Russia's Storm-1516 Targets French Candidate Philippe with Disinformation
Article Content
- •Storm-1516 targeted Édouard Philippe with false health claims as part of election interference.
- •This is the first documented Russian disinformation operation against a French presidential candidate.
- •The campaign reflects ongoing Russian efforts to influence Western elections and public opinion.
The Russian disinformation network Storm-1516 has launched a campaign against Édouard Philippe, a declared candidate for the French presidency, spreading false claims about his health on social media. This marks the first documented operation by a Russian disinformation network aimed specifically at a French presidential candidate. French intelligence agencies confirmed the campaign's existence but did not disclose specific details about the false claims or how they were linked to Storm-1516. The network has been active since 2023 and is believed to be associated with Russian military intelligence. Philippe, who served as Prime Minister from 2017 to 2020, announced his candidacy for the 2027 presidential election. The campaign is part of a broader trend of Russian influence operations targeting Western democracies. The French security services emphasized that such disinformation campaigns often go unnoticed due to the nature of the narratives they promote.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (58)
Following this threat?
Track APT 28 and Booking.com in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…