Ukrainian drones hit Yandex servers, causing near-total collapse of Russian disinformation bot activity
Ukrainian drone strikes on Yandex data centres caused a near-total collapse in Russian disinformation bot activity, according to Tom's Hardware.

Key points
- Yandex data centres were crippled by Ukrainian drone strikes.
- Russian bot traffic fell dramatically overnight.
- The infrastructure disruption effectively eliminated the bot network.
Ukrainian military operations targeted Yandex data centres, causing significant physical damage to the infrastructure. According to Tom's Hardware, this kinetic attack resulted in the near-elimination of Russian disinformation bot traffic overnight. The incident highlights the vulnerability of cloud infrastructure to physical threats.
Root cause
The disruption originated from Ukrainian drone strikes that hit multiple Yandex facilities. Tom's Hardware reports that these strikes crippled the data centres belonging to the company often referred to as Russia's Google. The physical destruction of hardware and facilities severed the operational capacity of the hosting environment.
View the original post on X
Attack path
The attack vector involved direct kinetic strikes on physical infrastructure rather than cyber intrusion. Ukrainian forces targeted specific data centre locations, destroying the servers and networking equipment required to host the bot networks. This physical removal of resources prevented the bots from connecting to the internet or processing commands.
Affected versions
The impact was not limited to specific software versions or configurations. Instead, the entire Yandex infrastructure hosting the bot traffic was affected. Tom's Hardware notes that the strikes crippled multiple data centres, meaning any service running on those specific physical assets was disrupted regardless of its technical stack.
Mitigation
There is no software patch or configuration change that can mitigate physical destruction of data centres. The mitigation in this case was the successful execution of the kinetic strike by Ukrainian forces. For organisations relying on this infrastructure, the disruption was involuntary and total.
What to do and how to stay safe: Yandex
- Monitor physical security alerts for data centre regions in conflict zones.
- Diversify hosting providers across geographically dispersed locations to reduce single-point failure risks.
- Implement redundant data replication strategies that do not rely on a single vendor's infrastructure.
- Review disaster recovery plans to include scenarios involving physical destruction of primary hosting facilities.
Step-by-step guide: Cyber Espionage Explained: How Silent Theft Works and How to Stop It
General security guidance from the Firewall Pulse newsroom. It is not confirmed advice from the organisations named in this story.
Frequently asked questions
Which company's infrastructure was targeted?
Yandex, often described as Russia's Google, had its data centres targeted.
What was the impact on bot traffic?
Russian disinformation bot traffic was nearly eliminated overnight, according to Tom's Hardware.
How was the infrastructure damaged?
Ukrainian drone strikes crippled multiple Yandex data centres.



