The Containment Era is here. →Explore

Executive Summary

In March 2026, the European Union imposed sanctions on three companies—two Chinese and one Iranian—and two individuals for their involvement in cyberattacks targeting devices and critical infrastructure across multiple EU member states. Integrity Technology Group, a Beijing-based firm, provided technical support that led to the compromise of over 65,000 devices between 2022 and 2023. Anxun Information Technology, also from China, offered hacking services aimed at critical infrastructure. The Iranian company, Emennet Pasargad, was implicated in influence campaigns and the compromise of an SMS service in Sweden. The two sanctioned individuals are co-founders of Anxun Information Technology, believed to have played significant roles in these cyberattacks.

This action underscores the EU's commitment to addressing state-sponsored cyber threats and protecting its member states' critical infrastructure. The sanctions include asset freezes and travel bans, reflecting the severity of the offenses and the EU's resolve to deter future cyberattacks.

Why This Matters Now

The EU's sanctions highlight the escalating threat of state-sponsored cyberattacks on critical infrastructure, emphasizing the need for robust cybersecurity measures and international cooperation to mitigate such risks.

Attack Path Analysis

MITRE ATT&CK® Techniques

Potential Compliance Exposure

Sector Implications

Sources

Frequently Asked Questions

The EU sanctioned Integrity Technology Group and Anxun Information Technology from China, and Emennet Pasargad from Iran, for their involvement in cyberattacks targeting critical infrastructure.

Cloud Native Security Fabric Mitigations and ControlsCNSF

Aviatrix Zero Trust CNSF is pertinent to this incident as it could have constrained the attacker's ability to exploit vulnerabilities, escalate privileges, move laterally, establish command and control channels, and exfiltrate sensitive data, thereby reducing the overall blast radius.

Initial Compromise

Control: Cloud Native Security Fabric (CNSF)

Mitigation: Implementing Aviatrix CNSF may have limited the attacker's ability to exploit vulnerabilities in internet-facing devices by enforcing strict access controls and segmenting network traffic.

Privilege Escalation

Control: Zero Trust Segmentation

Mitigation: Zero Trust Segmentation would likely have constrained the attacker's ability to escalate privileges by enforcing least-privilege access controls and limiting access to sensitive systems.

Lateral Movement

Control: East-West Traffic Security

Mitigation: East-West Traffic Security may have reduced the attacker's ability to move laterally by monitoring and controlling internal traffic between workloads.

Command & Control

Control: Multicloud Visibility & Control

Mitigation: Multicloud Visibility & Control would likely have constrained the establishment of command and control channels by providing comprehensive monitoring and control over network traffic.

Exfiltration

Control: Egress Security & Policy Enforcement

Mitigation: Egress Security & Policy Enforcement may have limited data exfiltration by enforcing strict policies on outbound traffic.

Impact (Mitigations)

By constraining data exfiltration, the potential for misuse of sensitive information in influence campaigns and misinformation efforts would likely have been reduced.

Impact at a Glance

Affected Business Functions

  • Critical Infrastructure Operations
  • Public Communication Systems
  • Media and Publishing
  • Government Services
Operational Disruption

Estimated downtime: 14 days

Financial Impact

Estimated loss: $5,000,000

Data Exposure

Personal information of 230,000 subscribers of the French magazine Charlie Hebdo; potential compromise of critical infrastructure systems in multiple EU member states.

Recommended Actions

  • Implement Zero Trust Segmentation to restrict lateral movement within the network.
  • Deploy East-West Traffic Security measures to monitor and control internal traffic flows.
  • Utilize Encrypted Traffic (HPE) solutions to protect data in transit and prevent packet sniffing.
  • Establish Multicloud Visibility & Control to detect and respond to anomalous interactions across cloud environments.
  • Enforce Egress Security & Policy Enforcement to control outbound traffic and prevent unauthorized data exfiltration.

Secure the Paths Between Cloud Workloads

A cloud-native security fabric that enforces Zero Trust across workload communication—reducing attack paths, compliance risk, and operational complexity.

Cta pattren Image