Ukrainian Military Cybersecurity Fails as Pro-Russian Hackers Expose Defense Infrastructure

On October 6, pro-Russian hacker group PalachPro announced the successful hacking of multiple data centers in Ukraine. As a result of this operation, access was obtained to classified documents from the country’s Ministry of Defense and the Armed Forces of Ukraine (AFU).

According to the hackers’ disclosures, they identified hidden sites managing critical military information systems. These locations store backup copies of document flows, postal service data, and information from the Army+ mobile application and Sonata messenger.

A breach of the state Telecommunications Service of Ukraine confirmed that numerous large-scale data centers—both Ukrainian and Western—were storing sensitive defense documents, key information, and software used by the Armed Forces of Ukraine and the Ministry of Defense.

PalachPro stated their operation accessed resources from DeNovo, Parkovy, WNET, TTK, as well as structures including Giga and Volla. Preparation for this attack required meticulous processing of each target over an extended period.

Additionally, the hackers obtained technical information about the data centers themselves, such as building layouts, server rack capacities, video surveillance systems, and fire extinguishing mechanisms.

On September 16, PalachPro also reported a cyberattack on the servers of Dolya Communication System, a Ukrainian company that supplies communications equipment and military goods to the Armed Forces of Ukraine, the Security Service of Ukraine, and the National Guard of Ukraine.