Welcome to the Global Intelligence Knowledge Network Podcast, where real-world intelligence expertise meets insightful analysis. Join your host, Neil Bisson, a former Intelligence Officer with the Canadian Security Intelligence Service, for a weekly deep dive into the world of espionage, national security, foreign interference, terrorism, and all matters spy and intelligence related.
With over 25 years of experience in intelligence and law enforcement, both domestically and internationally, Neil Bisson brings a unique perspective to the table. From hunting spies and terrorists to recruiting and managing human sources, he's seen it all.
Each episode, Neil Bisson, Director of Global Intelligence Knowledge Network as he provides a comprehensive summary of the most intriguing international intelligence stories, dissecting the hottest media topics with professional analysis and insider knowledge. Whether you're a seasoned intelligence professional or simply fascinated by the world of spies, this podcast is your go-to source for accurate, insightful, and engaging content.
Tune in weekly to stay informed, enlightened, and entertained. Don't miss out on the latest from the frontlines of global intelligence. Subscribe now to the Global Intelligence Knowledge Network Podcast on Buzzsprout and never miss an episode. Stay sharp, stay informed, and stay ahead of the curve with the Global Intelligence Knowledge Network Podcast.
ππ΅οΈ Are Proxy Operations on the Rise? | Season 4 Premiere | Global Intelligence Weekly Wrap-Up
Season Four of Global Intelligence Weekly Wrap-Up starts now!
Neil Bisson β retired CSIS Intelligence Officer, former CBSA Officer, and Director of the Global Intelligence Knowledge Network β returns for a new season examining the espionage, foreign interference, sabotage, terrorism and national security developments shaping Canada and the world.
And Season Four begins with an important question:
Are Proxy Operations on the Rise?
This week, Neil examines five stories demonstrating how modern intelligence operations increasingly exploit insiders, recruited individuals, proxy actors and vulnerabilities in critical infrastructure.
The episode begins in Belgium, where a Belgian-Chinese researcher is preparing to face trial over allegations involving the transfer of sensitive semiconductor technology to China. The case demonstrates why ACCESS remains one of the most valuable commodities in intelligence collection β particularly when advanced technology has both commercial and military applications.
From there, we turn to Canada and the United States, where University of Waterloo student Weiheng Zeng is being held as part of an FBI counter-intelligence investigation. According to court documents, Zeng allegedly accepted paid assignments from an individual he believed was connected to a Chinese security service, including photographing aircraft and aviation facilities.
How does an apparently ordinary online relationship evolve into intelligence tasking β and potentially create a proxy for a foreign intelligence service?
In Germany, a series of sabotage attacks targeting the electrical grid demonstrates how relatively simple physical attacks can potentially produce serious consequences for critical infrastructure.
Then the episode heads beneath the Arctic Ocean.
Reuters reports that NATO allies disrupted what Western officials believe was a covert Russian operation near Svalbard involving specialized deep-sea forces potentially rehearsing the deployment of technology capable of sabotaging undersea fibre-optic cables.
No cables were damaged β but that may be precisely why this story matters. Neil examines how intelligence can identify preparations for sabotage before an attack occurs and why undersea infrastructure is becoming an increasingly important component of modern grey-zone conflict.
Finally, we travel to Australia, where businessman Alexander Csergo has become the first person sentenced under Australia's reckless foreign-interference law.
His relationship allegedly began with a LinkedIn approach offering paid consulting work before developing into increasingly sensitive research requests β providing a real-world example of the recruitment methodology CSIS and its Five Eyes partners have warned is being used by Chinese intelligence services.
Different countries. Different targets. Different methods.
But are foreign states increasingly using recruited individuals, insiders, intermediaries and proxy actors to achieve intelligence objectives while distancing themselves from the operation?
This episode asks:
β’ Are proxy operations becoming a more important tool for foreign states? β’ How can an online relationship evolve into intelligence recruitment? β’ Why is dual-use technology an important target for economic espionage? β’ How vulnerable is critical infrastructure to physical sabotage? β’ Was Russia rehearsing the capability to sabotage NATO undersea communications? β’ How are intelligence services using professional networking platforms to identify potential sources?
Neil also marks the 25th anniversary of the September 11 attacks and reflects on how the events of that day changed the direction of his own career and ultimately led him to the Canadian Security Intelligence Service.
β± CHAPTERS
00:00 Introduction 02:05 Semiconductor Espionage: The Value of Access 06:52 University of Waterloo Student & Alleged Chinese Intelligence Tasking 12:50 Sabotage Attacks Target Germany's Power Grid 17:40 Russia, Svalbard & the Threat to Undersea Cables 23:58 Alexander Csergo: From LinkedIn to Foreign Interference 29:38 Remembering 9/11 β 25 Years Later 30:08 Final Thoughts & Outro
π SABOTAGE AND PROXY OPERATIONS IN MODERN INTELLIGENCE
This October, Neil Bisson will once again teach Sabotage and Proxy Operations in Modern Intelligence through the University of Ottawa Professional Development Institute.
The course examines how state and non-state actors use proxies, sabotage and unconventional methods to advance strategic objectives while complicating attribution and maintaining plausible deniability.
If your government agency, law enforcement organization, university or private-sector organization is seeking training, presentations or consulting on foreign interference, espionage, human-source recruitment, proxy operations, sabotage, research security or emerging national security threats, we'd be pleased to hear from you.
If you value independent analysis of espionage, foreign interference, proxy operations, terrorism, sabotage and emerging national security threats, please consider supporting the podcast.
Season Four is underway. Subscribe and join us each week as we follow the intelligence and national security developments shaping Canada and the world.
This week on Global Intelligence Weekly Wrap Up, Neil Bissan, a retired CSS intelligence officer and director of the Global Intelligence Knowledge Network, launches season four with a look at how espionage, foreign interference, and sabotage continue to evolve across borders. The episode begins in Belgium, where prosecutors are preparing to put a Belgian-Chinese researcher on trial over the alleged transfer of sensitive semiconductor technology to China, raising fresh concerns about economic espionage and the protection of dual-use technology. From there, the focus shifts to Canada and the United States, where a University of Waterloo student has become the subject of an FBI counterintelligence investigation after allegedly accepting paid taskings from a suspected Chinese security contact. In Germany, a series of attacks against the electrical grid demonstrates how relatively simple acts of physical sabotage can threaten critical infrastructure. Neil then examines a reported Russian operation near Svalbard, where NATO allies believe specialized deep-sea forces may have been rehearsing how to sabotage vital undersea communications cables. And finally, in Australia, a businessman becomes the first person sentenced under the country's reckless foreign interference law following an intelligence relationship that allegedly began with a LinkedIn approach. What do economic espionage, human source recruitment, critical infrastructure sabotage, and foreign interference all have in common? They show that modern intelligence threats rarely stay confined to one country, one method, or one target. What are you waiting for? Let's go.
SPEAKER_01
We start season four with a segment that takes us to Belgium, where authorities have detained a 52-year-old Belgian-Chinese man accused of illegally transferring sensitive semiconductor technology to China. According to Belgian federal prosecutors, the man held a senior research position with Belgain, a Belgian semiconductor manufacturer specializing in gallium nitrate or GAN technology. Belgain went bankrupt in July of 2024, putting more than 400 people out of work. But what makes this a national security story rather than simply a case of corporate theft is the technology involved. Gallium nitrate semiconductors have applications in electric vehicles and commercial electronics, but they are also used in aerospace, satellites, radar systems, and electronic warfare. In other words, this is a dual-use technology with both significant economic value and potential military applications. Belgian authorities allege that while the suspect was working in a senior research position in Belgain, he was simultaneously acting as the director of a Chinese company engaged in similar semiconductor manufacturing. According to prosecutors, the Chinese company was established only a few months after he began working at Belgain and was financed by a Chinese investment fund. Investigators are now examining whether specialized intellectual property and trade secrets concerning the production of gallium nitrate chips were unlawfully transferred from Belgium to China. The suspect was arrested in May at a Brussels airport as he was preparing to board a flight for Beijing. Authorities have conducted searches and seized data storage devices and electronic communications equipment for examination. According to open source reporting, Belgian authorities are also seeking a second suspect. The accused has denied all allegations. There are several things about this case that immediately stand out from an intelligence perspective. The first is access. Those of you who have listened to the Global Intelligence Weekly wrap-up for some time will have heard me discuss this before. Whether we're talking about traditional espionage, the recruitment of a human source, or the theft of intellectual property, access is one of the fundamental considerations. What information does an individual have access to? How valuable is it? And who else might want it? In this case, Belgian prosecutors allege that the individual wasn't attempting to penetrate Belgrane from the outside. He already occupied a senior research position inside the company. If the allegations are proven, the position potentially provided exactly what the intelligence collector or foreign competitor would want. Legitimate access to specialized knowledge, proprietary technology, and intellectual property. This is important because when people think about espionage today, they frequently picture cyber attacks. Hackers sitting somewhere overseas attempting to break through a company's computer network. But sometimes the most effective way to obtain protected information isn't to hack the network, it's to gain access through someone who already has it. This case also fits into a much broader concern surrounding Chinese acquisition of advanced Western technology. Belgium's State Security Service, the VSSE, has publicly warned about Chinese economic espionage and the targeting of Western scientific and technological enterprises. In its 2025 intelligence report, the VSSE warned that Chinese economic espionage can include unauthorized access to sensitive corporate and research data as well as the recruitment of individuals occupying key positions within economic, scientific, and financial institutions. The Belgian Intelligence Service also warned that technologies acquired through these methods are not necessarily intended exclusively for civilian purposes. Some Belgian reporting has described concerns about so-called mirror companies, situations in which investment in Western technology companies potentially provides access to expertise or intellectual property that can subsequently be replicated through a company operating in China. Belgian authorities have not yet proven that this is what happened at Belgain. That will ultimately be a matter up for the courts. But investigators clearly believe that there is enough evidence surrounding the relationship between the Belgian company, the Chinese company, and the movement of intellectual property to warrant a significant criminal investigation. We'll have to see what ultimately emerges when this case goes before the Belgian courts. But regardless of the eventual verdict, this investigation illustrates something that we've discussed repeatedly on this podcast. State-sponsored economic espionage is the main target of countries like Russia and China. This includes intellectual property sitting inside a private company, university, or research laboratory. And when that technology has applications in electric vehicles, aerospace, radar, and electronic warfare, the dividing line between economic security and national security becomes increasingly difficult to see. Given the Canadian government's push for increased innovation in fields like artificial intelligence, renewable energy, and access to critical minerals, it is likely that Canadian companies are very high on the target list of foreign enemy states. Wei Hing Zhang is a Chinese citizen and University of Waterloo undergraduate student who was arrested on August 23rd while attempting to cross the Ambassador Bridge from Windsor into Detroit. Zhang has been charged with making false statements to U.S. authorities. According to an FBI criminal complaint, Zhang told investigators that he had accepted paid assignments from an individual in China whom he believed was connected to a Chinese security service. Those assignments allegedly involved photographing Pacific aircraft and their tail numbers. According to court documents, Zhang first came to the attention of the authorities following an incident at Chicago O'Hare's International Airport in April. Security cameras reportedly captured a man taking photographs at a FedEx facility, climbing onto a forklift and attempting to open a locked FedEx truck and shipping container. Investigators later connected Zhang to the incident. The FBI complaint states that Zhang initially told investigators that photographing aircraft was simply a hobby. However, during subsequent interviews, his account reportedly changed. Zhang eventually told investigators that a Chinese contact had provided him with a specific aircraft photograph and paid him approximately $20 to $30 per photograph. He also allegedly told investigators that his contact periodically mailed him Chinese SIM cards and that he used a Huawei phone to communicate. According to the complaint, Zhang was instructed to destroy the SIM cards and delete his conversations and photographs after completing the assignments. The FBI alleges this activity wasn't confined to the United States. Zhang reportedly told investigators that in October 2025, the same contact directed him to photograph a FedEx facility at Toronto Pearsons International Airport. He said he was confronted by an employee and only managed to photograph the exterior of the building, but subsequently sent those photographs to his contact and received approximately $200. Zhang's sister, Nenhuan Wang, strongly disputes the suggestion that her brother knowingly engaged in espionage. She told media that her brother has a long-standing fascination with airplanes and suggested that he may not have understood the seriousness of the situation in which he had become involved. There is an aspect of the story that is particularly relevant from a human source perspective: the alleged recruitment process. According to the FBI complaint, Zhang said he met an unidentified individual through an online aviation community in 2024. After communicating for several months, the contact allegedly began asking him for assistance. This progression is worth noting. If Zhang's account to the investigators is accurate, the initial relationship was based on a shared interest in aviation. It subsequently developed into specific tasking, payment, and increasingly deliberate communication practices. This case provides an interesting example of how an apparently ordinary online relationship can potentially develop into something very different. It also reinforces why intelligence and security organizations continue to warn people that recruitment doesn't necessarily begin with someone approaching you and asking you to become a spy. Sometimes it begins simply with a conversation, then a request, then a payment, and so on. Eventually, the individual may find themselves involved in something far more serious than they originally anticipated. This case also demonstrates how foreign enemy states use proxy agents with citizenship or access to one country to access another country to conduct operations for them. This is an example of how proxy agents are used to accomplish certain tasks of a foreign state. I will be holding an online course on sabotage of proxy operations in modern intelligence in October for the University of Ottawa Professional Development Institute. There are spots still available, and I will leave a link to that course in the show notes. According to police in Cologne, he was carrying explosives when he was arrested, and investigators also discovered a tent hidden in a nearby undergrowth that had reportedly been rigged with additional explosives. The arrest balls a series of incidents targeting electrical infrastructure in the German states of Brandenburg, Saxony, and North Rhine-Westphalia. What makes these attacks particularly interesting is the method used. Investigators say rockets were used to shoot conductive wires across high voltage power lines, creating short circuits. The attacks resulted in generating units at some power plants being temporarily removed from the electrical grid. In Saxony alone, police discovered 21 devices near high voltage power lines last Friday and Saturday. Authorities have also discovered several launch devices near high voltage lines close to Rushweiler plant on Monday, along with another letter apparently claiming responsibility for the attacks. German media outlets reportedly received two earlier handwritten letters claiming responsibility. According to the Frankfurter Allemin Zettong, those letters contained information about the attacks and had not yet been made public. The letters were reportedly signed with the first name Daniel and provided a residential address near Gelitzburg. When police searched the suspect's apartment, they discovered even more explosives. Other reporting indicates the letters described opposition to the continued use of fossil fuels as a motivation behind the attacks. German authorities are continuing to investigate that motive in the full extent of the suspect's activities. There are two things I think are worth highlighting from an intelligence and national securities perspective here. First is the vulnerability of critical infrastructure. These attacks did not require sophisticated cybercapabilities or an elaborate military operation. According to investigators, relatively simple devices were used to interfere physically with high voltage transmission lines. And the potential consequences were significant. Saxony's Interior Minister, Armin Schuster, acknowledged that the attacks could have resulted in a regional blackout. The second point is the importance of not immediately attributing every act of sabotage against European critical infrastructure to a foreign state. We've discussed Russian sabotage and hybrid operations extensively on this podcast, and Germany has been particularly concerned about Russian activity targeting European infrastructure. In fact, only days ago, German Interior Minister Alexander Bilbrand was discussing increased protection of Germany and its critical infrastructure following the suspected Russian-linked drone attacks at Lutzbig Hale Airport. But the circumstances surrounding the case appear very different. At this stage, investigators have identified an individual suspect, recovered explosives, located what they believe are letters claiming responsibility, and are examining an apparent environmental or antifossil fuel movement. That distinction matters. Intelligence analysis isn't about finding facts that fit an existing threat narrative. It's about following the evidence to determine which threat you actually are dealing with. This case demonstrates how relatively uncomplicated physical attacks can potentially have significant consequences when they're directed against critical infrastructure. And that's an important security lesson regarding critical infrastructure that Canada needs to be aware of and prepare for, because attacks against our critical systems may come from unlikely or unsuspected perpetrators. Our next segment is one that will sound very familiar to regular listeners of the Global Intelligence Weekly wrap-up. Reuters is reporting that NATO allies, including Britain, Norway, and the United States, boarded what Western officials describe as a covert Russian operation involving critical undersea communication infrastructure near Klavlard in the Arctic. According to Reuters, Russian deep-sea assets were apparently practicing the deployment of technology that could potentially be used to sabotage undersea fiber optic cables. No cables were damaged. But from an intelligence perspective, that may not be the most important part of the story. What NATO appears to have detected was potentially the preparation and rehearsal for the capability to conduct such an operation. According to Rogers, the incident occurred during the spring of 2026 and involved Russia's main directorate for deep sea research, better known by its Russian acronym GUGI, or GUKI. This is a highly specialized Russian military organization responsible for deep sea operations and capable of operating submarines and other underwater systems around critical infrastructure. Western intelligence officials believe Russian vessels operating near Slavard were practicing the deployment of technology that could potentially interfere with or damage fiber optic cables connecting the Arctic archipelago to mainland Norway. Those cables are particularly important because they carry communication and satellite data associated with Slavard. Britain, Norway, and the United States reportedly coordinated surveillance of the Russian activity and confronted the vessels before the operation could be completed. The Russian vessels eventually withdrew with no infrastructure being damaged. But there is another reason this story caught my attention. We have talked about almost exactly this scenario before on the Global Intelligence Weekly wrap-up. Earlier this year, we discussed a joint British Indo-Regian military operation that tracked Russian submarines operating near critical undersea infrastructure in the North Atlantic. At that time, the operation involved the Akula class attack submarine and two specialized submarines associated with the GUGI. British Indo-Regian forces followed those vessels for more than a month, and the point I made during that episode was that the absence of damage did not make the activity insignificant. What mattered was presence, positioning, and capability. Those Russian vessels were demonstrating an ability to operate around infrastructure that Western economies and governments depend upon. We also discussed how activity like this sits inside what intelligence professionals often describe as the gray zone. Activity below the threshold of conventional armed conflict that can nevertheless provide a significant strategic advantage. The Reuters report may represent the next stage of exactly the activity we were discussing. The concern is no longer simply that Russia can locate, monitor, and map this infrastructure. Western officials now believe Russian forces may have been rehearsing how to interfere with it. A broader pattern that we have been following on this podcast for some time. Further episodes examined the Eagle S, the tanker suspected of damaging the S-line 2 electricity cable and several telecommunication cables connecting Finland and Estonia. Finnish investigators discovered evidence indicating that the vessel's anchor had apparently been dragged across the seabed where the cables were damaged. We also discussed the growing sabotage, shadow war, and the Baltic Sea, where numerous cables and pipelines have been damaged in recent years. That prompted NATO to establish the Baltic Century, increasing naval patrols, surveillance, and monitoring around critical undersea infrastructure. The concern is understandable. Undersea fiber optic cables carry more than 95% of international internet traffic and support enormous volumes of global financial transactions every day. And similar cables run off and along the east and west coasts of Canada, leaving us just as vulnerable to these types of attacks. These systems are therefore not simply telecommunication infrastructure. They are economic infrastructure, national security infrastructure, and increasingly potential targets during geopolitical confrontation. And damaging them creates an additional intelligence challenge. When a pipeline explodes, a cable suddenly fails, or a ship drags an anchor across the seabed, determining whether you are dealing with an accident, negligence, or deliberate sabotage can be extremely difficult. That uncertainty can itself be useful to an adversary. It allows a state to impose costs and create destruction while maintaining plausible deniability and potentially remaining below the threshold that would provoke a conventional military response. Rogers reports that Western intelligence officials view the Slavard activity as particularly concerning because it appears to involve practicing the deployment of sabotage technology rather than simply surveying the seabed. The broader NATO assessment of vulnerability of this infrastructure is also worth remembering. When NATO launched Baltic Century in 2025, Secretary General Mark Ruta warned that damage to energy and telecommunication cables represents part of a broader threat to the security and prosperity of NATO countries. NATO subsequently increased maritime patrols, surveillance aircraft, and the use of new technologies to identify suspicious activity around critical infrastructure. And this is where I think today's story becomes particularly important. Intelligence success is often difficult to measure because the most successful operations may prevent something from happening. If Western intelligence correctly identified what Russia was doing near Splavard, NATO did not have to wait until a cable was severed before responding. They identified the activity, they monitored it, and they coordinated among allies. And ultimately, they demonstrated to the Russians that their supposedly covert operation was not covert at all. That is intelligence being used proactively rather than reactively. For regular listeners of the Global Intelligence Weekly wrap-up, this story demonstrates why following these incidents over time matters. The Eagle S investigation showed us how easily undersea infrastructure could potentially be damaged. The Baltic sabotage incident demonstrated the vulnerability of the networks connecting European countries. The British and Norwegian operation earlier this year showed us Russian specialized submarines around critical infrastructure. And now Western intelligence officials believe Russia may have gone one step further, rehearsing how that infrastructure could potentially be sabotaged. One incident can be dismissed as an anomaly. A series of incidents begins to reveal a pattern. And from an intelligence perspective, identifying that pattern before an adversary decides to act is precisely the point. This is another reminder that some of the most strategically important infrastructure in the world is infrastructure that most of us will never see. And protecting it will increasingly require intelligence agencies, militaries, governments, and the private sector to work together to identify threats before those threats result in attacks. Sarago is the first Australian to be sentenced for the offense. According to ABC News, the case centers on reports he prepared while working in Shanghai for two individuals he knew as, quote, Ken and quote Evelyn, whose prosecutors alleged were connected to China's Ministry of State Security. The reports covered subjects including lithium mining, defense, the Quad Alliance, AUKUS, and political developments in Germany. But what makes this story particularly interesting from an intelligence perspective is how the relationship apparently began. Sargo was initially contacted through LinkedIn with what appeared to be an opportunity to provide paid consulting services. If that sounds familiar to regular listeners of this podcast, well, it should. According to the evidence presented Germany, During Sargo's trial, the initial LinkedIn approach occurred in November of 2021. The person contacting him claimed to represent a think tank and offered him paid consultancy work. That eventually led Sargo to Ken and Evelyn. Prosecutors argued that Sargo came to believe the pair were working for a Chinese intelligence agency and nevertheless continued preparing reports for them in return for payment. Importantly, his defense argued that the material he provided consisted of open source information and that he never disclosed national security secrets. But the prosecution did not need to prove that Sargo handed over classified documents. The issue was whether he was reckless as to whether his conduct would support the intelligence activities of a foreign state. The court found that he was, and there were indications that Sargo himself understood the potential danger. According to ABC, WeChat messages showed that requests eventually included subjects such as Chinese espionage, information about China within ASIO, and intelligence-related strategy, targets, tactics, methods, and technology. Sargo even warned Ken that they needed to be careful. This is where this Australian case connects directly with something we've discussed on the Global Intelligence Weekly wrap-up only a few months ago. On June 5th, we examined the Five Eyes warning entitled Safeguarding Your Secrets, which specifically warned that Chinese intelligence services were using professional networking platforms such as LinkedIn to identify and recruit potential intelligence sources. CESIS and Five Eyes partners warned that approaches could begin with apparently legitimate consulting opportunities. Targets might initially be asked to prepare reports using publicly available information on politics, economics, defense, emerging technology, or government policy. Over time, however, those requests could become increasingly specific and increasingly sensitive. That is remarkably similar to the progression described during the SERGO prosecution. The Australian case therefore provides us with a real-world example of exactly the recruitment methodology Five Eyes intelligence agencies have been publicly warning about. There is also an important Canadian dimension to the story. Just last week, CESIS released updated information on the foreign interference threat facing Canada. CESIS continues to identify the People's Republic of China as the most active state conducting foreign interference against Canada in terms of both scale and scope. The service warns that the PRC uses a sophisticated combination of incentives and disincentives to influence individuals, including financial and status rewards, as well as coercion and intimidation. And this isn't the first time we have discussed that relationship between money and intelligence collection on the Global Intelligence Weekly wrap-up. During our previous coverage of foreign interference in Canada, we examined allegations involving financial meddling and discussed why following the money can be so important when investigating foreign interference. Remuneration is also one of the oldest motivations in human intelligence. Money can establish a relationship. It can normalize continued contact, and importantly, it can provide the intelligence officer with a reason to continually ask for more. The Sargo case demonstrates how the relationship can potentially develop gradually. A LinkedIn message, a consulting opportunity, a research project, a payment, another project, then increasingly specific request. That gradual progression matters because intelligence recruitment does not necessarily begin with someone asking Target to steal classified documents. The relationship itself may be the objective in the early stages. This is reflective of the earlier segment concerning Zhang, the University of Waterloo student who potentially provided information to a Chinese intelligence agency concerning aviation in Canada and the United States. Judge Craig Smith found that there was persistence in Sargoh's conduct, noting that he extensively researched, downloaded, and prepared materials. The judge also found that there was a degree of sophistication and deception involved. However, the court also accepted that Sargo had no previous criminal history and had otherwise been a person of good character. That distinction is important. Foreign intelligence services are not necessarily searching exclusively for people who are already intent on committing espionage. They are looking for people who possess something of value, access, expertise, relationships, knowledge, or influence, and who may be willing to engage. The June 5ey's warning made exactly that point. Professional networking platforms provide intelligence services with an enormous pool of potential targets. Employment histories, government experience, security expertise, academic research, defense work, and professional connections can all be identified remotely. And instead of approaching one potential source at a diplomatic reception or conference, an intelligence service can potentially approach hundreds or thousands of people electronically. Most will probably go nowhere. But they don't have to all succeed. The significance of the Alexander Sago case extends well beyond Australia. Australia is one of Canada's closest intelligence partners within the Five Eyes Alliance, and both countries are confronting many of the same foreign interference and espionage threats. What makes this case particularly valuable is that it provides a practical example of something intelligence agencies have been warning us about for years. The approach does not necessarily look like espionage. It might look like a job offer. It might look like consulting work. It might involve preparing a report using information that is entirely publicly available. And the person making the approach may never identify themselves as an intelligence officer. But intelligence recruitment is often a process rather than an event. The initial objective may simply be to establish contact, develop trust, assess motivations, and determine whether the individual might eventually provide something more valuable. Canada's intelligence service is warning that these activities are continuing. Australia has now demonstrated what can happen when one of these relationships crosses the line from suspicious activity to criminal foreign interference. And for Canadians using professional networking platforms every day, the lesson from this case is fairly straightforward. Sometimes the most important question isn't simply what someone is asking for. It's why are they asking for it and who are they really working for. Before I sign off for the first episode of season 4, I want to acknowledge that this episode was recorded on the 25th anniversary of 9-11. I'm sure many of my listeners will remember where they were and what they were doing when the attacks against the Twin Towers and other locations in the United States occurred. I myself was working as an intelligence analyst for the Canada Border Service Agency. I had just walked into the break room to top up a quickly cooling coffee when the news alert came across the television. As with many of my colleagues, I stood there in sheer shock and astonishment as we watched the horror transpiring on the screen. Worse than any nightmare imaginable. That day had a profound effect on my career and my life. I had worked for CBSA for a number of years and was on the track to start working my way up the ranks. But I knew at that moment that I needed to do more. I needed to do all I could to try and prevent similar tragedies from happening again. I had recently obtained my university degree and was well aware of the Canadian Security Intelligence Service and what their mandate was. But this horrific event had given me a new sense of purpose and determination to work with an organization that was mandated to investigate and help prevent such senseless catastrophes and loss of life from happening. Less than two years later, I was working as an intelligence officer for CISIS, and for the majority of my career, it was focused on counterterrorism. I remember the events of that day, I remember the senseless loss, and I will never forget how that event shaped my future and my life. It is one of the reasons that at the end of each of my shows, I say, stay curious, stay informed, stay safe.
SPEAKER_00
That wraps up the first episode of season four of the Global Intelligence Weekly wrap-up. Thank you for listening. This week, we examined five stories from four different countries, but together they reveal something important about the national security environment confronting democratic societies today. From the alleged theft of advanced semiconductor technology in Belgium to a Canadian university student accused of accepting paid taskings from a suspected Chinese security contact. Both stories demonstrate how intelligence collection can begin with something as simple as access, expertise, or an apparently harmless relationship. In Germany, attacks against electrical infrastructure reminded us that sabotage doesn't always require sophisticated technology to create potentially serious consequences. Meanwhile, the reported Russian operation near Svalbar demonstrated the other end of that spectrum. Specialized military capabilities potentially rehearsing how to disrupt some of the most important communications infrastructure in the world. And finally, the sentencing of Alexander Chechergo in Australia provided a real-world example of how a seemingly legitimate LinkedIn approach can gradually develop into a relationship that crosses the line into criminal foreign interference. Different countries, different methods, different targets, but the underlying objective remains remarkably consistent. Identify vulnerabilities, gain access, develop relationships, and exploit opportunities. Recognizing those connections is one of the primary goals of the Global Intelligence Weekly wrap-up. Each week, Neil Be-Sun draws upon more than 25 years of experience in intelligence, national security, and law enforcement to examine open source developments from around the world and provide the context and analysis needed to understand not only what is happening, but why it matters. As season 4 gets underway, there will be plenty more to follow. If you find value in the podcast, please consider supporting Global Intelligence Weekly Wrap-Up through BuzzFroute. You can also help by subscribing, sharing the podcast with colleagues, friends, and family, and leaving a review on your favorite podcast platform. Every share, every review, and every recommendation helps introduce the podcast to new listeners and ensures these important national security conversations continue. Thank you for joining us for the beginning of another season of Global Intelligence Weekly Wrap Up. We'll see you again next week. And as Neil always reminds us, stay curious, stay informed, and stay safe.
Podcasts we love
Check out these other fine podcasts recommended by us, not an algorithm.