Drooid Logo
Back to story perspectives

Full Breakdown

Russia’s Multi-Domain Hybrid Campaign Against the United Kingdom

6/17/2026, 10:56:49 PM

The Escalating Hybrid Threat

In a series of incidents spanning sea, land, cyber and information spaces, Russian actors have targeted the United Kingdom. Russian warships fired warning shots over a British yacht in the English Channel; Royal Marine Commandos seized the sanctioned oil tanker MV Smyrtos, alleged to be part of Russia’s “shadow fleet.” Simultaneously, sabotage operations—including arson of a warehouse supplying Ukraine, exploding neck-massage pillows, and GPS spoofing of thousands of commercial flights—have been linked to Russian-aligned proxies. Cyber intrusions attributed to Russian military intelligence and coordinated disinformation campaigns have further amplified the pressure on UK institutions.

Background and Context

Russia’s hybrid approach blends conventional military activity with illicit logistics, covert sabotage, and state-linked information warfare. The shadow fleet, composed of sanctioned tankers, enables oil sales while providing platforms for covert operations such as drone launches and under-sea cable interference. Russian intelligence services have historically exploited far-right online ecosystems to spread destabilising narratives, a pattern that resurfaces in the current UK-focused campaign.

Timeline of Recent Incidents

  • April 2024 – British warships and aircraft tracked a Russian attack submarine near UK waters.
  • November 2024 – The Russian spy ship *Yantar* operated close to the British coast; Royal Navy vessels reported GPS jamming and laser illumination of RAF pilots.
  • December 2024 – Suspected Russian GPS spoofing affected thousands of flights operated by British Airways, Jet2 and easyJet.
  • July 2024 – Exploding neck-massage pillows, linked to a Russian-backed proxy group, detonated at a DHL depot in Birmingham.
  • March 2024 – A warehouse in East London storing Ukrainian aid supplies was set ablaze.
  • May 2025 – Three arson attacks targeted property associated with Labour leader Sir Keir Starmer; a former prime minister’s former car was also burned.

Data and Statistics

  • Hundreds of sanctioned Russian tankers have traversed UK waters since new seizure powers were introduced.
  • Thousands of commercial flights have experienced suspected GPS spoofing attributed to Russian actors.
  • Multiple local authorities reported service disruptions from cyber attacks in October 2024.

Official Statements and Responses

Prime Minister Sir Keir Starmer labelled the warning-shot incident “reckless.” Former defence secretary John Healey warned that investment in Britain’s protective capabilities “falls well short of what is required.” The Royal Navy described the *Yantar* encounter as involving “GPS jamming” and “reckless and dangerous” laser targeting of pilots. The Foreign Office announced sanctions aimed at “destabilising our democracies, weakening our critical national infrastructure, and undermining our interests.”

Criticism and Opposition

Security analysts have criticised the UK’s preparedness, noting that defence funding has not kept pace with the expanding hybrid threat. Experts also warned that emerging AI tools and deep-fakes could increase the sophistication of Russian disinformation, complicating attribution and response.

On-the-Ground Reports

Retired couple Alan and Jane Kelvey, aboard the yacht *Bright Future*, reported no radio contact before the Russian warship fired warning shots. A DHL depot employee described the neck-massage pillow explosion as “a sudden, intense fireball.” Police investigations linked the May 2025 arson attacks to a Telegram account identified as a Russian diplomat, though direct state involvement remains unproven.

Conflicting Reports and Gaps

Investigators have not definitively linked the Starmer-related arsons to the Russian state, despite tactical similarities to known Russian sabotage. Attribution of many GPS-spoofing incidents remains “suspected” rather than confirmed, leaving the full scope of maritime and aviation interference unclear.

Verbatim Quotes

  • “We are now operating in a space between peace and war,” — Blaise Metreweli, MI6 chief
  • “There’s always been an association of the shadow fleet not just as a sanctions evasion risk, but also a national security one.” — Gonzalo Saiz Erausquin, research fellow, Royal United Services Institute
  • “And Western leaders, by comparison, are weak and losing their relevance.” — Melanie Smith, information-operations expert, Institute for Strategic Dialogue
  • “designed to destabilise our democracies, weaken our critical national infrastructure, and undermine our interests” — Foreign Office statement
  • “capable and irresponsible threat actor in cyberspace” — National Cyber Security Centre description

What’s Next

The UK government plans further sanctions against individuals and entities facilitating Russian information warfare. Intelligence agencies will intensify monitoring of shadow-fleet movements and expand cyber-defence measures. Officials also intend to develop counter-deep-fake capabilities to mitigate future disinformation campaigns.