PARIS — The Paris prosecutor’s office has launched an investigation into disinformation efforts targeting two prominent candidates in France’s upcoming presidential election, according to Agence France-Presse.
Edouard Philippe and Gabriel Attal, two former prime ministers who are high-profile contenders for the 2027 race, were reportedly the subject earlier this summer of fake news reports posted on social media aimed at undermining their campaigns.
Fabricated videos posted on X that used branding from leading French news platforms claimed Philippe, who suffers from alopecia, was diagnosed with a neurodegenerative disease, while fake reports on X and TikTok alleged Attal had Parkinson’s disease and was using drugs.
Attal denounced the reports as fake and filed a complaint. Philippe has refrained from publicly commenting on the posts, though his top allies have framed them as likely Russian interference.
Two networks that Western authorities say have links with Russia, Storm-1516 and Matriochka, were involved in the disinformation operations targeting Philippe and Attal, respectively, according to a French official with knowledge of the technical investigation led by Viginum, the French agency responsible for combating digital interference.
Storm-1516, which the French government says is tied to Russian military intelligence, was also involved in a similar disinformation operation targeting center-left MEP and likely presidential contender Raphaël Glucksmann. The prosecutor’s office announced the launch of a separate probe into that case earlier this month.
Viginum alerted the candidates and recommended that they not publicize these operations in order to avoid giving them visibility, according to the same official.
Flipping the kill switch: I survived 72 hours without US tech
The EU wants to decrease reliance on American technology. Here’s what happened when a POLITICO reporter tried to live and work without it.
By MATHIEU POLLET
Illustration by Natália Delgado/POLITICO
The first thing I noticed when I gave up American technology was the silence.
My phone usually starts up before I get out of bed, buzzing every few minutes throughout the day with calls, messages, headlines, calendar reminders and social media alerts. It’s a constant pulse that averages nearly 200 iPhone notifications on weekends and twice as many Monday-to-Friday.
But on this warm mid-summer Sunday, my life was on an unlikely version of mute. After years of reporting on Europe’s push to wean itself off U.S. tech giants and cultivate homegrown alternatives, I had decided to test my own daily habit by cutting myself off from using any American technology for 72 hours.
No iPhone. No Mac. No Slack or Teams. No Google Search or Maps. No ChatGPT. No WhatsApp or Signal. No Facebook or Instagram feeds. No credit card payments.
I wondered if I would turn into a digital monk.
For three days, I set out to live and work in Brussels as if U.S. tech had suddenly become unavailable to me overnight. It was a purposefully fictional scenario rooted in a very real European anxiety: what happens if Washington weaponizes our continent’s Silicon Valley dependence and reaches for the tech “kill switch?”
Limited versions of that scenario have already surfaced. When U.S. President Donald Trump’s administration cut off French-born International Criminal Court judge Nicolas Guillou from U.S.-linked financial and technology services, he called it a form of “civil death.”
Meanwhile, U.S. export controls in June forced Anthropic to block foreign nationals from accessing two of its most advanced AI models, offering a glimpse of what government bans on access to cutting-edge technology can look like.
Such episodes feed into mounting fears that the Trump administration could use Europe’s overreliance on U.S. tech as leverage in trade fights or disputes over EU regulations. A Proton survey released earlier this month found that 74 percent of European business leaders worry such a cutoff could disrupt their operations.
In my own little experiment, the stakes were much lower. Yet I was about to find out that replacing American tools with those built here in Europe was going to make almost everything harder — and lonelier.
Trying to live without U.S. tech, I would find out, essentially amounts to trying to live without tech at all. That was partly because, like virtually all of my fellow Europeans, I had locked myself into those consumer choices.
Dumbphones and FOMO
The early symptoms of going cold turkey looked suspiciously like withdrawal.
On that first morning, with my iPhone shut off, I reached for a Nokia brick from Finland. The so-called dumbphone is the type of device now enjoying a second life among people detoxing from screen time and is also a favorite of drug dealers seeking to avoid getting busted by any tracking and data collection.
Several hours in, I realized there were no notifications on the Nokia. Nobody calls or texts anymore. Then came the shameful part: a sense of helplessness, followed by FOMO-fueled restlessness. The world had surely kept spinning at full speed, and I was missing it. For the next few days, I would still catch myself checking the phone compulsively like an addict.
“The phone aged you instantly,” my best friend joked later that day as we traded our now-standard FaceTime video calls for a regular one. It was unclear whether he meant the muffled audio or me struggling with a new-but-actually-old device, or both.
I did notice that I was pacing up and down my flat because my usually overstimulated brain apparently couldn’t handle focusing on a voice-only call.
One instant benefit from my dumbphone: no doomscrolling in bed.
It all took me back to my first cellphone at 13, when texting meant tapping the same tiny key several times for a single letter, every SMS cost money and abbreviations and emojis were not just stylistic choices but ways to squeeze more into a message.
Teenage girls looking at their smartphones. | Nicolas Guyonnet / Hans Lucas/AFP via Getty Images
I knew my social media life would be at risk in my experiment. European alternatives such as Mastodon have gained traction since Elon Musk turned Twitter into X. But who joins a social network when none of their friends are there?
That was fine. I was actually eager to disappear for a while, well aware of the anxiety social media induces in me and the insecurities created by constantly watching other people’s supposedly perfect lives.
Online shopping was out — but so too was paying by card in stores and restaurants. The payment networks I rely on are American: Visa and Mastercard dominate card payments across Europe, meaning that even a purchase made with a European bank card often still runs over U.S.-controlled rails.
It meant I had to buy everything using cash, which I hadn’t done regularly in ages. Fortunately, unlike in some other European countries, Belgian legislation requires merchants to accept banknotes. The hard part was finding some of those stores without the help of Google Maps, which I’d come to rely on almost as much as my credit cards.
The invisible grip
Swearing off Netflix, Amazon Prime, Disney+ and YouTube was also part of the deal — already eliminating a sizable chunk of my leisure time. But it turned out I could barely watch anything at all, or even properly test European streaming platforms, because my television and tablet both ran on Google software.
Thankfully, an offline Nintendo Switch from Japan, good old books and the legendary Snake game kept me company.
A gamer holds a controller, at a Nintendo Switch 2 booth. | Ina Fassbender/AFP via Getty Images
These invisible dependencies run deep. Beyond the products we use every day, U.S. systems often serve as gateways to European companies trying to take on Big Tech.
Take Sweden’s Spotify or the Estonia-based rival to Uber, Bolt. Both still heavily rely on U.S.-controlled app stores, operating systems, payment networks and other digital infrastructure.
And then there is the cloud: the data centers and servers that host websites, process data and route traffic. The vast majority of that market is dominated by Amazon, Microsoft and Google, whose infrastructure supports large parts of Europe’s digital economy.
Many corners of Europe would go dark if those services were shut down, with its economy, public administration and communications infrastructure struggling to function normally.
Working outside the stack
On Monday morning, I walked into the office with the slightly misplaced confidence that I had prepared for everything. My efficiency at work, admittedly during a very quiet summer week, took less of a hit than I expected.
I was still working from the office. I used an open-source, Linux-powered computer. I communicated by email through a Switzerland-based Proton address, browsed the web using the Norwegian browser Vivaldi and French search engine Qwant, wrote everything in LibreOffice and even tried Mistral’s generative AI assistant. And there was always a good old notebook.
I felt productive. But the workflow around me was not. The tools themselves worked perfectly well once I accepted that breaking years of habits would take time. The disruption ultimately came from stunted collaboration: meetings, messages, shared documents and the constant stream of small exchanges that keep a newsroom moving.
“It was like you disappeared,” one colleague would tell me later.
European alternatives do exist in that space. The problem is, just like for social media, they only work properly when everyone else uses them too or when competing systems are interoperable — something the EU has long tried to legislate and enforce, often against resistance from large technology platforms.
For this little while, despite technically being able to continue working, I became an outsider within my own team. I had to skip our routine video meetings on Slack and Teams, while missing messages sent over WhatsApp and Signal.
In a trade, a city and an era built around instant messaging, sending a good old SMS felt almost prehistoric — a reminder of the longstanding complaints from the European telecom industry about losing messaging and calling revenues to U.S. tech firms.
Ultimately, this underscored one of the major pinch points in Europe’s push for greater tech independence: digital sovereignty is not an individual project. It only works if people, companies and institutions move together.
On their own, individual efforts are more likely to leave people feeling digitally isolated rather than digitally sovereign.
Relax and relapse
And yet, there was something blissful about these three days.
The initial anxiety slowly gave way to a kind of peace. Of course, that feeling may only reflect that the experiment was temporary and my digital life had not been erased.
The experience nevertheless highlighted how much I had taken these tools for granted. I have placed all my eggs in the same digital basket: my communication channels, the tools I use to authenticate myself and access the digital world, my polished digital self and years of accumulated knowledge, all stored inside one sprawling digital safe.
The concern is no longer simply whether that safe could be broken into from the outside. It is also whether somebody could lock it — or empty it — from within.
Now, as you might wonder how I’ll act on what I’ve learned, I am strangely reminded of Covid.
Many of us emerged from that temporary era of lockdowns and involuntary limits full of healthy new habits and grand ideas about how our lifestyles should change, only to return remarkably quickly to our old routines.
Sadly, the same thing happened here. My iPhone came straight back into my pocket. Messages began flowing through again. My bank card returned to its usual place. Within hours, I had fallen comfortably back into the U.S. technology stack.
As I switched my smartphone back on, my screen lit up with incoming texts inquiring whether my little experiment was over. After 72 hours of old-school SMS exchanges, two different friends were both clearly eager to return to reality, sending me the same final text: “Back to WhatsApp?”
LONDON — The personal mobile phone numbers of three U.K. Cabinet ministers — including Defense Secretary Wes Streeting — have been found published online alongside their names.
The discovery comes after POLITICO reported that Prime Minister Andy Burnham fell victim to a texting scam — engaging with messages from someone impersonating Susie Wiles, Donald Trump’s White House chief of staff, before becoming suspicious the contact was illegitimate and ending the conversation.
After checking through a list of Cabinet members, POLITICO found three published on the web, for Streeting, Justice Secretary Alex Norris and Northern Ireland Secretary Chris Bryant. POLITICO is not pointing to where the numbers can be found to avoid further risking security.
All three ministers declined to comment on the record. The reference to Streeting’s number online has since been deleted, and officials are working to remove the other two.
Ministers are given secure government devices to conduct business for their briefs, in particular for high-risk roles like defense, and are expected to use those for non-personal comms.
A government spokesperson said: “The government has robust procedures in place to ensure the security of sensitive information.”
But Prerana Joshi, research fellow at the Royal United Services Institute (RUSI) think tank, said that having direct numbers for Cabinet ministers in the public domain is a risk, warning that numbers could be spoofed and used to call others at a time when the U.K. is “in a high threat situation” globally.
“In any civil space, if your number is exposed, a whole host of malign, nefarious or even opportunistic cyber criminals or cyber actors could get hold of it, and they have tactics,” Joshi said.
‘No significance’
Downing Street would not comment on the revelation that Burnham exchanged messages with the impersonator, citing “national security.”
One person briefed on the communications said a “few messages” were exchanged after the PM entered No. 10 but insisted they were “of no significance.”
It is unclear how the fraudster obtained Burnham’s number. POLITICO could not find it published online.
British officials initially feared Wiles’ phone had been hacked again. But a White House official said: “This incident had nothing to do with the Chief of Staff’s devices being hacked.”
It is not clear whether Burnham will change his phone number, as Boris Johnson did after the Popbitch newsletter revealed in 2021 that the then-prime minister’s details had been sitting online for years.
‘Full of traps’
The episode has sharpened questions over whether Burnham — who built his political brand on his informal style and being more approachable than other prime ministers — can carry on that way in No. 10.
A former national security adviser, granted anonymity to speak frankly, said the prime minister needs to “get into the habit” of having his security staff verify that messages reaching him are authentic.
National Security Adviser Jonathan Powell “could have phoned the White House in five minutes and checked whether Susie Wiles genuinely was texting the prime minister,” they said.
“Being a domestic politician and going on listening tours around the U.K. is one thing, but when you engage in the international world, it’s full of traps and full of risks,” the former adviser added.
“What starts off as a very informal chat can quickly get into some kind of business, and you could give away key details of an upcoming trip or the movements of Donald Trump,” they said.
Former Defense Secretary Ben Wallace — himself targeted by imposters posing as Ukraine’s prime minister in 2022 — said the incident “demonstrates our adversaries are always looking for weak points in our communications.”
While Downing Street has said nothing significant was discussed in the exchanges between Burnham and the imposter, Wallace said “there is always a risk of kompromat” being obtained by hostile actors.
As technology, such as AI voice cloning, improves, these sort of incidents are going to “happen more and more,” Wallace added.
Others have urged Burnham not to change tack.
Guto Harri, Johnson’s former director of communications, said: “It’s only a threat and it’s only an embarrassment if they give something away — and it doesn’t seem that he’s done anything like that.”
Harri said it was “good to have someone big enough not to have his calls screened from everyone” as prime minister.
“I don’t think it’s healthy that the civil service wants to control all access to the principal. If they had their way, nobody would be able to talk to a prime minister without going through them,” he said.
“We can’t say that politicians are not living in the same world as us … and then moan about them speaking to people like a normal human being.”
Harri conceded a new number might be a “good idea,” giving the prime minister a “clean slate.”
NATO plans to fortify its eastern edge using drones, sensors and artificial intelligence in a massive network designed to spot and help repel a potential Russian attack.
Western officials say the alliance is exploring AI-assisted drone operations as part of the broad effort to bolster its defenses. The aim, however, isn’t full autonomy; instead, machines could help to pilot the drones while human operators make the call on what they strike.
The approach echoes what Ukraine is already doing. The embattled country is increasingly incorporating AI into its drone operations, but both soldiers and defense tech firms have repeatedly emphasized that humans must remain at the center of the fight, even as the war becomes more robotic.
For NATO, AI-assisted drones would be part of the Eastern Flank Deterrence Initiative — a digital battlespace network the alliance is building to track threats along its borders with Russia and Belarus, which stretch from northern Finland to the Black Sea.
The new concept includes thousands of drones, sensors and satellites linked with AI to detect potential breaches of allied territory and repel attacks as the first line of defense. Conventional military forces, such as tanks, fighter jets and artillery, will remain the backbone.
U.S. Army Maj. Ben Schiff, a software operations officer, told Bild — which, like Business Insider and POLITICO, is part of the Axel Springer Global Reporters Network — that both Ukraine and Russia still rely on humans to control drones.
While some systems have AI or machine-learning capabilities that allow brief moments of autonomy in flight, piloting is primarily performed by operators on the ground. Schiff said that “the most boring parts of flying”— drones loitering above the battlefield looking for targets — should be automated. But when it comes to deciding what the drone should strike, that’s where a human comes into play.
“So the humans are deciding what the drone does, but they don’t necessarily need to take the action of flying it because we don’t have a million pilots. We can’t fly a million drones at the same time,” said Schiff at the U.S. Army Europe and Africa headquarters in Wiesbaden, Germany.
Schiff is a product manager for the EFDI Data Backbone, a developing framework designed to help NATO forces detect, classify, share and act on information at speed and scale. The backbone bridges incompatible computer and command systems across multiple allied nations, allowing real-time data to flow from forward-deployed sensors all the way back to headquarters.
The goal is to help NATO move beyond today’s linear system — called a “kill chain” — where information moves from the front line back to a decision-maker and then back again to the battlefront to a “kill web,” where data from sensors can be rapidly passed to weapons systems and operators.
“The value of a drone, sensor or other capability is not determined solely by its individual performance,” said Maj. Matt Blubaugh, a spokesperson for U.S. Army Europe and Africa. “Its effectiveness depends on how well it integrates into the broader operational ecosystem.”
Learning from Ukraine
Ukraine is already pioneering the integration of AI into military operations.
Soldiers observe a drone in the Dnipropetrovsk region of Ukraine on June 14, 2025. | Florent Vergnes/AFP via Getty Images
On the battlefield, Ukraine has made significant progress in using AI to support functions like decision-making, drone navigation, terminal guidance and precision, said Andrii Hrytseniuk, the CEO of the Ukrainian state-backed innovation platform Brave1.
This spring, Hrytseniuk told Business Insider in Kyiv that more than 200 local companies were developing AI-based components for drones, missiles, radars and other systems. However, they insist machines won’t control drones from start to finish.
Wild Hornets, the manufacturer of the popular Sting interceptor drone, also told Business Insider in May that AI will be gradually integrated at almost every stage of flight operations — target detection, identification and, later, terminal guidance.
A spokesperson for the company said humans will still make the final decision on what to strike. Since Russia is constantly changing its tactics, interceptor operators must keep tabs on these changes and make necessary adjustments, they said.
As autonomous systems become more common on the battlefield in Ukraine, commanders also told Business Insider that humans need to remain in the loop.
Grek, the call sign of a company commander overseeing robots with Ukraine’s 21st Unmanned Systems “Kraken” Regiment, said the goal is to “allow people to focus on the tasks where human judgment has the greatest value.”
U.S. Army officers stressed that NATO is using the operational environment in Ukraine to inform military planning for a potential future confrontation.
“We’re not copying Ukraine,” said Capt. Ronan Sefton. “We’re learning from Ukraine.”
The Axel Springer Global Reporters Network harnesses the resources of the company’s newsrooms to publish ambitious scoops, investigations, interviews, opinion pieces and analysis. It allows journalists — including those from POLITICO, Business Insider, WELT, BILD, The Telegraph, Onet and Fakt — to collaborate on major stories for an international audience of hundreds of millions across platforms: online, print, TV and audio.
President Donald Trump is paving a legal pathway for U.S. companies to launch cyberattacks on foreign cybercriminal gangs — a significant and potentially controversial measure that would put approved tech and cybersecurity firms on the front lines of digital combat.
The memo represents one of the biggest shifts in U.S. cyber policy undertaken in recent years. It would empower tech and security companies — whose data and control over internet infrastructure often offer unique insight into foreign hacking operations — to mount state-sanctioned digital strikes.
While many such companies already work closely with U.S. intelligence and law enforcement agencies, a web of legal and political constraints has long prevented them from taking direct action inside foreign networks.
Companies that want to participate would be required to sign contracts with both the Department of Justice and the Department of Homeland Security and to undergo what the memo describes as “rigorous vetting” while working with the government. The overall effort would be overseen by a National Coordination Center, established in an earlier Trump administration executive order, with co-executive directors from DOJ and DHS.
However, the memo states that no operations by the companies would be approved until the executive directors at DOJ and DHS establish “consensus procedures” with the White House Homeland Security Council guaranteeing “complete oversight and control of Participating Companies’ performance.”
Those procedures, it notes, should be drafted within 60 days. They are likely to be extensive.
They will outline steps for participating companies to obtain approval for proposed offensive hacking operations, so the government can confirm that the targets are criminal gangs and ensure that operations are consistent with U.S. law and don’t undermine ongoing U.S. intelligence efforts. Companies could propose surveillance operations to help identify criminals or “effects” operations to degrade the systems they use to stage their attacks.
Participating companies would have to pass minimum standards for technical expertise and personnel vetting, and would be required to notify the federal government if they believe approved operations may result in the loss of life or rise to the level of use of force under international law.
Some see the memo as a critical step to help the U.S. government counter foreign cybercriminal gangs that operate outside the reach of U.S. law enforcement.
“For years we’ve called the American technology industry a strategic asset but left it on the cyber sidelines,” Joe Lin, the CEO and co-founder of Twenty, a start-up that builds offensive cyber tools for the U.S. government, said in a statement. “This administration is changing the paradigm.”
The memo notes that companies will only be authorized to target criminals that are “not an institutional part of a foreign government or wholly operated under a foreign government’s direction.”
Even with the help of the U.S. intelligence community, making that distinction could be difficult.
Adversaries such as Russia, China and Iran have persistently targeted U.S. critical infrastructure, including water systems, ports, and telecommunications infrastructure, while multinational crime syndicates have defrauded billions of dollars annually from Americans via complex online schemes.
But many cyber gangs in Eastern Europe are thought to operate with the tacit consent of the Russian government, while state hackers in Iran and China sometimes moonlight as cybercriminals to earn extra money or deflect blame for their governments’ attacks.
More broadly, it is not always easy for digital investigators to determine who is responsible for a given cyberattack, or who different computer networks belong to — another risk the memo contemplates.
Companies that accidentally carry out operations targeting a U.S. citizen or network will be required to immediately pause the operation and notify the U.S. government, the memo states. It does not appear to preclude activities that are deliberately “directed” at a U.S. person, so long as they receive “any necessary authorization, judicial or otherwise, prior to approval of the operation.” Under U.S. law, a “U.S. person” can refer to an American business or organization.
Many lawmakers and security experts have broadly supported calls for the private sector to play a larger role in responding to cybercrime, though not all approve of granting them the ability to launch active hacking efforts.
In recent years, some House members have debated the idea of issuing “letters of marque” to private companies to carry out cyberattacks on behalf of the U.S. government, similar to the U.S. Navy authorizing private ships to disrupt British shipping during the War of 1812.
As part of a more assertive cyber posture, Trump has turned to U.S. Cyber Command to mount digital attacks in tandem with U.S. military operations, including in Iranand Venezuela. He signed an executive order this March to clamp down on countries that fail to take action against scam centers operating within their borders.
That same month, the White House called on the private sector to broadly help it “disrupt” foreign adversaries in its new national cyber strategy, though it stopped short of telling private companies to take riskier and more consequential steps, such as directly launching attacks against foreign criminals.
Some of the most prolific online fraud operations are believed to emanate from scam compounds in Southeast Asia. But hackers from North Korea — who for years have stolen hundreds of millions in cryptocurrency from victims around the world — would likely be exempt from targeting by U.S. companies since they work at the direction of the North Korean government.
A plan to ramp up the data processing powers of the EU’s policing agency Europol poses “serious risks” to people’s privacy, Europe’s data protection supervisor warned Thursday.
The European Commission in June unveiled a plan to make Europol the central system for police forces to trade and analyse data using the latest technologies — part of a wider strategy to give EU justice agencies more firepower to tackle cross-border crime and terrorism.
The reforms include a fundamental shift in how Europol sifts through the data it collects, relaxing current rules that require data to be sorted into different categories before determining if Europol can legally use it. That’s been a “key operational bottleneck,” the Commission has said, since Europol deals with high volumes of unstructured data.
In an opinion published Thursday, the European Data Protection Supervisor Wojciech Wiewiórowski said that the proposal “creates serious risks, particularly regarding the processing of the personal data of individuals with no established criminal links.”
The proposal would allow Europol to retain data on a “vast” number of people with no links to criminal activity “for an extensive and unspecified period of time,” the supervisor warned.
The EDPS is the data protection authority that supervises EU institutions including Europol and advises the Commission on the privacy implications of legislative reforms.
The privacy watchdog acknowledged that Europe’s security architecture needs to be developed to protect against increasingly complex criminal threats, but underlined that the proposed Europol reform “must provide robust safeguards and real oversight.”
A Berlin-based non-profit has filed a criminal complaint against Meta’s smart glasses, arguing the devices breach Germany’s strict privacy rules and should be banned.
Privacy concerns over the device have snowballed in recent months amid reports of people being filmed without their consent, or recording intimate footage without knowing it could be reviewed by Meta contractors.
The non-profit HateAid is arguing that the sale of Meta smart glasses in Germany is a criminal offense because the devices allow wearers to covertly film other people.
The complaint, which alleges the sale breaches Germany’s Telecommunications, Digital Services and Data Protection Act, was filed against Meta, Ray-Ban and Oakley — eyewear brands that have partnered with Meta to design the glasses — and several retailers.
Meta spokesperson Matthew Pollard said the smart glasses were approved by Germany’s regulator BNetzA in 2022, and “were built with privacy safeguards from the ground up that go beyond what any smartphone offers.” Those include an LED light that turns on when the glasses are recording, as well as technology to stop anyone from tampering with the light.
HateAid said that smart glasses should only be sold if they are clearly identifiable, and that there should be limits on recording in certain spaces as there is for dashcams or bodycams.
Europe’s privacy regulators have commissioned a report on smart glasses that is due to be finalized this summer.
BERLIN — German Chancellor Friedrich Merz’s government is moving to turn the country’s foreign intelligence agency into a more potent weapon to counter mounting threats from adversaries including Russian President Vladimir Putin.
Under the proposed reform, spies working for Germany’s foreign intelligence agency, the BND, could carry out acts of sabotage, conduct offensive cyber operations and pursue more aggressive espionage operations. Until now, those spies have been limited to information-gathering operations due to intentional restraints put in place after World War II to prevent a repeat of the abuses perpetrated by the Nazi spy apparatus.
But with the threat of sabotage and influence operations from Russia growing — and concerns that U.S. President Donald Trump could halt or leverage the intelligence sharing Germany heavily relies on — Merz’s government has moved to push through a historic strengthening of the country’s foreign intelligence apparatus.
“We are daily targets of espionage, sabotage, cyberattacks and covert actions by foreign powers aimed at destabilizing Germany, at harming our country and at bringing about political and social changes within our country,” Interior Minister Alexander Dobrindt told reporters after the cabinet meeting in Berlin.
“Our mission is to continually adapt the state’s protective mandate to these new threat scenarios,” he added.
The reforms must still be passed by both chambers of parliament before going into effect by 2027.
Nina Warken, the chancellery chief overseeing the BND reforms, suggested Germany can no longer afford to rely so heavily on foreign allies for sophisticated intelligence operations it has long been unable conduct itself.
“So far — and this must be stated objectively — we have relied too heavily in too many security-related areas on our partners to help ensure our security,” Warken said. “In short, we are simply too dependent on the support of other countries’ intelligence services. And in too many areas, this assistance is a one-way street.”
Germany’s postwar foreign intelligence service was founded in 1956 with far more legal constraints than intelligence agencies elsewhere. Those restraints have had the side effect of making Germany particularly dependent on the U.S. for intelligence gathering.
In view of the growing threat from Russia, leading politicians now argue that it is time for Germany’s spies to be given the ability to hit back harder. That argument took on new urgency following the sighting of an explosive-laden drone at Leipzig-Halle Airport in eastern Germany last week that was found near a Ukrainian Antonov plane used to transport munitions.
Dobrindt, in remarks after the incident, stopped short of naming Russia as responsible for the drone incursion, but said that “a hybrid threat is evident” and that such perils do not originate from amateurs but are “often linked to foreign powers.” On Wednesday, he said results of an investigation into the drone incident were still pending.
Germany’s security “worsened significantly” in the wake of Russia’s full-scale invasion of Ukraine, according to a report by the country’s domestic intelligence agency last year.
Germany’s intelligence reform would allow authorities to actively respond to hybrid threats such as the Leipzig drone incident. Measures could range from exposing those involved or destroying their property to sabotaging explosives before an attack or feeding adversaries false intelligence afterward, according to the proposed reform. Any response would have to be directly linked to the original incident and could not endanger life or physical safety.
“We are expanding the technical capabilities of the intelligence services and granting them active, operational powers,” Dobrindt said. “This is not just about enabling the services to see and hear better in the future and analyze information more quickly. Above all, it is about being able to take active measures against our attackers and adversaries.”
The BND will also face fewer data-protection restrictions, allowing it to make greater use of tools such as AI and facial recognition and to store data for longer periods of time, according to the proposed reform. The agency is also set to receive more funding in the coming years. Merz’s government increased the agency’s budget by about 26 percent to €1.51 billion this year.
Meta CEO Mark Zuckerberg on Monday passionately defended the use of artificial intelligence, as the rapid advancement of the technology faces increased scrutiny — and calls for regulation — in the U.S. and globally.
In a 6,500 word post timed to the announcement of his company’s new open source version of its own model, Muse Spark, Zuckerberg detailed his vision for AI, arguing the technology is not to be feared and pushing back on concerns that superintelligence could strip people of jobs.
“The notion that AI is so dangerous that the only safe path is an extreme concentration of power seems inherently problematic,” Zuckerberg wrote. “Historically, hoping that an absolute power will benevolently provide for humanity if sufficiently enlightened has not led to safe or positive outcomes.”
Zuckerberg’s vision is a direct contrast to Anthropic CEO Dario Amodei’s, who has previously warned how AI could cause job disruption. Meta lags behind Anthropic and OpenAI, which have the most advanced AI models.
While Zuckerberg’s essay did not name Amodei or OpenAI directly, he called to broadly distribute superintelligent AI for economic opportunity. Doing so, Zuckerberg said, would provide a safety net to prevent just a handful of governments, businesses and other institutions holding too much power.
Still, Zuckerberg emphasized that the U.S. must address restrictions on AI companies in order to create the best models in the world.
“It is also important that the US and its allies lead the open source AI ecosystem that will make up a large percent of global AI use,” Zuckerberg wrote. “Foreign labs currently hold several advantages here since American labs have to comply with many additional restrictions on training data.”
Zuckerberg’s essay comes amid growing concerns around AI safety. Last month, Anthropic revealed that several of its advanced models gained access to three organizations in three separate incidents dating back to April. That hack came shortly after OpenAI said that two of its most powerful models escaped a testing environment and breached multiple companies.
Lawmakers last month introduced a bill that would give the government power to restrict the use of models that could lead to catastrophic risks. While it is the latest bipartisan effort to address concerns around AI models, Congress has ultimately failed to advance broad legislation.
Zuckerberg urged the federal government to work with companies to test new models as he laid out his strategies for protecting against cybersecurity and bioterrorism.
“First, we should focus on limiting the physical production and distribution of harmful materials,” he wrote. “I expect it will be easier to regulate and control physical components than the spread of knowledge, so this is an important area of policy focus. Second, we should accelerate society’s ability to develop new cures and inoculate against new issues as they arise. This includes streamlining how the FDA and other regulators test and approve new treatments.”
Zuckerberg also defended the spread of data centers, arguing that the centers represent investment into communities as he touted his company’s goal of being “water-positive, meaning that we’ll restore more water than we use in the watersheds where we operate by 2030.”
PARIS — Former Prime Minister Gabriel Attal is the latest in a string of French presidential candidates allegedly targeted by a Russian disinformation campaign.
Attal, the candidate of President Emmanuel Macron’s Renaissance party, said on Thursday he had been “a victim” of an electoral “interference” attempt originating from Russia, and that he expected such “destabilization efforts” to increase ahead of France’s April 2027 election.
Viginum, the country’s agency for fighting online disinformation, confirmed it had detected the operation against Attal and attributed it “with a high level of confidence” to “pro-Russian” disinformation tactics.
Former Prime Minister Édouard Philippe, who is also running for president, was the first to be reportedly targeted last week, before center-left parliamentarian Raphaël Glucksmann, who is expected to run, shared that he had been targeted by a “Russian operation” on Monday.
Attal said on RTL radio on Thursday the smear campaign against him consisted of falsified news reports about his health and policy proposals, which copied the branding of French news outlets. “Russia wants to steal the election from the French,” he said.
A 2024 report from Viginum identified a similar “pro-Russian campaign” known as “Matriochka,” which involved news and media reports impersonating well-known French outlets.
“Combating foreign interference and protecting our democratic framework are a priority,” current Prime Minister Sébastien Lecornu posted online on Wednesday. “Several instances of foreign interference targeting candidates have already been detected, and in each case, the individuals were immediately notified.”
LAS VEGAS — Weeks before they escaped a closed test and launched a cyberattack without any human prompting, some of OpenAI’s most advanced artificial intelligence agents secretly began sharing tips on how to cheat their way through an internal hacking evaluation, two of the AI company’s researchers said Wednesday.
“This is a pivotal moment both for our company as well as the AI industry as a whole,” Michael Dalton, one of the AI-maker’s researchers, said during a presentation at the Black Hat cybersecurity conference in Las Vegas, Nevada.
The latest disclosure provides greater detail on the timeline and methods used by two of OpenAI’s models before they slipped outside a controlled environment and onto the open internet, allowing the models to breach AI developer platform Hugging Face undetected. OpenAI admitted its models were responsible for the hack late last month, roughly a week after Hugging Face said an autonomous AI system broke into its network.
The revelation is likely to spur fresh scrutiny of the measures leading AI labs such as OpenAI and Anthropic are taking to monitor the behavior of their most cyber-capable technology — especially during evaluations where agents are prompted to demonstrate their hacking skills in what is meant to be a controlled setting.
On Tuesday, the U.K.’s AI Safety and Security Institute disclosed that Anthropic’s most powerful AI model created fake online personas and sought to trick a human coder into abetting a cyberattack during a recent hacking test gone wrong. After the Hugging Face disclosure last month, Anthropic conducted a review and found models it was testing had breached three organizations in separate incidents dating back to April.
Dalton and Eric Wallace, another OpenAI researcher, said Wednesday the AI giant recently learned that multiple agents it was testing simultaneously began communicating over an internal message board in early May. There, different models shared advice about how to accomplish difficult hacking challenges they were struggling to surmount, including workarounds that required internet access.
Two OpenAI models ultimately strung together a series of sophisticated techniques to gain access to the internet and worm their way inside Hugging Face in mid-July. OpenAI has said the models were focused on completing a hacking evaluation they were prompted to solve, and that correct answers could be found on the AI developer platform.
The OpenAI researchers told conference attendees that since early May, the models created a message board inside OpenAI’s Artifactory internal file system. Without the company’s knowledge, the models spent months independently exchanging information and techniques to help each other complete difficult tasks.
Wallace said that when models get stuck, they often “try to game or cheat the task in order to get their reward.”
“The beginning of this incident kind of traces back to this point where one agent realized it could communicate by uploading a note,” he added.
By late May, one model found a way to abuse Artifactory’s internet access to retrieve files from various websites — effectively giving the models indirect access to the internet. In June, the models were able to find and exploit a previously unknown zero-day vulnerability to gain administrative privileges on Artifactory, install remote software and expand their activity within the system.
These efforts eventually overloaded Artifactory, causing a system-wide outage in early July that alerted OpenAI’s engineers to the ploy. After investigating, the company revoked the model’s credentials, removed the message board and worked with Artifactory to fix any gaps before resuming training. But the models found another way to communicate inside Artifactory just days later and continued exchanging techniques to target additional vulnerabilities within OpenAI’s infrastructure and external systems, including Hugging Face.
In light of the incident, Dalton said OpenAI is “consciously slowing down research to enhance security and to upgrade the security principles and foundation of our environment, and dramatically scaling up the monitoring of our AI agents and improving our general security control environment across prevention, detection, and mitigation.”
Leading artificial intelligence models from Anthropic and OpenAI created fake online personas and tried to deceive human coders into abetting a cyberattack during a recent safety evaluation, the U.K.’s AI Safety and Security Institute disclosed Tuesday.
It marks the latest case in which a powerful AI system has attempted a digital attack on an unwitting third party without direct prompting during such an evaluation — heightening concerns the powerful technology is advancing too fast for responsible oversight.
The disclosure is likely to ignite fresh calls in Washington and Silicon Valley for more rigorous regulation of the AI industry, particularly over frontier models with advanced capabilities to detect and launch cyberattacks. It comes just days after similar testing mishaps involving some of the same models from OpenAI and Anthropic sparked urgent calls for new AI safety regulation and a push within Silicon Valley to slow the rapid pace of AI development.
Like its U.S. counterpart, AISI routinely conducts security evaluations to better understand what dangers both new and soon-to-be-released AI models pose to public health and safety. But even the digital security body said the actions it uncovered by Anthropic’s Claude Mythos 5 and ChatGPT 5.6 — the latest publicly released model from either AI lab — were unlike anything it had seen before.
AISI said the malicious activity began on July 25. The AI safety evaluator detected it and launched an investigation on July 28, when it spotted “unusual data transfers” stemming from a cyber evaluation it was conducting on Mythos 5 and ChatGPT 5.6.
Overall, AISI determined that Mythos 5 and ChatGPT 5.6 took “autonomous, unsanctioned action on the live internet, targeting real people and organizations” during 10 of the 122 evaluations the research body conducted and isolated for review. The majority of those actions, it said, involved Mythos 5 and arose during a “single, sustained line of activity.”
In the most alarming incident it uncovered, Mythos 5 attempted a supply chain attack — a sophisticated technique often deployed by North Korean and Russian cyber operatives, in which hackers bury malware inside legitimate code.
To do so, Anthropic’s model created “multiple fake identities” on developer platform GitHub and used them to send messages “pressuring” an open-source software engineer to unwittingly introduce a bugged update into code widely available on the popular site, AISI said. When that effort failed, the AI “edited its earlier activity to appear harmless” and “considered adopting a fresh identity to continue,” AISI added, a sign the model was intent on repeating the ruse.
As part of the same effort, Mythos 5 also sent direct messages over GitHub to software engineers that contained malware.
In another sign of deceitful behavior AISI uncovered in its investigation, multiple AI agents it was testing appeared to communicate with one another about how to convince real engineers using GitHub to trust them. “One agent left public messages on GitHub offering collaboration with other agents working on the same challenge,” AISI wrote.
AISI’s blog and technical assessment make no mention of whether the models also attempted to exploit previously unknown software bugs — called zero-days — during the evaluation.
Last month, OpenAI disclosed that GPT 5.6 and another of its models escaped onto the open internet during what was supposed to be a controlled test, and then hacked another company in a first-of-its-kind, autonomous breach.
In response, Anthropic launched an investigation into whether any of its models took illicit action during recent testing and discovered Mythos 5 and two other models had hacked three organizations during tests dating back to April.
In a statement, an Anthropic spokesperson said they are “grateful” to AISI for their leadership and that this review underscores the need for “a broader conversation about how to safely evaluate increasingly capable AI agents.”
The spokesperson added: “As we shared after disclosing our own incident last week, the field needs stronger, shared standards for how evaluation environments are built and secured. We look forward to partnering with the UK AISI to learn more about this incident as we conduct our own investigation.”
An OpenAI spokesperson referred POLITICO to a blog post about the incident that went up Tuesday evening. “We are committed to working across the industry to strengthen shared practices for conducting high-risk evaluations safely, including convening stakeholders such as national AI institutes, independent evaluators, other AI labs, and other groups in the coming weeks,” the blog read.
AISI stressed in its blog that the malicious activity it disclosed Tuesday took place under “deliberately permissive conditions” so they could assess the safety risks posed by the two models. This included granting the models access to the internet, unlike the earlier incidents detailed by Anthropic and OpenAI.
AISI also noted the models were intentionally stripped of internal guardrails that block malicious behavior. AISI was only able to disable those controls because of its role testing Mythos 5 and ChatGPT 5.6.
Still, AISI said the incidents highlighted the need for greater monitoring of model behavior during testing, and tighter controls over their access to the internet.
The Trump administration is finalizing a voluntary framework under which AI labs would submit powerful models they want to release to the public for federal safety testing. But it has not yet made the framework public, and it includes no provisions for models AI labs are developing internally.
The incidents last month from OpenAI and Anthropic both involved models not intended for public release.
Some cyber experts say recent incidents highlight deeper questions around AI development, such as who is liable when AI systems break federal hacking laws.
“If any of these were human-originated, they would lead to clear and vigorous prosecution. I think it’s time for a serious discussion about updates to existing computer security law,” said Marc Rogers, a hacker and prominent cybersecurity expert.
Palantir is shifting profits from its European operations to the United States, allowing the Florida-based data analytics giant to pay minimal taxes in Europe, a new report finds.
The report by the U.K.-based Centre for International Corporate Tax Accountability and Research,a group partly funded by labor unions that researches corporate tax avoidance in an effort to win reform of global tax rules, found that Palantir’s European subsidiaries, which took in €440.5 million in annual revenue in 2024, report far smaller profit margins in Europe than in the U.S.
“Although a substantial part of Palantir’s revenue is realized in Europe, almost all of the pre-tax profits are funneled to the United States,” the report said.
Palantir pays no U.S. federal income tax because previous losses, tax credits, and R&D deductions offset its taxable income; and virtually no state income tax, with the exception of Maryland, which levies a digital services tax.
The profit gap between the U.S. and Europe is stark. In 2025, Palantir’s American business pocketed 47.7 cents in profit from every dollar of revenue — more than double the previous year’s 22.5 cents. Outside the U.S., the profit margin was just 6.3 percent. In some European subsidiaries, it fell to around 3 percent, according to the new report.
CICTAR argues that Palantir “intentionally and artificially” shrinks European profits — and therefore its European tax bills — to concentrate profits in the U.S. There is no claim in the report that such arrangements, often referred to as “profit shifting,” are illegal. Multinational companies often reduce reported profits by paying subsidiaries or otherrelated entities for intellectual property, loans or expertise.
In Sweden, for example, Palantir reported €13.7 million in revenue in 2024, but only €1.1 million in profit. At Sweden’s 20 percent corporate tax rate, that left the company with a tax bill of just €424,000.
In its Q2 earnings report on Monday, Palantir made no explicit reference to earnings from its European subsidiaries. Instead, it highlighted its U.S. business, where revenue rose 115 percent year-on-year to $1.57 billion (€1.36 billion), and boasted of its 62 percent profit margin.
A U.K.-based Palantir spokesperson said that the majority of the company’s 2025 revenue and profitability was driven by its U.S. business. “Our tax position in each jurisdiction reflects the level of economic activity there, and we meet our tax obligations in every market in which we operate,” the spokesperson said.
Not alone
Palantir is not the first U.S. tech company to draw scrutiny over how it books profits in Europe.
In 2024, the European Court of Justice ordered Apple to pay Ireland €13 bn in back taxes, ending an 8-year-long fight over what Brussels said amounted to illegal state aid. Amazon also fought the European Commission over claims it had received an unlawful tax advantage worth around €250 million in Luxembourg — a case the company ultimately won. Microsoft, meanwhile, has faced scrutiny over its Irish subsidiary, Microsoft Round Island One, which avoided paying millions to the state after claiming tax residency in Bermuda. The U.S. software giant has denied that it is circumventing Ireland’s tax laws.
Jan Willem Goudriaan, General Secretary of the European Federation of Public Service Unions — a supporter of CICTAR— said that companies such as Palantir, Amazon and Microsoft focus on minimizing the taxes they pay, “thus robbing funding for public services.”
“Companies bidding for public contracts should have to demonstrate responsible tax conduct by disclosing where their revenues, workforce, profits and taxes are located,” he said.
Another reason for the low profits of Palantir’s European subsidiaries is their high personnel costs. In the U.K., where most of the company’s non-U.S. workforce is based, Palantir reported £173 million (€204.3 million) in employee costs for 749 staff in 2024 — an average of £230,974 (€272,803) per employee.
The report also points to Palantir’s use of stock-based compensation across its European subsidiaries, especially in the U.K., Spain and Norway. This means employees are paid partly in company shares or awards. Those awards are recorded as staff expenses, which can lower a subsidiary’s corporate tax bill.
PARIS — A group affiliated with Russia’s intelligence agency launched a disinformation campaign against center-left MEP and likely presidential candidate in next year’s French election, Raphaël Glucksmann, he claimed in a post on X on Tuesday.
Glucksmann, who is expected to announce whether he will run for president in the coming weeks, said he had been informed by the French Secretariat-General for National Defence and Security of a “Russian operation” that was “directly controlled by the [Russian] GRU.”
Former Prime Minister Édouard Philippe, who is a confirmed presidential candidate, was also reportedly targeted by a Russian disinformation campaign last week. And several local candidates from the left-wing France Unbowed movement, known for its pro-Palestinian advocacy, were allegedly targeted by an Israeli firm earlier this year.
The alleged disinformation effort against Glucksmann involved an article posted on a website mimicking well-known left-wing news outlet Blast, as well as a social media clip claiming Glucksmann’s partner Léa Salamé — the host of French public television’s prime-time news program — had tried bribing other journalists to speak about his likely candidacy favorably.
Glucksmann is a prominent critic of the Russian government and took part in the 2013 Maidan uprising in Kyiv.
“Russian agencies have begun operations to destabilize the 2027 presidential election,” he wrote on social media. “This attack is merely a foretaste of what is to come.”
The Russian Embassy in Paris did not immediately respond to a request for comment.
As he nears the end of his term, French President Emmanuel Macron has said that safeguarding the 2027 presidential election from foreign interference would be a top priority.