Russian drone strike hits Ukrainian security service headquarters, Zelensky says
Ukrainian President Volodymyr Zelensky said Russian forces struck the headquarters of Ukraine's security service in a drone attack. Moscow is still willing to hit core state security infrastructure, even while diplomatic activity around the conflict continues. Despite periodic ceasefire talk and shuttle diplomacy, the war's operational tempo remains high, and strikes increasingly reach rear-area command, intelligence and security sites far behind the front line. If your organisation has staff, assets or supply chains touching Ukraine, any location co-located with state security functions, or seen as linked to them, carries a persistent risk. That includes logistics hubs that support the security services. Review duty-of-care plans for staff based in or transiting Ukraine, and keep evacuation and communications protocols up to date. Treat any government-adjacent site as a higher-risk zone, whatever the stated progress on a ceasefire. Review insurance and travel risk ratings in the same light, and feed monitoring of strike patterns directly into itinerary and site-selection decisions for Ukraine-linked operations.
Sabotage campaign against Europe escalates, with Russia the chief suspect
A spiralling campaign of sabotage across Europe, from undersea cable damage to arson and infrastructure attacks, is increasingly attributed to Russian state-linked actors. It is part of a broader hybrid warfare strategy against European states that support Ukraine. Unlike conventional military action, the campaign relies on deniable, low-cost operations carried out by proxies, criminal networks or unwitting recruits. That makes attribution and deterrence difficult, and it puts private-sector infrastructure, logistics providers and critical facilities squarely within the threat envelope. In practice, facilities near ports, energy assets, telecoms nodes and transport corridors should be treated as possible secondary targets, even without direct political exposure. Tighten perimeter and access controls, and screen contractors and temporary staff more thoroughly. Sweep sensitive facilities for surveillance and tracking devices, and set up a direct line to the national coordination centres that monitor hybrid threats. Test your incident reporting chain so that suspicious activity, unexplained fires or intrusions near critical infrastructure are escalated fast. Business continuity plans should assume a materially higher baseline of hybrid disruption for the rest of the year.
Mission Support's TSCM sweeps look for the surveillance and tracking devices planted in hybrid sabotage campaigns against critical infrastructure.
Enterprises given six-month warning to prepare for automated cyberattacks
Industry analysis cited by Dark Reading warns that organisations have a narrowing window, roughly six months, before AI-driven automated attack tools become widely available to threat actors. That would shrink the time between vulnerability disclosure and exploitation to a fraction of what defenders have historically relied on. Traditional patch cycles and manual triage will then no longer give adequate protection, particularly for internet-facing systems, remote access infrastructure and third-party integrations. Boards and security leads should use this as a reason to mature vulnerability management now, rather than wait for a confirmed incident. Practical steps: move from scheduled cycles to continuous, risk-prioritised patching, and expand monitoring of your external attack surface. Stress-test incident response playbooks against compressed attack timelines. Bring executive and physical security teams into cyber incident escalation, because automated attacks can disrupt building systems, access control and operational technology as well as IT networks. Review cyber-resilience budgets and staffing against this faster timeline before year-end planning closes.
Mission Support's cyber security team helps you shorten patch and response times before automated attack tools become widely available.