Icono del sitio Global Strategy

How to interpret the Russian sabotage campaign in Europe

https://global-strategy.org/russian-sabotage-campaign-europe/ How to interpret the Russian sabotage campaign in Europe 2024-11-13 18:06:59 Javier Jordán Blog post Estudios Globales Europa Rusia Zona gris y estrategias híbridas

Global Strategy Report, 15/2024

Abstract: This report examines the alleged Russian sabotage campaign in Europe, focusing on incidents in 2024 where there are well-founded suspicions of Russian intelligence involvement. The motivations behind this escalation of the conflict in the gray zone are analyzed, including Russia’s intention to weaken European support for Ukraine and the reconstituted capacity of its intelligence networks in Europe. It argues that these sabotage actions are synergistic with other hybrid strategies employed by Russia, such as cyberattacks and disinformation. The report also addresses the difficulties of deterrence and response, emphasizing the importance of law enforcement and counterintelligence action, as well as the need for effective strategic communication to raise awareness of the threat in European societies and convey a message of strength.

Keywords: Gray zone conflict, Hybrid warfare; Hybrid strategies, Intelligence, Russia, Europe.

How to cite: Jordán, Javier (2024), «How to interpret the Russian sabotage campaign in Europe», Global Strategy Report, 15/2024.


In the last few months, several incidents have been concatenated that correspond to a pattern typical of hybrid strategies. I am referring to the alleged Russian sabotage campaign on European territory. Alleged because so far there have been no judicial convictions proving the link between these criminal acts and the Russian intelligence services.

There are two reasons that make it difficult to legally determine the Kremlin’s ultimate responsibility. First, because it is to be expected that Russian intelligence (both SVR and GRU) will be taking steps to ensure plausible deniability; and second, because it is to be expected that European intelligence services will not prosecute evidence that would jeopardize their sources or cooperation with other services. As a consequence, violent acts – which a typical terrorist organization would have claimed in order to multiply the impact of political communication – are in this case shrouded in the ambiguity inherent to hybrid actions in the framework of a conflict in the gray zone.

The following is a list of the main events where there are well-founded suspicions of the involvement of Russian intelligence services.

The list is not exhaustive because it is difficult to delimit the exact contours of what is most likely a campaign orchestrated by Russian intelligence services. At the same time, the list only includes actions involving physical harm. Numerous arrests linked to Russian espionage in Europe are not the subject of this report. Nor does it include cyberattacks against critical infrastructure that would require a separate study. For example, in April 2024 the Czech Republic’s transport minister accused Russia in an interview with the Financial Times of having carried out “thousands of cyberattacks” to interfere with the rail system in Europe. Also consistent with the pattern of physical sabotage is the Russian jamming of the GPS signal in the Baltic Sea and Estonia. An action of clear authorship, albeit with ambiguous intent (Moscow can argue that it has a defensive purpose), and which in April 2024 prompted the Finnish airline Finnair to cancel its flights to Tartu airport. Russian jamming of the GPS signal had already posed similar problems for Norwegian and Finnish commercial aviation in 2022.

In addition to these incidents, there are others where so far there is no trace pointing to Russia, although at first glance they follow a similar pattern, and despite the fact that they are mentioned (without solid grounds) in some analyses as examples of the Russian campaign. Until proven otherwise, they would be false positives in the hybrid pattern. To cite a few of them:

The problem with false positives is that they amplify the impact of sabotage with a certain connection to Russian services, creating the impression of a hybrid campaign that is broader and more persistent than it really is. And to further complicate the picture, we must add the sabotage of two lines of the Nord Stream 1 and 2 gas pipelines in September 2022. An action that seemed to correspond to the pattern of Russian hybrid strategies but which investigations by the Wall Street Journal and the German international broadcaster Deutsche Welle convincingly link to a Ukrainian military authorship….

The question that arises when looking at this chain of events in 2024 is why now? If we take as valid the hypothesis that they are part of a Russian hybrid strategy, the reasons would be as follows:

As we saw in a previous article, in countering hybrid strategies it is necessary to identify, deter and respond. The Council of the European Union has already identified the Russian sabotage campaign and has begun to respond by establishing a new framework of sanctions against individuals and entities linked to it.

Deterrence is, however, more complex. Deterrence by denial loses credibility as adequate protection of all potential targets becomes impractical. Sabotage of a given facility can be deterred by tightening its security but that will only redirect to less hardened targets. Moreover, the purpose of hybrid actions is not so much destructive as disruptive, so that even the attack against the security perimeter of a critical infrastructure – properly publicized – is sufficient to cause second- and third-order impacts in the economic, social or information sphere.

On the other hand, retaliatory deterrence faces the fact that, after more than two and a half years of military support to Kiev and numerous economic sanctions packages, there is little left to threaten the Russian government with. Moreover, all these coercive measures have not conditioned the central aspects of Russian policy regarding the war in Ukraine or the use of hybrid strategies against European countries, something that is evidenced by the very campaign we are analyzing. An alternative would be to threaten to lift the veto on Ukraine’s use of European long-range munitions (Storm Shadow/SCALP missiles) against targets on Russian territory if Moscow continues the chain of sabotage. But such a decision would mean crossing a red line that on this occasion President Putin has expressly described as a casus belli. A risk difficult to take.

Therefore, the burden of the response falls primarily on police and counterintelligence action aimed at uncovering and neutralizing the SVR and GRU networks in Europe. An action that should at the same time be accompanied by strategic communication to generate awareness of the threat in European societies and to convey a message of strength in the face of the intimidating and socially divisive purpose pursued by hybrid strategies.

Additional references

Cózar Murillo Beatriz y Villanueva López, Christian D. (ed.), La guerra de Ucrania III: De la reconquista de Jersón al estancamiento, Madrid: Catarata/Ejércitos.

Jordán, Javier (2022), “La disuasión en la zona gris: una exploración teórica”, Revista Española de Ciencia Política, No 59, pp. 65-88.

Kubica, Lucjan (2024), Ukraine’s position in Russia’s strategic thinking: Domestic, regional and international order, Hybrid CoE Paper 20.

Richterova, Daniela (2024), “The Long Shadow of Soviet Sabotage Doctrine?”, War on the Rocks, August 19.

Soldatov, Andrei & Borogan, Irina (2024), “Putin’s New Agents of Chaos. How Russia’s Growing Squad of Saboteurs and Assassins Threatens the West”, Foreign Affairs, August 9.

Watling, Jack, Danylyuk, Oleksandr V & Reynolds, Nick (2024), The Threat from Russia’s Unconventional Warfare Beyond Ukraine, 2022–24. RUSI Special Report.

Salir de la versión móvil