlled inboxes without appearing in the user’s ‘sent’ folder.”
This malware allowed GRU officers to:
- Maintain invisible access to sensitive accounts
- Exfiltrate data in real-time
- Use compromised infrastructure to redirect internal email traffic
Paul Chichester, NCSC’s Director of Operations, warned that the GRU’s operational maturity should not be underestimated:
“Our investigations over many years show that network defenders should not take this threat for granted. Monitoring and protective action are essential.”
Names on the List: Who Got Sanctioned
The 18 GRU operatives sanctioned include notorious cyber actors already listed in U.S. indictments and newly revealed figures previously unknown in Western intelligence disclosures.
Among the notable sanctioned officers:
- Andrey Eduardovich Baranov (Unit 26165) – Previously unlisted; now exposed.
- Sergey Sergeyevich Vasyuk (Unit 26165) – Another new name in open-source intelligence.
- Yuriy Leonidovich Shikolenko – Previously named only in German intelligence reports; now linked to 26165.
Here is a subset of the sanctioned individuals and their affiliations:
| Name | GRU Unit |
|---|---|
| Sergey Aleksandrovich Morgachev | 26165 |
| Viktor Borisovich Netyksho | 26165 |
| Aleksey Sergeyevich Morenets | 26165 |
| Yevgeniy Mikhaylovich Serebriakov | 74455 |
| Artem Valeryvich Ochichenko | 74455 |
| Vladislav Yevgenyevich Borovkov | 29155 |
| Anatoliy Sergeyevich Kovalev | 74455 |
| Dmitriy Aleksandrovich Mikhaylov | Not Specified |
These figures are now subject to travel bans, asset freezes, and coordinated diplomatic censure from both the EU Council and NATO’s North Atlantic Council, which have formally backed the U.K.’s move.
The Real-World Fallout: From Digital Surveillance to Mass Murder
The British government has drawn a direct line between cyber operations and battlefield outcomes. According to intelligence assessments, digital reconnaissance by these GRU units enabled:
- The Mariupol Theatre bombing, which left hundreds of civilians dead, including children
- Targeting of Ukrainian critical infrastructure
- The hacking of Yulia Skripal’s personal device five years before the Novichok poisoning in the U.K.
This isn’t abstract cyber warfare. It’s cyber-enabled targeting of human lives.
A New Front in the Information War: Africa’s Digital Battlefield
In addition to sanctioning GRU personnel, the U.K. also designated three senior figures from the “African Initiative”, a Russian-backed disinformation network operating in West Africa.
According to British intelligence, this network:
- Was established and funded by Russian intelligence
- Operated as a social media content mill
- Spread false narratives aimed at undermining global health initiatives and pushing Kremlin-aligned conspiracy theories
This further underscores how Russia’s cyber strategy now extends across continents, infiltrating both critical infrastructure and the information ecosystems of developing nations.
Final Verdict: The Shadows Are No Longer Safe
The Kremlin’s cyber playbook has evolved beyond traditional espionage. It now fuses digital intrusion with physical destruction, psychological warfare, and political subversion.
With these sanctions, the UK has drawn a visible line across the invisible battlefield—a declaration that the veil of cyberspace will no longer protect war criminals in uniform or keystroke assassins cloaked in military clearance.
TRJ BLACK FILE | CYBER OPS INTEL
Sanctioned Units: GRU 26165 (Fancy Bear), GRU 74455 (Sandworm), GRU 29155
Sanctioned Personnel: 18 total – including previously unnamed operatives
Known Operations: AUTHENTIC ANTICS malware, WhisperGate, Mariupol targeting, Salisbury poisoning
Malware Type: Endpoint persistence malware, cloud credential exploit, data exfiltration
Attribution Sources: UK Foreign Office, NCSC, GCHQ, US DOJ, NATO, EU Council
Geopolitical Implication: Heightened NATO-Russia cyber standoff, expanded hybrid warfare footprint into Africa
🔥 NOW AVAILABLE! 🔥
📖 INK & FIRE: BOOK 1 📖
A bold and unapologetic collection of poetry that ignites the soul. Ink & Fire dives deep into raw emotions, truth, and the human experience—unfiltered and untamed.
🔥 Kindle Edition 👉 https://a.co/d/9EoGKzh
🔥 Paperback 👉 https://a.co/d/9EoGKzh
🔥 Hardcover Edition 👉 https://a.co/d/0ITmDIB
🔥 NOW AVAILABLE! 🔥
📖 INK & FIRE: BOOK 2 📖
A bold and unapologetic collection of poetry that ignites the soul. Ink & Fire dives deep into raw emotions, truth, and the human experience—unfiltered and untamed just like the first one.
🔥 Kindle Edition 👉 https://a.co/d/1xlx7J2
🔥 Paperback 👉 https://a.co/d/a7vFHN6
🔥 Hardcover Edition 👉 https://a.co/d/efhu1ON
Get your copy today and experience poetry like never before. #InkAndFire #PoetryUnleashed #FuelTheFire
🚨 NOW AVAILABLE! 🚨
📖 THE INEVITABLE: THE DAWN OF A NEW ERA 📖
A powerful, eye-opening read that challenges the status quo and explores the future unfolding before us. Dive into a journey of truth, change, and the forces shaping our world.
🔥 Kindle Edition 👉 https://a.co/d/0FzX6MH
🔥 Paperback 👉 https://a.co/d/2IsxLof
🔥 Hardcover Edition 👉 https://a.co/d/bz01raP
Get your copy today and be part of the new era. #TheInevitable #TruthUnveiled #NewEra
🚀 NOW AVAILABLE! 🚀
📖 THE FORGOTTEN OUTPOST 📖
The Cold War Moon Base They Swore Never Existed
What if the moon landing was just the cover story?
Dive into the boldest investigation The Realist Juggernaut has ever published—featuring declassified files, ghost missions, whistleblower testimony, and black-budget secrets buried in lunar dust.
🔥 Kindle Edition 👉 https://a.co/d/2Mu03Iu
🛸 Paperback Coming Soon
Discover the base they never wanted you to find. TheForgottenOutpost #RealistJuggernaut #MoonBaseTruth #ColdWarSecrets #Declassified
Support truth, health, and preparedness by shopping the Alex Jones Store through our link. Every purchase helps sustain independent voices and earns us a 10% share to fuel our mission. Shop now and make a difference!
https://thealexjonesstore.com?sca_ref=7730615.EU54Mw6oyLATer7a


Hi John. I hope these sanctions have a paralyzing effect on those responsible. Russia has so many problems of its own. I wish they would focus on those instead of ruining the lives of others.
Thanks for the comment, Chris. You’re absolutely right — Russia has no shortage of internal problems, but the regime would rather deflect than rebuild. Targeting others has become a strategy of distraction. These sanctions won’t fix the root cause, but if they paralyze key actors inside the GRU and disrupt future ops, it’s a step in the right direction.
The fight now isn’t just military — it’s digital, economic, and psychological.