Russia

Country

Cyberattack on Russia’s Mercury System Halts Food Shipments, Disrupts Supply Chain

October 22, 2025

Rosselkhoznadzor’s digital systems (including VetIS and its Mercury platform) were targeted by a large‑scale DDoS attack beginning on October 22, 2025, which disrupted food shipments and the issuance of electronic veterinary certificates for meat, dairy and baby food products. The production movement was paralyzed for half of the day, one company manager said, adding that the lack of an emergency procedure allowing shipments without digital paperwork led to financial losses. Rosselkhoznadzor denied reports of prolonged disruptions, saying that the Mercury system was operating “as usual.”

In June 2025, a similar incident forced dairy producers to revert to paper-based certification, creating logistical chaos.

read more

Cyberattack Grounds Aeroflot Flights, Russia’s Largest Airline.

July 28, 2025

Russian airline Aeroflot was forced to cancel more than 50 round-trip flights, disrupting travel across the country. Two pro-Ukraine hacking groups claimed to have inflicted a crippling cyberattack.

A statement purporting to be from a hacking group called Silent Crow said it had carried out the operation together with Belarusian Cyberpartisans. The hackers claim to have erased 7,000 IT servers and gained control over the personal computers of employees, including senior managers.

read more

Cyberattack Slows Russia’s Drone Weaponization Effort

July 4, 2025

In July 2025, a cyberattack halted Russia’s drone weaponization network, disrupting the distribution of custom firmware that converts commercial drones into weapons and forcing hundreds of modification centers to pause operations. The attack marked a rare publicly reported cyber disruption of a militarily significant network.”

The attack impacted the volunteer group Russian Hackers for the Front, hundreds of drone modification centers, and Russian military operators reliant on the disrupted weaponized drone network

read more

Russia’s Food Logistics Paralyzed by Cyberattack

June 18, 2025

A cyberattack disrupted Russia’s dairy supply by taking offline the Mercury veterinary certification system, a government platform required to authorize the movement of animal-based products. The outage prevented producers from issuing mandatory electronic certificates, forcing a temporary switch to paper documentation. The workaround led to delays as many warehouses and retailers refused shipments without digital verification, causing logistical bottlenecks and supply interruptions.

The broader food supply chain was affected by the attack: dairy producers, livestock product suppliers, logistics operators and major retailers such as Lenta, Miratorg and Yandex Lavka, which were unable to issue mandatory electronic veterinary certificates and thus saw deliveries delayed or halted.

read more

Russian Alcohol Industry Disrupted by Cyberattack on Government-run Tracking System

May 3, 2022

A volunteer hacker group coordinated by Ukraine successfully disrupted aspects of the Russian alcohol industry by targeting EGAIS, a government-run digital accounting system for tracking alcohol production and sales in Russia. Several private companies reported operational disruptions because EGAIS was unavailable.

-The glitch resulted in the suspension of operations at the Moscow Brewing Company. The MPC plant, with a capacity of 80 million decaliters per year and bottling approximately 90,000 cans per hour, suspended production on May 5.
-Fort (a wine trading company) — reportedly failed to upload about 70% of its transaction invoices during the outage, causing shipment delays.
-Ladoga — another wine producer/distributor, also experienced significant backlogs in processing documents.
-Other market participants have anonymously reported production shutdowns.

read more

Cyberattack Shutdown Russian Oil Giant Lukoil

March 26, 2025

Cyberattack hit Russian oil giant Lukoil resulting in a complete shutdown of internal systems and caused disruptions across several regions, including corporate offices and gas stations. Lukoil’s management instructed employees via SMS to shut down all work computers after an unusual error message showed on many computers. The attack resulted in partial halt in fuel distribution to gas stations & other consumers for several days.

read more

Ransomware Attack at Novabev Group Shuts down 2000 Winelab Liquor Stores in Russia

July 14, 2025

Ransomware attack caused more than 2,000 WineLab liquor stores across Russia to shut for three days. The attack hit their parent company Novabev Group. The group is one of Russia’s largest alcohol producers. Signs on WineLab doors said the stores were closed due to “technical issues.”

The attack crippled parts of the Novabev Group’s infrastructure, affecting WineLab’s point-of-sale systems and online services. The Novabev Group refused to negotiate with the attackers. Their internal IT team is working “around the clock” to restore operations and strengthen defenses against future threats.

Forbes Russia estimated lost revenue 200 million to 300 million rubles/day ($2.6 million to $3.8 million)for WineLab Cybersecurity experts interviewed by Forbes could not recall a comparable case in which a major Russian retail chain was forced to shut down entirely due to a cyberattack.

read more

More Outages at Russian Telecom Company

March 3, 2025

Russian telecom Beeline suffered a targeted distributed denial-of-service (DDoS) attack. Internet services for its over 44 million subscribers were disrupted. The attack caused difficulties accessing the company’s mobile app, website outages, and internet disruptions. The attack originated from 1,600 IP addresses.

read more

Systems Hacked at Russia’s Largest System Integrator LANIT

February 21, 2025

A significant cyber incident occurred at LANIT, a major Russian IT service and software provider, potentially impacting LLC LANTER and LLC LAN ATMservice. Russia’s National Coordination Center for Computer Incidents (NKTsKI) is warning organizations in the country’s credit and financial sector. The breach may have compromised the security of banking technology and services, including software for ATMs and payment systems, prompting warnings from Russian authorities to rotate passwords and access keys.

Russia has issued an urgent warning to its financial sector following the cyberattack.

read more