Skip to content
The ColumnColumn· No. 1679

COLUMN: The Double Strike of June 10 — The Day the FBI Hit Beijing and Moscow at the Same Time

In my view, June 10, 2026 will remain one of the most significant days in the recent history of Western counterintelligence. On that day, the US Department of Justice announced two major, simultaneous actions against two of the three most active strategic adversaries of the United States. First: the seizure of 13 web domains linked to a Chinese espionage operation targeting the

Premium reading
MadMax
Key takeaways
  1. In my view, June 10, 2026 will remain one of the most significant days in the recent history of Western counterintelligence. On that day, the US Department of Justice announced two major, simultaneous actions against two of the three most active strategic adversaries of the United States. First: the seizure of 13 web domains linked to a Chinese espionage operation targeting the
  2. COLUMN: The Double Strike of June 10 — The Day the FBI Hit Beijing and Moscow at the Same Time
  3. Introduction: One day, two fronts — the espionage war accelerates
Transparency

Facts, quotes, and cited links remain in the body. Interpretations are framed as analysis or opinion according to the format.

COLUMN: The Double Strike of June 10 — The Day the FBI Hit Beijing and Moscow at the Same Time

Introduction: One day, two fronts — the espionage war accelerates

June 10, 2026 — a date that will mark the history of Western counterintelligence

In my view, June 10, 2026 will remain one of the most significant days in the recent history of Western counterintelligence. On that day, the US Department of Justice announced two major, simultaneous actions against two of the three most active strategic adversaries of the United States. First: the seizure of 13 web domains linked to a Chinese espionage operation targeting the recruitment of American citizens to deliver national security secrets to Beijing. Second: the indictment of Denis Obrezko, 36, a Belarusian arrested in Thailand, for his role in the Russian cyberespionage campaign Void Blizzard.

Two operations. Two countries. Two completely different methods. And a common message addressed to Beijing and Moscow simultaneously: the United States sees what you are doing, and it now has the will to say so publicly and to act. That message matters. Not sufficient — we will come to that. But it matters. And when the FBI strikes China and Russia simultaneously on the same Tuesday in June, it deserves a moment of attention to understand what just happened.

The Five Eyes context — a premonitory warning published seven days earlier

This double action of June 10 did not come from nowhere. It was preceded by a warning published on June 3, 2026 by the cybersecurity agencies of the Five Eyes — the intelligence alliance bringing together the United States, the United Kingdom, Canada, Australia, and New Zealand. Titled "Safeguarding Our Secrets," this joint advisory documented the methods used by Chinese military intelligence services to recruit sources in allied countries, notably through professional platforms such as LinkedIn.

Seven days later, the DoJ moved from warning to action. This coordination deserves to be noted: the Five Eyes publicly flag the threat, and a week later the United States demonstrates that it has not only the words but also the legal and operational tools to act. This is a notable posture shift compared to previous years, when Chinese and Russian espionage files accumulated without proportional public actions following them.

The 13 Chinese domains — a recruitment infrastructure in plain sight

How Beijing recruits traitors — the architecture of fake employers

The 13 web domains seized by the DoJ were not hacking sites. They were something more insidious: fake companies, fake consulting firms, fake professional recruiters — digital fronts designed to approach American citizens holding security clearances and convince them to work for Beijing in exchange for payment. The method is sophisticated in its ordinariness: it mimics exactly the normal world of professional recruitment, using the codes and platforms that targets trust.

The analysis by the Foundation for Defense of Democracies (FDD), published June 15, dissects this architecture: the fake domains used credible company names, legitimate addresses, plausible job descriptions, and multi-step recruitment processes that progressively asked targets to provide increasingly sensitive information in exchange for growing financial compensation. This is a large-scale professional honeytrap operation.

The targeted profiles — who Beijing wants to recruit inside the American security apparatus

The profile of targets sought through these 13 domains reveals Beijing's intelligence priorities. Among them: government analysts working on China or Asia-Pacific files, military personnel with clearances on defense technologies, researchers in AI, drones, and cybersecurity, and officials in intelligence agencies or the Treasury with access to information on sanctions. This is not a randomly cast net — it is a precise targeting of people who have access to the information Beijing considers priority.

This precision in targeting indicates several things: competent analysts on the Chinese side who understand the organizational chart of the American security apparatus, deep knowledge of the careers and LinkedIn profiles of potential targets, and the operational patience to build relationships of trust over several months before moving to the sensitive ask. This is a digital human intelligence (HUMINT) operation of a sophistication that recalls Cold War methods, adapted to twenty-first century tools.

Denis Obrezko and Void Blizzard — the Russian campaign inside NATO states

Void Blizzard — the Russian group that systematically targets Ukraine's allies

On the same June 10, 2026, the DoJ announced the indictment of Denis Obrezko, 36, arrested in Thailand through the cooperation of local authorities. Obrezko was a key facilitator for the group Void Blizzard, a Russian cyberespionage entity active since April 2024 against organizations in NATO member states. The group has targeted particularly sensitive sectors: media, emergency services, local governments, defense think tanks, and civil society organizations supporting Ukraine.

Void Blizzard is not a group of criminal hackers seeking financial gain. Its operational profile — targets, methods, persistence — indicates a Russian state or para-state group with clear intelligence objectives: mapping Western support for Ukraine, identifying key personnel in pro-Ukrainian organizations, and preparing influence or sabotage operations in allied countries. Obrezko's arrest deprives the group of an important link, but does not dismantle the entire organization.

The arrest in Thailand — the international cooperation network against Russian espionage

The fact that Obrezko was arrested in Thailand is significant. It demonstrates that international cooperation in the field of cyber counterintelligence extends beyond the traditional Western democracies. Thailand, a country that is not a NATO member, agreed to cooperate with the FBI to detain a suspect sought by the United States for cyberespionage crimes. This is a signal that the progressive diplomatic isolation of Russia is bearing fruit even in countries geographically and ideologically distant from the Ukrainian conflict.

For Moscow, this type of arrest is a wake-up call. It means that the comfort zones for Russian cyber actors — the countries that previously refused to cooperate with American extradition requests — are shrinking. The space in which Russian hackers can operate with legal impunity is contracting. Not fast enough, not completely enough — but the trend is real. And it reflects the growing diplomatic cost that the war in Ukraine imposes on Russia in its relations with third parties.

The "professional dependency" strategy — Beijing's secret weapon on LinkedIn

LinkedIn as a hunting ground — a structural vulnerability of open democracies

The Five Eyes advisory of June 3, 2026 highlights an aspect of Chinese espionage strategy that Western governments are slow to address frontally: the systematic use of professional platforms like LinkedIn to identify and approach targets. LinkedIn is, by its very nature, a public registry of who works where, with what skills, on what projects — a trove of information for anyone seeking to identify personnel with clearances or working on sensitive projects.

The method documented by the Five Eyes is simple and effective: a Chinese operator creates a credible fake professional profile (sometimes a real shell company), contacts a target via a connection request or InMail, establishes a progressive professional relationship over several weeks or months, and ultimately proposes payment for "consultations" or "market reports" that are in reality requests for classified information. The banality of the channel is its strength: everyone receives LinkedIn messages, and everyone knows about headhunters.

Protecting sensitive personnel — between professional transparency and national security

The response to this threat is uncomfortable for open democracies: it involves restricting, at least partially, the public professional visibility of personnel working on sensitive files. This is a real tension between the culture of transparency and openness that characterizes our societies, and the security demands posed by adversaries who exploit precisely that openness. Solutions exist — low-profile training, professional pseudonyms for sensitive personnel, automatic alerts on suspicious approaches — but they are rarely systematized.

The Five Eyes advisory recommends practical measures: systematically reporting suspicious approaches made through professional platforms, training clearance-holding personnel in the methods used by foreign services for recruitment, and strengthening security culture in organizations employing people with access to sensitive information. These recommendations are necessary. They are also, in large part, already known for years. The real question is why they are not yet applied systematically in all concerned organizations.

Two adversaries, two methods — the geography of espionage in 2026

China prefers human recruitment — Russia prefers cyber

The double action of June 10 illustrates a fundamental difference in the espionage approaches of China and Russia. Beijing prioritizes human recruitment (HUMINT): it seeks agents inside target organizations, people who can deliver information over time, with direct access to documents and decisions. This model is harder to detect than cyberespionage and potentially more devastating over the long term.

Russia, represented here by Void Blizzard, prioritizes cyber: mass intrusions, data exfiltration, digital influence operations. The Russian method is more visible (and therefore more detectable), but also more scalable — it can target hundreds of organizations simultaneously with limited resources. These two approaches are not mutually exclusive — both countries practice HUMINT and cyber — but their profiles reveal different intelligence cultures with complementary strengths and weaknesses.

The Moscow-Beijing axis in espionage — cooperation or competition?

A question analysts have been asking since the beginning of the war in Ukraine is: do Russia and China cooperate in their espionage operations against the West, or do they operate as competitors? The answer appears to be both. There is evidence of limited coordination on certain files — notably around Ukraine — but also genuine competition for the same intelligence sources within Western organizations.

What is certain is that both countries indirectly benefit from the other's operations: when Russia destabilizes an allied organization, it creates vulnerabilities that China can exploit. When China steals defense technologies, it indirectly feeds Russian capabilities through technological transfers. The West's adversary is not a monolithic entity — but the effects of their combined actions are, in practice, synergistic. And that is why responses must also be coordinated.

The impact on the war in Ukraine — espionage as an invisible front

Stolen secrets fund and inform resistance to Kyiv

There is a direct link between the Chinese and Russian espionage operations documented on June 10 and the war in Ukraine. Information on American national security decisions, defense technologies, planned weapons deliveries — all this data, if it reaches Moscow, gives Putin an advantage in his war against Ukraine. An invisible advantage, impossible to count in miles of territory gained, but real in its capacity to anticipate allied actions and adapt Russian strategy accordingly.

This is why Volodymyr Zelensky and his government have systematically supported Western counterintelligence initiatives. Kyiv understands better than anyone that the war is also an intelligence war. Every Chinese operator recruited, every Russian hacker arrested, every espionage infrastructure dismantled is an additional advantage for Ukraine. And it is a victory that the allies win not on the battlefields of the Donbas, but in the courtrooms of Washington and Bangkok.

Intelligence on weapons deliveries — the most valuable intelligence

For Russia, the most valuable intelligence its espionage operations can collect from Western organizations concerns weapons deliveries to Ukraine: what, when, by which routes, in what quantities. This information allows Moscow to target logistics corridors, plan strikes on weapons depots, and adapt its military strategy accordingly. Groups like Void Blizzard, which target media and civil organizations supporting Ukraine, also seek to identify the informal support networks for Kyiv operating outside official government channels.

Understanding this concrete dimension of Russian espionage against the West is essential to measuring its real impact. This is not merely a question of national ego or diplomatic prestige. It is a question of Ukrainian lives. A Ukrainian weapons convoy struck because its route was compromised by a human source recruited via LinkedIn is a direct consequence of the type of operation the DoJ targeted on June 10. Espionage kills, even when the spy is not the one who pulls the trigger.

The FDD and the analysis of China's virtual espionage strategy

Spying without hacking — Beijing's "virtual strategy" explained

The Foundation for Defense of Democracies analysis published June 15 sheds particularly useful light on what has changed in China's espionage strategy. The phrase used — "virtual espionage strategy" — designates Beijing's capacity to conduct intelligence collection operations that do not necessarily involve direct computer intrusion, but exploit legitimate digital infrastructure (LinkedIn, employment platforms, academic conference sites) to achieve the same objectives.

This approach is harder to detect and prosecute than traditional cyberespionage, because it operates in legal gray zones: recruiting someone via LinkedIn is not illegal in itself — it is the sequence of the operation that can be. The boundary between legitimate professional networking and espionage operation is deliberately blurred. And it is precisely in this gray zone that Chinese operators operate with the greatest effectiveness — and the fewest risks of immediate prosecution.

Domain seizures as a disruption strategy — effective but insufficient

The seizure of 13 web domains is an appropriate response, but its limits are obvious. Domains can be replaced within hours. Fake recruiter infrastructures can be rebuilt within days. The real value of this action is not operational disruption — it is the political signal and the judicial record: the United States publicly documents Beijing's methods, names the entities involved, and creates a precedent for larger future actions. This is the beginning of a strategic indictment dossier, not a definitive victory.

An effective response to China's virtual espionage strategy requires a combination of actions: targeted economic sanctions against implicated Chinese companies, cooperation with professional platforms to detect fake profiles, intensive training of sensitive personnel, and a systematic public accusation policy that names and exposes Chinese operations. Without this combination, domain seizures remain symbolic gestures — as necessary as they are symbolically.

The institutional response — the limits of current structures facing an evolving threat

Intelligence agencies overwhelmed — a structural challenge

One of the realities that the events of June 10 illustrate with uncomfortable clarity is this: the intelligence and counterintelligence agencies of the United States and its allies are structurally overwhelmed by the volume and sophistication of Chinese and Russian espionage operations. The FBI, the CIA, the Five Eyes partner agencies — they have high-quality experts, but their resources are limited against the mass of adversary operations.

Every domain seizure, every arrest, every joint advisory represents hours of analytical work, complex judicial files, and delicate international cooperation. The adversaries can deploy unlimited resources of operators, technicians, and infrastructure. This structural imbalance is the real challenge that Western governments must address — not through speeches about cybersecurity, but through massive investments in the human and technical capabilities of counterintelligence.

The Five Eyes model — a framework that must expand

The Five Eyes model is the most developed example of intelligence cooperation among democracies. The joint advisory of June 3, the double action of June 10 — these sequences would not have been possible without the level of coordination and information sharing that the Five Eyes have developed over decades. But this model must expand. Europe, represented by countries such as Germany, France, and Poland, is at least as exposed to Chinese and Russian espionage operations as the current Five Eyes members.

The progressive integration of European partners into the Five Eyes intelligence-sharing framework — or the creation of an equivalent framework involving the EU and NATO — is a strategic necessity. Operations like Void Blizzard and the 13 Chinese domains do not target only the anglophone democracies. They target the entire Western support structure for Ukraine. And responding to that threat effectively requires an expanded Western intelligence community — not just five countries, but the entire democratic alliance.

Democracies and the freedom of information — a vulnerability to own

Democratic openness as a target — the fundamental tension

There is a fundamental tension that June 10, 2026 illuminates brutally: democracies function on transparency, openness, and freedom of information. These values are what distinguishes us from the authoritarian regimes we are contending with. But they are also what our adversaries exploit systematically. LinkedIn is an open platform because we believe in professional freedom. REDCap is shared infrastructure because we believe in open science. The internet is accessible because we believe in freedom of information.

Chinese and Russian intelligence services do not share these values. They can use our open platforms without reciprocity. They can recruit on LinkedIn without exposing their own personnel the same way. This asymmetry of values is a structural vulnerability of democracies — a vulnerability that cannot be eliminated without betraying what we are, but that can be mitigated through intelligent vigilance and targeted measures that protect the most exposed personnel without sacrificing freedom for all.

Vigilance without paranoia — finding the right balance

The response to this vulnerability cannot be institutional paranoia — closing LinkedIn to civil servants, restricting collaborative academic research, treating every foreign contact as a potential threat. That would be adopting the methods of the regimes we are fighting. The response must be targeted, proportionate, and intelligent: heightened vigilance for people holding sensitive clearances, robust training in the recruitment methods of foreign services, and effective alert systems for reporting suspicious approaches.

It is in this delicate balance — between the openness that is our strength and the vigilance that protects our secrets — that an essential part of the strategic competition between democracies and their authoritarian adversaries is played out. June 10, 2026 showed that we have the tools to defend this balance. The question is whether we also have the consistency and the political will to use them systematically, not just occasionally.

The lessons of June 10 — what every democracy must take away

Document, name, expose — a systematic public accusation strategy

One of the most important lessons of June 10 is the value of systematic public accusation. By seizing the domains and publicly indicting Obrezko, the DoJ is not merely acting operationally. It names, documents, and exposes — creating a public record of adversary methods and actors. This transparency has several effects: it informs the public, it creates a reputational cost for adversary countries, and it strengthens international cooperation by providing partners with factual information on which they can act in turn.

European democracies — including Canada, whose institutions were targeted by UNC6508 — should adopt the same doctrine: publicly naming adversary operations, documenting them in sufficient detail to inform the public and institutions without compromising sources and methods. This strategic transparency is an asymmetric weapon: authoritarian regimes, whose operations thrive in obscurity, hate being exposed. And public exposure is precisely what they are least equipped to counter.

Invest in human counterintelligence — not only in cybersecurity

The trend over the past decade has been to invest massively in cybersecurity — and rightly so. But June 10 is a reminder that the threat is also human. The 13 Chinese domains targeted humans, not servers. Void Blizzard sought to infiltrate organizations through people, not only networks. Investing in human counterintelligence — training, awareness, detection of adversary recruitment — is as urgent as investing in firewalls and intrusion detection systems.

The human dimension of contemporary espionage is underfunded and underestimated in most allied countries. This is a gap that Beijing and Moscow have perfectly identified. And as long as it is not closed — through robust awareness programs within sensitive institutions, through regular training on adversary recruitment methods, through easy and protective reporting mechanisms — operations of the "13 domains" type will continue to find fertile ground.

Prospects: espionage in a post-Ukrainian world

The war in Ukraine as a catalyst for the intensification of espionage

The war in Ukraine has profoundly reshaped the global espionage landscape. The stakes have risen, the incentives to collect intelligence have multiplied, and the operational urgency on both sides has pushed toward more aggressive and riskier operations. The 13 Chinese domains and Void Blizzard are direct products of this accelerated environment: the war in Ukraine has made every Western secret about weapons deliveries, defense plans, and policy decisions infinitely more valuable to our adversaries.

This reality will not change with an eventual end to hostilities. Espionage is a permanent activity of states, in war and in peace. But the quality and priority of targeted intelligence will shift. What will remain constant is the necessity for the West to maintain a robust and adaptive counterintelligence posture — not a crisis response, but a permanent infrastructure for protecting sensitive information in all the institutions that form the backbone of our democracies.

What June 10 signals for what comes next — a more offensive doctrine

The double action of June 10 could signal an important doctrinal evolution in the American counterintelligence strategy: moving from an essentially defensive posture (protect networks, monitor threats, act when an incident is detected) to a more proactive and offensive posture (identify ongoing adversary operations, dismantle infrastructure before it achieves its objectives, publicly expose methods to neutralize them). This doctrinal shift, if confirmed, would be significant.

It would mean that the United States — and its allies, if the doctrine spreads — are no longer content merely to parry blows, but are seeking to impose a real operational cost on their adversaries: cost in dismantled infrastructure, cost in arrested personnel, cost in public exposures that make future operations harder. This is a logic of active deterrence in the intelligence space. And if it works, it could change the risk calculus of Beijing and Moscow in ways that passive defenses have never managed to do.

What citizens must know — espionage is not reserved for intelligence agencies

Every citizen with a clearance is a potential target

There is a truth that governments don't like to say too loudly, but that June 10 forces us to own: every civil servant, military member, researcher, or contractor holding a security clearance is a potential target for Chinese and Russian intelligence services. Not in an abstract or theoretical way. In a concrete, operational, planned way. The 13 Chinese domains dismantled on June 10 targeted real people, with real jobs, in real organizations.

Those people have the right to know they are in the crosshairs. They have the right to be trained to recognize suspicious approaches. And they have the right to operate in organizations that have clear protocols for reporting and handling such approaches without exposing them to reprisals or discouraging bureaucratic procedures. National security is also built through trust between institutions and the individuals who serve them. And that trust begins with being honest about the risks.

Collective vigilance as a defense — what each person can do

Espionage is not a matter reserved for CIA or CSIS officers. In the age of LinkedIn and digital recruitment, everyone with access to sensitive information is potentially on the front line. Reporting a suspicious approach on a professional platform. Verifying the identity of an unknown recruiter proposing a "consulting" mission that pays unusually well. Not discussing sensitive projects on unsecured channels. These are simple gestures, but their cumulative impact is real.

What June 10, 2026 teaches us, at its core, is that the battle against foreign espionage is also fought in the daily decisions of thousands of ordinary people. Decisions such as: do I respond to this LinkedIn message? Do I accept this invitation to this conference paid for by a company I can't find anything about online? Do I report this strange approach to my security officer? Collective vigilance is a real weapon. And it begins with being informed. Which the events of June 10 precisely allow us to be.

The role of Congress and allied parliaments — legislating to protect

Obsolete laws facing twenty-first century threats

One of the blind spots of the Western response to Chinese and Russian espionage is legislative slowness. Espionage laws in most allied countries were designed in the era of the Cold War — for physical agents, hidden microphones, secretly photographed documents. Digital espionage via LinkedIn, fake web domains, and persistent malware operates in gray zones that these laws do not always clearly cover. The result: complex prosecutions, evidence that is hard to use in court, and verdicts that do not always send the intended deterrent signal.

The US Congress has made progress with laws targeting foreign entities on digital platforms. But European parliaments — including those of countries directly targeted such as Belgium, Poland, and Germany — struggle to legislate at the speed of the threat. Adapting legal frameworks to allow fast and effective legal responses to new forms of espionage is an urgent task. The West's adversaries do not wait for legislators to finish their committee debates.

Transatlantic legislative coordination — a pressing need

Beyond national legislation, an effective response to twenty-first century espionage requires transatlantic legislative coordination. If the United States criminalizes certain forms of recruitment through shell companies, but those same operations remain in a legal gray zone in Europe, Chinese and Russian operators will simply move their activities to the least constraining jurisdictions. Harmonizing legal definitions, evidentiary thresholds, and international judicial cooperation mechanisms is foundational work that allied governments must undertake without delay.

The war in Ukraine demonstrated that democracies can coordinate their responses — on sanctions, weapons deliveries, financial support — with unprecedented speed and coherence. That same coordination capacity must be applied to the counterintelligence domain. The West's adversaries have no borders in their operations. Our legal and legislative response cannot stop at national borders either.

The economic dimension — what espionage truly costs democracies

Technological theft as strategic wealth transfer

China's technological espionage is not only a military threat. It is a transfer of economic wealth at a scale that experts estimate at hundreds of billions of dollars annually. The technologies stolen from American and allied university laboratories, defense companies, and government agencies represent decades of research, massive public and private investment, and competitive advantages that Beijing acquires without paying the costs of the underlying research. This is industrial theft elevated to national strategy.

This economic theft has direct consequences on democracies' capacity to fund their own research: when research results are systematically exfiltrated to Beijing, Western companies and governments lose the competitive advantage that justifies their investments. Over time, this erodes the economic base of Western technological advantage — and with it, the capacity to fund militaries, develop defense technologies, and support partners like Ukraine.

The direct costs of the response — investing in counterintelligence as strategic investment

The June 10 seizures, LinkedIn risk training programs, security audits in universities — all of this carries a real cost in human and financial resources. This cost must be framed not as a security expenditure but as a strategic investment in preserving the West's technological advantage. Every dollar invested in detecting a Chinese espionage operation is a dollar that protects years of research against theft. The cost-benefit ratio is, under this logic, extremely favorable.

Governments that struggle to justify counterintelligence budgets before their parliaments should frame the question in economic terms: how much are the technologies that China steals each year from your university laboratories worth? How many future jobs do the advances in AI, drones, and cybersecurity represent — advances that are going to Beijing through intrusions like UNC6508 or recruitments like the 13 domains? The answer would make budget allocations in favor of counterintelligence much easier to defend politically.

Conclusion: a history lesson for the democratic alliance

One day, two strikes — but the war continues

On June 10, 2026, it was a good day for the democratic alliance. Thirteen domains of Chinese espionage seized. A Russian hacker arrested in Thailand and indicted. Adversary operations dismantled, infractions documented, messages sent. This is real, serious work that has real effects on adversary capabilities. It deserves to be recognized and acknowledged — not out of naivety, but out of fairness.

But we must also remain clear-eyed: the day after June 10, Chinese and Russian intelligence services were still active. The 13 dismantled domains were replaced by others. Void Blizzard's hackers continue to operate. The threat did not disappear with these two actions. It was partially disrupted, partially exposed. That is useful. It is insufficient. And the real victory will not come from a single day of action, but from a coherent, persistent, well-funded strategy over years.

What Ukraine teaches us — holding on over time

The most important lesson that Ukraine offers to the entire democratic alliance is a lesson in endurance. Kyiv has held against an invasion for more than four years. Not because every day is a victory, but because every day of resistance is a refusal of defeat. This logic applies to the espionage war as well. Every dismantled operation, every arrested hacker, every exposed espionage infrastructure is one day of resistance. Not a final victory. One day of resistance. And over time, that is exactly what counts.

Zelensky chose to fight when everyone told him it was a lost cause from the start. The FBI chose to act against Beijing and Moscow on the same day, sending a dual message to two adversaries simultaneously. These gestures seem modest against the scale of the threat. But they share something essential: they say that we are not yielding, that we see what is being done to us, and that we intend to fight back. And in the espionage war as on the battlefield, that declaration of will to resist is itself a form of victory.

By Maxime Marquette, columnist

Columnist's transparency note

Editorial positioning

This column reflects an openly pro-democratic alliance and pro-Ukraine position. I consider Chinese and Russian espionage operations against Western democracies to be a direct threat to Ukraine and to the democratic values the West embodies. The analysis of the 13 domains and Void Blizzard rests on the sources cited — notably the FDD report and public DoJ information. Passages on Sino-Russian strategic cooperation are contextual analyses based on open sources, not statements of directly established fact.

Sources and limitations

I did not have access to the full indictment documents against Denis Obrezko or the technical documents on the 13 seized domains. My analysis of China's virtual espionage strategy rests on the FDD report of June 15, 2026, and the public Five Eyes information. Elements on Void Blizzard are based on public DoJ reports and the secondary sources cited. Uncertainty about the actual extent of the damage caused by these operations is inherent to this type of file.

Sources

Primary sources

Secondary sources

Get the geopolitics analyses

Conflicts, powers, alliances: the MadMax thread without the noise.

Cite this article

Maxime Marquette (2026). COLUMN: The Double Strike of June 10 — The Day the FBI Hit Beijing and Moscow at the Same Time. MadMax. https://mad-max.co/en/article/chronique-la-double-offensive-du-10-juin-le-jour-ou-le-fbi-a-frappe-pekin-et-mos

How does this piece make you feel?
MM
Maxime Marquette
Independent columnist

Maxime Marquette writes most of the analyses and columns published on MadMax — geopolitics, technology, and current events, no filler.

The Newsletter

Enjoyed this piece? Get the next one.

One chronicle a week, straight to your inbox. No noise.

Comments

0 / 2000

Be the first to weigh in.

This article was generated with AI assistance, under human supervision.

Column2 reads5189 words5 min read