hw_fa56d4ea88cab1b3
Pro-Russian cyber group targets Lithuanian military system.
A pro-Russian hacking collective calling itself “Just Evil” claimed that it had infiltrated the military systems of Lithuania and other NATO countries, and specifically mentioned gaining access to Lithuania’s ILIAS distance-learning system used by the Lithuanian Armed Forces. The Lithuanian Armed Forces detected an unauthorised login attempt on 3 February to a user account in ILIAS, a training platform critical for military education. Authorities responded by disabling three servers hosted by the State Telecommunication Centre of Lithuania to mitigate potential damage and isolate the system. The event was domestic—within Lithuania—but its impact and claims extend across the Baltic region and NATO frameworks. The dynamics indicate that Russia-aligned cyber actors are shifting focus toward allied states’ defence training and readiness platforms, not just civilian infrastructure. For Lithuania this underscores that hybrid warfare involves not only visible sabotage or air/maritime incursions but also stealthy cyber operations aimed at military preparedness. This incident adds to the broader pattern of Russian hybrid tactics since 2022, where non-kinetic attacks are used to erode resilience, create uncertainty and exploit vulnerabilities in allied nations’ defense ecosystems.
E/M/R/S scores
- EExistence0/4 · Not assessed
- MIntent0/4 · Not assessed
- RRussian actor link0/4 · Not assessed
- SRussian state responsibility0/4 · Not assessed
Facts
No facts
Sources
-
- Role
- discovery_lead
- Date
- 2024-02-12T23:00:00Z
A pro-Russian hacking collective calling itself “Just Evil” claimed that it had infiltrated the military systems of Lithuania and other NATO countries, and specifically mentioned gaining access to Lithuania’s ILIAS distance-learning system used by the Lithuanian Armed Forces. The Lithuanian Armed Forces detected an unauthorised login attempt on 3 February to a user account in ILIAS, a training platform critical for military education. Authorities responded by disabling three servers hosted by the State Telecommunication Centre of Lithuania to mitigate potential damage and isolate the system. The event was domestic—within Lithuania—but its impact and claims extend across the Baltic region and NATO frameworks. The dynamics indicate that Russia-aligned cyber actors are shifting focus toward allied states’ defence training and readiness platforms, not just civilian infrastructure. For Lithuania this underscores that hybrid warfare involves not only visible sabotage or air/maritime incursions but also stealthy cyber operations aimed at military preparedness. This incident adds to the broader pattern of Russian hybrid tactics since 2022, where non-kinetic attacks are used to erode resilience, create uncertainty and exploit vulnerabilities in allied nations’ defense ecosystems.