Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
Back to intelligence
government-diplomatic-threatstate-sponsored-espionageai-enabled-threat-activityidentity-impersonation-fraud

US Cyber Command Disrupted Russian Election Influence Operations as Federal Defenses Eroded

Updated 28d agoFirst seen May 1, 20266 sources

US Cyber Command secretly targeted at least two Russian companies involved in covert online influence activity ahead of the 2024 US election, according to reporting that said the operation was part of a wider federal effort with the FBI, DHS, and other agencies to expose and disrupt foreign meddling aimed at voters in key swing states. The campaign reportedly pushed anti-Ukraine and anti-politician narratives, and officials said the US action slowed the Russian operation even though propaganda content continued through Election Day. The activity fits a longer pattern of Russian interference in US politics, following earlier US government findings that Moscow targeted election systems in 2016 and subsequent Justice Department charges against Russian individuals and companies tied to interference operations.

Officials and former officials warn that many of the structures built after the 2016 election to counter foreign influence have since been dismantled, reduced, or paused, including functions at ODNI, the FBI, the State Department, and CISA. The rollback comes despite continued threats from Russian, Chinese, and Iranian-linked actors using fake websites, AI-enabled propaganda, and cyber activity affecting election infrastructure, raising concerns that the United States has less visibility and fewer coordinated defenses in place for future elections.

Share:
US Cyber Command Disrupted Russian Election Influence Operations as Federal Defenses Eroded
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

8 events from the most recent confirmed update back to the earliest known activity.

8 EVENTS
Jan 28, 20265mo ago

US Cyber Command secretly disrupts Russian influence operators before 2024 vote

Weeks before the 2024 US election, US Cyber Command reportedly conducted a secret operation against at least two Russian companies involved in covert online influence activity targeting voters in six swing states. One source said the action slowed the Russian operation, though content production continued through Election Day.

Feb 11, 20251y ago

Trump administration dismantles parts of federal counter-influence apparatus

After taking office for a second term, the Trump administration reportedly disbanded, downsized, or paused multiple federal programs and interagency centers focused on foreign influence threats, including units at ODNI, the FBI, State Department, and CISA. Current and former officials warned the cuts reduced visibility into threats and weakened support for election officials ahead of the 2026 midterms.

Nov 5, 20242y ago

Broader US agencies work to expose and disrupt 2024 election meddling

During the 2024 election period, agencies including the FBI and DHS participated in a broader effort to expose and disrupt foreign meddling by Russia and Iran. The campaign addressed propaganda, fake websites, AI-enabled influence content, and cyber incidents affecting election infrastructure.

Sep 4, 20242y ago

US announces charges, sanctions, and domain seizures over Russian 2024 influence op

The Biden administration unveiled a major response to an alleged Russian government-backed campaign targeting the 2024 US election, including criminal charges against two Russian nationals, sanctions on 10 individuals and entities, and the seizure of 32 internet domains. US officials said the operation used fake personas, fake news sites, and covert funding to push pro-Republican narratives and target swing-state voters.

Biden administration announces major actions to tackle Russian efforts to influence 2024 election | CNN Politics
Feb 16, 20188y ago

US builds interagency defenses against foreign election influence

In the years after 2016, the US government established and expanded programs across agencies including the FBI, DHS, ODNI, State Department, and CISA to expose and disrupt foreign influence operations. These structures formed the basis of later election-security efforts.

DOJ indicts Russians and Russian firms over election interference scheme

A federal grand jury indicted 13 Russian individuals and three Russian companies for a scheme to interfere in the US political system. The case publicly detailed alleged Russian social media and influence operations targeting American politics.

Dec 11, 201610y ago

Obama administration concludes Russia meddled in the 2016 election

By December 2016, the Obama administration had concluded that Russia interfered in the US election, and intelligence agencies later assessed the effort was intended, at least in later stages, to benefit Donald Trump. Senior lawmakers from both parties called for investigation and deterrence measures.

Oct 7, 201610y ago

US formally blames Russia for targeting election systems

The US government publicly accused the Russian government of directing compromises and disclosures tied to US political organizations and of targeting state election systems. This marked a major official attribution of foreign interference in the 2016 election.

LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

5 LINKEDOpen in app
Organizations
5 linked
Recorded FutureMeta PlatformsCable News NetworkXAlethea Group
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.