European officials and industry reporting have highlighted a widening threat to critical infrastructure as cyber risks to electricity networks grow alongside military monitoring of subsea assets. An International Energy Agency assessment cited in Spanish reporting said cyberattacks on critical energy infrastructure rose 30% in 2023 to 420 million globally, while attacks on energy service companies have quadrupled since 2020. Recent incidents include the 2022 satellite communications disruption that knocked 5,800 wind turbines offline in Germany and breaches affecting more than 20 Danish energy companies. Authorities have also warned that compromised smart meters, solar inverters, and battery systems could be used to destabilize grid frequency or trigger broader outages.
The concern extends beyond direct hacking to supply-chain and geopolitical exposure tied to digitally connected clean-energy equipment and other strategic infrastructure. European and U.S. authorities reviewed communications modules in imported solar and battery systems, while Lithuania moved to block remote access by Chinese suppliers to solar, wind, and storage control platforms. Separately, the UK said British and Norwegian forces carried out a month-long operation to track a Russian attack submarine and two GUGI-linked spy submarines near North Atlantic cables and pipelines, underscoring fears that hostile states could target the seabed networks that carry 99% of international telecommunications traffic and support a major share of regional energy supplies.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
8 events from the most recent confirmed update back to the earliest known activity.
On 2026-04-09, the UK revealed the joint operation with Norway and said the Russian vessels withdrew. Defence Secretary John Healey said no damage to UK cables or pipelines was found and warned against interference with critical seabed infrastructure.
Before April 2026, British and Norwegian forces carried out a month-long secret operation in the North Atlantic to monitor and deter three suspected Russian spy submarines near undersea cables and pipelines north of the UK.
In 2025, U.S. and EU authorities examined communication modules in imported solar and battery equipment over concerns they could enable remote manipulation or strategic disruption.
In 2024, Lithuania barred Chinese suppliers from remotely accessing control systems for solar, wind, and energy storage installations, citing national security concerns.
The International Energy Agency reported that cyberattacks on critical energy infrastructure reached 420 million worldwide in 2023, up 30% from the previous year.
About a year after the February 2022 turbine disruption, more than 20 Danish energy companies were hit by security breaches, marking a significant multi-victim incident in the Nordic energy sector.
By 2023, attacks on energy service companies had quadrupled compared with 2020 levels, reflecting a sustained escalation in targeting of the energy sector.
In February 2022, a satellite communications disruption affected 5,800 wind turbines in Germany, illustrating how attacks on supporting communications infrastructure can disrupt renewable energy operations.
2 references tracked. Mallory keeps watching after this page renders.
elmundo.es
Open sourceelmundo.es
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.