Thursday

26th May 2022

Exclusive

State-level espionage on EU tagged as 'Very High Threat'

The most successful attempts of espionage at a top EU institution are state sponsored, according to an internal document.

The restricted document presents an analysis of threats to the security of information at the General Secretariat of the Council (GSC).

Read and decide

Join EUobserver today

Become an expert on Europe

Get instant access to all articles — and 20 years of archives. 14-day free trial.

... or subscribe as a group

The GSC administers over the Council, representing member states, as well as the more politically-oriented European Council.

"The majority of discovered, successful compromises of information in the GSC are from threat source level VERY HIGH (e.g. state sponsored attacks)," notes the document, dated 26 May and obtained by this website.

The GSC is a prime target because it deals with the negotiation and adoption of EU laws, coordinates member state policies, and develops the EU's common foreign and security policy.

It also helps negotiations on international agreements.

"Any country with a conflict between their national and EU interests or which may have an interest in EU information only, may try to undertake an attack on the security of information handled in GSC," it says.

The 28-page document was drafted by the Council's security committee.

It does not provide specific examples.

But it does highlight China, noting the country had in 2016 led the world in espionage malware, followed by Russia and the rest of Europe.

"The GSC can also be attacked via systems located in EU member states," it adds.

The most common attacks include phishing emails, enticing people to either click on a link or open an attachment.

One such attack took place in late November 2018 when a phishing campaign hacked into a network at the Cypriot ministry of foreign affairs.

The network was ultra-sensitive because the European Union uses it to facilitate cooperation on foreign policy issues.

Known as COREU, the network operates between the EU states, the Council of the European Union, the EU's foreign policy branch (EEAS) and the European Commission.

Experts says the campaign had been led by the Chinese government via its Strategic Support Force of the People's Liberation Army.

State-sponsored espionage is not the only threat.

Four threat-levels

The document spells out four levels of threat.

It classifies as low amateur hackers and open source researchers. Medium is reserved for insiders who do not have privileged access to systems.

High level is for "hactivists", privileged insiders, and any organisation carrying out cyber crime.

"The insider threat (deliberate actions by GSC staff against the security of information) is rare as evidenced by past incidents (only one case)," it notes.

Very high is for those carrying out government orders to hack systems.

The Council internal document's findings was compiled by the EU's intelligence centre (Intcen), US government sources, the Computer Emergency Response Team for the EU Institutions known as CERT-EU, Kaspersky Lab, Microsoft, among others.

The probe took place throughout 2017 and was updated in November last year.

Investigation

China suspected of bio-espionage in 'heart of EU'

Chinese spies have targeted Belgian biological warfare experts, vaccine-maker GSK, and other high-tech firms in the country, Belgium's intelligence service suspects.

Opinion

Georgia, Moldova, Ukraine - the case for granting EU candidacy

Granting EU candidacy status to Georgia, Moldova and Ukraine will firmly anchor their ties with Brussels — and enable the EU to secure its place in the Black Sea region, connecting Europe to China and energy-rich Central Asia, bypassing Russia.

Opinion

The EU Parliament Covid inquiry: the questions MEPs must ask

A basic lack of transparency around the EU's vaccines procurement negotiations has prevented effective public and parliamentary scrutiny. It has also made it impossible to answer some of the key questions we put forward here.

News in Brief

  1. Dutch journalists sue EU over banned Russia TV channels
  2. EU holding €23bn of Russian bank reserves
  3. Russia speeds up passport process in occupied Ukraine
  4. Palestinian civil society denounce Metsola's Israel visit
  5. Johnson refuses to resign after Downing Street parties report
  6. EU border police has over 2,000 agents deployed
  7. Dutch tax authorities to admit to institutional racism
  8. Rutte calls for EU pension and labour reforms

Stakeholders' Highlights

  1. Nordic Council of MinistersNordic delegation visits Nordic Bridges in Canada
  2. Nordic Council of MinistersClear to proceed - green shipping corridors in the Nordic Region
  3. Nordic Council of MinistersNordic ministers agree on international climate commitments
  4. UNESDA - SOFT DRINKS EUROPEEfficient waste collection schemes, closed-loop recycling and access to recycled content are crucial to transition to a circular economy in Europe
  5. UiPathNo digital future for the EU without Intelligent Automation? Online briefing Link

Latest News

  1. EU summit will be 'unwavering' on arms for Ukraine
  2. Orbán's new state of emergency under fire
  3. EU parliament prevaricates on barring Russian lobbyists
  4. Ukraine lawyer enlists EU watchdog against Russian oil
  5. Right of Reply: Hungarian government
  6. When Reagan met Gorbachev — a history lesson for Putin
  7. Orbán oil veto to deface EU summit on Ukraine
  8. France aims for EU minimum-tax deal in June

Join EUobserver

Support quality EU news

Join us