Reporting period: August 1–31, 2026
Focus: CIA Director John Ratcliffe’s August 25 Moscow visit, reported Russian activity during August, and the potential for Russian attacks on NATO territory through sabotage, terrorism-like covert action, cyber operations, or limited military provocation.
The available reporting supports the assessment that Ratcliffe’s Moscow visit was principally a deterrence mission prompted by new U.S. intelligence concerning possible Russian escalation against NATO, particularly Estonia, Latvia, and Lithuania. Multiple independently reported accounts say Ratcliffe warned Russian intelligence officials against attacking NATO territory. The Kremlin confirmed that Ratcliffe met Russian intelligence counterparts and that Vladimir Putin was briefed afterward, although neither government has publicly released the substance of the discussions. (Reuters)
There is not enough public evidence to conclude that Washington detected preparations for a conventional Russian invasion of NATO. The evidence instead points toward concern about a limited, ambiguous, or deniable action designed to test NATO cohesion, potentially involving sabotage, cyberattack, drones, attacks on logistics infrastructure, assassinations, or another action calibrated to create disagreement over whether Article 5 should apply. U.S. intelligence reporting earlier in August specifically warned that Putin’s willingness to authorize provocative actions extending onto NATO territory appeared to be increasing. (CBS News)
Assessment: Russia conducting additional hostile operations on NATO territory during the next several months is likely. A deliberate conventional invasion of a NATO state in the near term remains unlikely. A deniable or deliberately ambiguous attack capable of causing casualties is plausible and increasingly concerning.
Confidence: moderate-high.
This is now the best-supported explanation.
The Wall Street Journal, CBS, RFE/RL, and reporting citing Politico independently reported that Ratcliffe warned Russian officials not to escalate against NATO allies. Estonia, Latvia, and Lithuania were specifically identified in several accounts. RFE/RL also reported that Baltic officials had been informed about the visit beforehand. (CBS News)
This significantly raises the importance of the trip. Ratcliffe did not travel through normal diplomatic channels. He flew from Washington to Latvia and then into Moscow aboard a U.S. Air Force C-17, stayed for only several hours, and met Russian intelligence officials rather than conducting an ordinary diplomatic visit. (New York Times)
That pattern resembles an intelligence-to-intelligence deconfliction or strategic-warning channel, rather than routine bilateral diplomacy.
The obvious historical comparison is CIA Director William Burns’ November 2021 trip to Moscow, when Burns personally conveyed U.S. warnings over Russia’s military buildup around Ukraine. The circumstances are different, but the selection of the CIA director as messenger suggests Washington wanted the warning delivered through a channel Moscow would understand as being based on intelligence rather than political rhetoric. (The Atlantic)
The most likely message was effectively:
The United States has intelligence suggesting you are considering or preparing actions against NATO territory. Do not miscalculate U.S. or NATO willingness to respond.
That does not necessarily mean the United States possesses intelligence indicating an attack decision has been made. Strategic warnings are often delivered earlier, when intelligence indicates contingency planning, operational preparation, or an evolving leadership discussion.
Axios subsequently reported that Ratcliffe also floated a potential Trump-Putin-Zelensky meeting and explored whether Russian intelligence chiefs could help persuade Putin to resume negotiations with Ukraine. (Axios)
Confidence: moderate-high.
Politico-linked reporting also indicates Ratcliffe pressed Moscow to reduce military and economic assistance to Iran. The issue is plausible given the broader U.S.-Russian confrontation over Iran, but the NATO/Baltic warning is supported by more independent reporting. (Meduza)
Assessment: Iran was probably on the agenda, but does not adequately explain the timing, Latvia stop, and repeated reporting concerning a NATO warning.
The Ratcliffe visit did not occur in isolation. Several developments during August created a pattern that would reasonably concern U.S. and European intelligence services.
On August 4, authorities discovered an explosive-laden drone near Ukrainian Antonov cargo aircraft at Leipzig/Halle Airport in Germany. Reporting indicated the drone carried PETN and Semtex and had been modified in ways potentially intended to circumvent electronic detection. (tagesschau.de)
Additional drones and suspected military explosives were subsequently discovered near the airport. Leipzig/Halle is not merely a civilian airport. It is a major European logistics hub used by cargo carriers and military-related transportation, making it an attractive target for an operation intended to disrupt supply chains supporting Ukraine. (The Guardian)
A U.S. intelligence source told ABC News that the device bore characteristics associated with Russian GRU explosive-drone techniques. German authorities have not yet publicly issued a final attribution, although Chancellor Friedrich Merz said on August 30 that Germany was preparing a coordinated response with NATO and EU partners. (ABC News)
This is one of the strongest indicators that the issue prompting Ratcliffe’s visit may concern kinetic hybrid operations rather than a conventional military invasion.
An explosive drone attacking an aircraft at a NATO logistics hub could:
Depending on intent and target selection, such an operation could reasonably be characterized as state sabotage or terrorism-like covert action.
Russian attribution confidence: moderate-high, pending German final attribution.
On August 18, a German court convicted a Ukrainian national for participating in an operation initiated by a Russian state entity in which GPS-equipped test parcels were shipped through European logistics networks. The court found that the objective was to map shipping routes for future sabotage. (Reuters)
The operation has obvious connections to the earlier European parcel-incendiary campaign, in which explosive packages detonated at logistics facilities in Germany, Poland, and Britain.
The important intelligence point is the workflow:
test parcel → GPS route mapping → understand screening and transport chains → insert destructive package
This is reconnaissance preceding attack.
Lithuanian prosecutors have previously characterized related attacks as terrorism and sabotage on behalf of a foreign power, and investigators believe Russian military-intelligence-linked personnel coordinated the operation. (euronews)
The choice of commercial cargo networks introduces substantial civilian risk. A device intended to ignite aboard a cargo aircraft could cause catastrophic casualties even if the strategic objective is sabotage rather than public terror.
German investigators disclosed in August that they had discovered a professionally prepared weapons cache outside Berlin containing live firearms and ammunition. German intelligence reportedly assessed that the weapons were intended for operatives conducting violent missions on behalf of Russia. (tagesschau.de)
German authorities are seeking the extradition of a suspect detained in Romania. Interior Minister Alexander Dobrindt publicly described the investigation as involving preparations for a serious act of violence threatening state security. (The Guardian)
This represents classic clandestine support tradecraft:
procure weapon → cache weapon → separate logistics personnel from shooter → provide location to operational cell → retrieve immediately before attack
Such infrastructure could support:
The cache should be viewed as prepositioned covert-action infrastructure, not ordinary espionage equipment.
Russian linkage: moderate confidence.
The word terrorism needs to be used carefully because legal classifications vary among NATO states.
Operationally, however, several suspected Russian operations now share characteristics normally associated with terrorism:
The distinction is primarily one of sponsorship and strategic purpose.
A terrorist organization may attack civilians to coerce a government. A state intelligence service may conduct almost the same physical act to disrupt military aid, intimidate a population, or undermine alliance cohesion.
From an intelligence perspective, the more useful term is:
state-directed terrorism-like covert action or kinetic hybrid warfare.
The EU has explicitly described the current hybrid environment as including sabotage, incendiary devices on aircraft, assassination attempts, cyberattacks, infrastructure disruption, and foreign information manipulation, with Russia identified as the principal current actor. (European External Action Service)
Likelihood: high
The most probable targets are transportation and logistics systems directly supporting Ukraine:
The Leipzig incident and parcel reconnaissance provide direct evidence of Russian interest in this target set. (The Washington Post)
A major advantage for Moscow is that attacks can be designed to look like accidents, criminal activity, extremist attacks, or isolated sabotage.
Likelihood: moderate-high
The Berlin arms cache increases concern that Russia is maintaining infrastructure for targeted killings.
Potential targets include:
Such attacks have precedent in Russian intelligence operations and offer Moscow significant psychological impact at relatively low military risk.
Likelihood: moderate
The logistics-parcel campaign demonstrates a willingness to accept substantial civilian risk.
A parcel explosive detonating aboard an aircraft, railway platform, warehouse, ferry terminal, or similar transportation system could cause mass casualties even if the intended strategic objective were supply-chain disruption.
I would not assess that Moscow’s primary objective is indiscriminate mass-casualty terrorism. Instead, the greater danger is operational indifference to civilian casualties during sabotage.
Likelihood: high
Cyberattack is probably the lowest-risk means for Moscow to test NATO response thresholds.
NATO formally condemned Russia in July for persistent malicious cyber operations against allied critical infrastructure and government entities and specifically highlighted Russian exploitation of a wider cyber ecosystem, including criminal actors. (NATO)
During August, the pro-Russian Server Killers group claimed a major DDoS attack against Norway’s national digital public-services infrastructure following Oslo’s renewed security cooperation and aid commitment to Ukraine. Most services remained operational. (AP News)
There is currently insufficient public evidence to say Server Killers was acting under direct Russian intelligence control. The important issue is the broader ecosystem. Moscow can benefit from:
This provides layered deniability.
Russian cyber activity against NATO could plausibly target:
The objective would not necessarily be prolonged destruction. A short disruption producing visible public consequences could be enough to test NATO political reaction.
Likelihood: moderate
This is one of the more concerning scenarios.
Russia could combine:
cyber disruption + sabotage + disinformation
For example:
This would maximize uncertainty during the critical first hours after an incident.
Russia’s established hybrid doctrine strongly favors operations in which military, intelligence, cyber, political, and information effects reinforce one another.
Likelihood: moderate
NATO reported Russian airspace violations involving Poland and Romania during August and explicitly stated that the incidents demonstrated Russia’s increasing tolerance for risk. (NATO)
A deliberately ambiguous drone or missile strike against Estonia, Latvia, Lithuania, Poland, or Romania would provide Moscow with several possible narratives:
This type of operation offers a better Article 5 test than a conventional border invasion because attribution and intent would immediately become subjects of political debate.
The most important strategic point is that the physical target may not be the real target.
The real target could be NATO’s political decision-making process.
ISW assesses that Russia could choose a deliberately limited action designed to generate disagreement among allies over whether Article 5 applies and what response is proportionate. (Critical Threats)
The Kremlin would not need to defeat NATO militarily.
It would need to create a situation in which NATO states argue publicly over questions such as:
If NATO visibly fractured over those questions, Moscow could claim a strategic victory without occupying a single kilometer of NATO territory.
Assessment: this is one of the most plausible strategic objectives behind a limited Russian attack.
Several factors may be influencing Russian risk calculations.
Russia remains unable to achieve decisive political objectives in Ukraine while suffering attacks deep inside Russian territory and significant economic and logistical strain. Current reporting indicates Moscow increasingly views action against Ukraine’s European support network as a way to alter that equation. (The Wall Street Journal)
The Washington Post reported that U.S. intelligence assesses the Kremlin may perceive the United States as weakened or distracted by the Iran war, potentially creating an opportunity to increase pressure on Europe. (The Washington Post)
If accurate, this would be an important change in Russian risk perception.
U.S. and European stockpile pressures may encourage Moscow to believe NATO has less appetite for another confrontation.
The Baltic states provide Russia with an unusually attractive testing environment because they are geographically exposed, close to Russian military infrastructure, and politically central to NATO’s credibility.
There is currently no strong public evidence that Russia is preparing a full-scale invasion of Estonia, Latvia, Lithuania, Poland, or another NATO state in the immediate term.
NATO itself stated on August 30 that it does not currently see an imminent direct attack, despite increased Russian hybrid activity. (Reuters)
That assessment is not inconsistent with Ratcliffe’s mission.
The threat Washington appears to be worried about is likely below the threshold of conventional war.
Russia has denied involvement in the Leipzig incident and other European sabotage operations and frequently frames Western accusations as anti-Russian hysteria or attempts to prepare public opinion for escalation. (ABC News)
That does not by itself prove Russian responsibility. Several current cases remain under investigation, and analysts should avoid converting intelligence assessments into established facts.
At the same time, Moscow has a strong incentive to maintain ambiguity around precisely these operations.
The expected information pattern following a Russian covert attack would probably include:
immediate denial → alternative attribution → claims of Western provocation → amplification of contradictory explanations → demands for incontrovertible proof → warnings against escalation
The objective would be less to convince everyone of one story than to make certainty politically expensive.
| Scenario | Near-term likelihood | Potential impact | Attribution difficulty |
|---|---|---|---|
| Cyberattack on NATO infrastructure | High | Moderate-high | High |
| Sabotage of Ukraine logistics in NATO | High | High | Moderate-high |
| Assassination attempt | Moderate-high | High | Moderate |
| Explosive/drone attack on transport hub | Moderate | Very high | Moderate |
| Coordinated cyber + physical attack | Moderate | Very high | High |
| Deliberate Baltic drone/missile incident | Moderate | Very high | High initially |
| Limited border incursion | Low-moderate | Extreme | Low |
| Full conventional NATO invasion | Low | Extreme | None |
The Ratcliffe trip should probably not be interpreted as evidence that U.S. intelligence believes Russian tanks are about to enter the Baltics.
It is more concerning in another respect.
The reporting suggests Washington believes Putin’s tolerance for risk against NATO has increased enough that a CIA director was dispatched personally to Moscow to establish a clear deterrent boundary. That judgment is occurring at the same time European investigations are uncovering explosive drones, parcel-bomb reconnaissance, clandestine weapons caches, proxy recruitment, assassination infrastructure, airspace violations, and persistent Russian or pro-Russian cyber activity. (CBS News)
My assessment is that the most credible threat is a Russian intelligence-directed hybrid attack intended to be serious enough to frighten or disrupt a NATO state, but ambiguous enough to provoke argument over attribution and Article 5.
A cyberattack, destructive sabotage operation, attack on military logistics, or proxy-conducted bombing would fit that requirement considerably better than a conventional invasion.
The strategic objective would likely be larger than the immediate physical damage: demonstrate that supporting Ukraine carries costs inside NATO territory, expose disagreement within the alliance, undermine confidence in Article 5, and force European governments to divert intelligence, military, and security resources away from Ukraine.
I can also monitor specifically for new reporting that corroborates the Ratcliffe warning, Russian preparations against the Baltics, Leipzig attribution, or indicators of impending Russian cyber/sabotage operations against NATO.