As cited
Copy frozen at (site build).
threat intel
CopyCop Targets AI Investment in Armenia
Russian influence network CopyCop (Storm-1516) conducted a disinformation campaign against a US-Armenian AI data center in Hrazdan, Armenia between June 24 and July 13, 2026. The operation deployed three fake media accounts spreading fabricated earthquake warnings, economic viability doubts, and a spoofed Iranian military statement claiming the facility was a legitimate military target, accumulating over 1.6 million views across the campaign. Researchers assess CopyCop will continue targeting Western investment in Armenia using similar tactics and amplification networks.
Why it matters: Organizations investing in or operating infrastructure projects in Armenia and other geopolitically contested regions should monitor for disinformation campaigns that may impair project viability, partner confidence, and stakeholder decision-making; security teams should track CopyCop's tactics for early warning of coordinated false narratives targeting their own assets or customers.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
CopyCop Targets AI Investment in Armenia
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
CopyCop Targets AI Investment in Armenia
CopyCop (Storm-1516) likely sought to undermine a joint US‑Armenian artificial intelligence (AI) data center in Hrazdan by fabricating narratives about earthquake risk and military targeting between June 24 and July 13, 2026. Insikt Group recorded three separate media impersonations that grew from limited engagement to over 1.6 million combined views, showing the operation’s expanding reach.
Why it matters: Investors and partners in the Firebird AI data center face disinformation that could impair project support; they should monitor social channels for impersonation and false claims.
- Source published
- First seen by Cybersecurity Tracker