The record
Written from the 1 report below. Nothing here is unsourced.
- Dutch intelligence agencies AIVD and MIVD said in a July 10 advisory that a Russian intelligence service is systematically hijacking internet-connected security cameras across Europe and Ukraine to monitor military transport routes, weapons shipments to Kyiv, and Ukrainian troop locations.
- In Ukraine, the camera access has reportedly been used in attempts to neutralise Ukrainian military personnel and destroy equipment, while across EU and NATO states it is collecting broader military intelligence.
- The hackers typically get in through default passwords, obsolete firmware, and unchanged factory settings, then use image-recognition software to search footage for military vehicles.
- Security firm Censys counted over 87,000 internet-connected cameras running services matching known-exploited vulnerabilities across the EU, NATO members, and Ukraine, though only a small number of confirmed breaches were found in the Netherlands, all near military logistics routes.
What to watch next
- Whether Censys clarifies if its counts are version matches alone or confirm vulnerable configurations, and the evidence behind classifying the two CVEs as exploited in the wild
- Whether camera-derived intelligence starts being used for military attacks outside Ukraine, which the Dutch services say they have not yet observed
- Whether other European governments issue similar advisories or warnings to organisations running cameras on military logistics routes
Coverage1
1 report
English national1
All filed from India
Named Ukraine · Netherlands · Apache HTTP Server · Dropbear SSH · AIVD · Censys · CISA · Martijn Grooten · MIVD · Russian Intelligence
The 1 report is listed beside the record.
Ask this story
Answers cite the reports above, or say they can't.
