Energy infrastructure has become one of the most contested arenas in modern geopolitical conflict. Pipelines, refineries, LNG terminals, and undersea cable networks are not just economic lifelines. They are strategic targets. As global tensions rise, these systems are increasingly vulnerable to sabotage, cyberattacks, insurgent operations, and hybrid warfare.
From the Nord Stream pipeline explosions in the Baltic Sea to militant assaults in Nigeria and cyberattacks like the Colonial Pipeline breach, energy infrastructure is now caught in the crossfire of 21st-century power struggles. These are not random disruptions. They are deliberate strikes designed to coerce, destabilize, and reshape the global balance of power.
Since this article was published, energy infrastructure has moved even further to the center of global conflict. In January 2026, a German court rejected the immunity claim of a Nord Stream sabotage suspect, a former Ukrainian military diver, clearing the way for prosecution. Seven suspects have been identified. In May 2025, a cache of explosives and detonators was found buried next to a section of NATO’s Cold War-era Central Europe Pipeline System (CEPS).
In August 2025, Ukrainian forces struck the Druzhba oil pipeline in Russia’s Bryansk Oblast, disrupting crude supplies to Hungary and Slovakia. On 18 March 2026 an Israeli strike on Iran’s South Pars gas field, the largest in the world and shared with Qatar’s North Field, hit processing facilities at Asaluyeh, spiked gas and oil prices and drew retaliatory strikes on energy assets across the Gulf. The IISS has documented over 50 sabotage events in Europe since 2022 likely linked to Russia, and NATO has assessed sabotage threats as at a “record high.”
The thesis of this article, that energy infrastructure is the next battlefield, is no longer speculative. See also TRH’s coverage of Finnish rail sabotage → and Russian sabotage in Europe →

The Nord Stream Explosions: A New Era in Undersea Warfare
On September 26, 2022, the world witnessed a turning point in infrastructure warfare. Powerful underwater explosions ruptured the Nord Stream 1 and 2 pipelines, cutting a vital gas supply route from Russia to Europe. Each of the twin pipelines ran more than 750 miles beneath the Baltic Sea, and both were assumed secure because of that remote placement and the engineering behind it.
The blasts changed that perception overnight.
Intelligence agencies across Europe and North America launched investigations. Suspicions ranged from state-sponsored special operations teams to independent sabotage cells with high-grade underwater capabilities. As of early 2026, German prosecutors have identified seven suspects, including former members of a private diving school in Kyiv, and secured the extradition of a key suspect after Germany’s Federal Court rejected his immunity claim.
The economic impact was immediate. Gas prices surged. European governments scrambled for alternative supply chains. NATO and EU forces increased surveillance of critical underwater assets: pipelines, undersea internet cables, and power interconnectors.
The Nord Stream attack also revealed the West’s vulnerability. With the right equipment, meaning ROVs, divers and timed charges, adversaries can hit strategic infrastructure quietly and anonymously. The incident sent a message to Russia, NATO, and the world: the depths of the ocean are no longer off-limits.

Colonial Pipeline: A Cyber Strike on U.S. Energy Infrastructure
While physical attacks dominate the headlines, cyberattacks have emerged as an equally potent threat to energy infrastructure. The Colonial Pipeline ransomware attack in May 2021 marked one of the most significant cyber disruptions in U.S. history.
A criminal group known as DarkSide infiltrated Colonial’s IT network, forcing the company to shut down 5,500 miles of fuel pipeline supplying nearly half of the fuel consumed along the U.S. East Coast. The resulting chaos included widespread fuel shortages, panic buying, and cascading disruptions in logistics and aviation.
Colonial paid a $4.4 million ransom in Bitcoin, though U.S. authorities later recovered a portion of the funds.
This attack was a wake-up call. It exposed glaring cybersecurity weaknesses across America’s energy grid. Unlike physical sabotage, cyberattacks require no proximity, and attackers can strike from any continent. State-sponsored hacker groups from Russia, China, Iran, and North Korea have already demonstrated that digital warfare can disable critical infrastructure with near impunity.
Cybersecurity is no longer a technical concern. It is a national security priority.
The Niger Delta Case in Brief
The Niger Delta carries the longest-running pipeline sabotage campaign on earth, and it is the cleanest demonstration of the pattern this article describes. Armed groups including the Niger Delta Avengers have struck oil pipelines to halt production, steal crude and force political and economic concessions from Abuja. At their peak those attacks cut Nigeria’s oil output by close to half, and in 2016 majors including Shell and ExxonMobil suspended operations over security risk.
The lesson generalises. Pipelines in volatile regions become bargaining chips, and the damage to investor confidence outlasts the physical repair by years. TRH covers the West African theatre in depth in Sabotage in the Shadows: Pipeline Warfare and Resistance in West Africa, which sets out the militant groupings, the amnesty programmes and the mobilization dynamics driving them. This article stays with the global picture.
Mexico’s 2019 Pipeline Explosion: Fuel Theft as Infrastructure Threat
Sabotage isn’t always political. Sometimes, it’s driven by organized crime and economic desperation.
On January 18, 2019, in the town of Tlahuelilpan, Mexico, an illegal tap on a Pemex fuel pipeline led to an explosion that killed 137 people. Hundreds of civilians had gathered to collect gasoline from a leaking pipe, unaware of the risk.
Fuel theft in Mexico, known as huachicolero activity, has become a billion-dollar black market industry. Criminal organizations tap state-owned pipelines, siphoning gasoline and diesel to resell illegally. The government estimates that fuel theft drains more than $3 billion annually from the national economy.
The Tlahuelilpan disaster revealed the risks of poor pipeline security, lack of local economic opportunity, and the power of organized crime in targeting infrastructure. Protecting energy networks in such contexts requires not only physical deterrents, but also community engagement, anti-corruption measures, and stronger legal enforcement.
Hybrid Threats in the Baltic and Pacific Theaters
Energy infrastructure is no longer limited to above-ground targets. Undersea networks, carrying both energy and data, are now critical to national security.
Since 2022, a string of disruptions has hit undersea cables and pipelines in the Baltic Sea: the Balticonnector gas pipeline, the Estlink 2 power cable, and multiple telecom links between Finland, Estonia, Sweden, and Lithuania. NATO intelligence agencies have linked the pattern to Russian naval activity and shadow fleet operations. In response, the alliance launched Operation Baltic Sentry in January 2025 to protect undersea infrastructure, and Finland seized two Russian-linked vessels, the Eagle S and the Fitburg, after they damaged cables by dragging their anchors along the seabed.
In the Pacific, Taiwan faces similar threats. The island relies on 14 undersea communication cables, several of which were damaged in recent years by unknown actors. Suspicion has fallen on Chinese operations, possibly preparing for future military contingencies by cutting Taiwan off digitally.
If conflict erupts in the Taiwan Strait, experts believe that LNG routes and undersea networks will be among the first targets. These chokepoints represent soft infrastructure, essential but hard to protect.
How Insurgents Weaponize Pipelines
Around the world, insurgents and non-state actors increasingly target pipelines as tools of asymmetric warfare. The appeal is clear: pipelines generate high economic impact for relatively low-risk sabotage, they offer revenue streams when captured or siphoned, and they serve as symbols of state power, which makes them high-value targets.
Groups such as ISIS in Syria, the Taliban in Afghanistan, and Houthi rebels in Yemen have all targeted oil and gas infrastructure. By hitting these assets, they achieve multiple goals: draining state resources, undermining legitimacy, and drawing global media attention.
As governments focus on military threats, they must now expand protection protocols to include insurgents, cartels, and cybercriminals, all of whom are adapting faster than many states can respond.
The Arctic: The Final Energy Frontier
Far from traditional conflict zones, a quiet energy arms race is unfolding in the Arctic. As ice melts and access improves, nations like Russia, the United States, Canada, and China are racing to control untapped oil and gas reserves beneath the seabed.
Russia has made the boldest moves, launching the Yamal LNG project and expanding Arctic patrols. China, while not an Arctic nation, has declared itself a “near-Arctic power” and invested heavily in infrastructure projects and icebreaker fleets.
Meanwhile, NATO has increased operations in the region, turning the Arctic into a new stage for great-power competition.
Future conflict in the Arctic may not look like traditional war. It may involve blockades of energy routes, control of infrastructure, and legal battles over continental shelves. As energy supply routes open in the north, pipeline security in this frozen frontier will become a central concern for the 21st century.

Defending Energy Infrastructure: The Short Version
Defence is a separate discipline from targeting, and TRH treats it separately. The full treatment, covering physical hardening, subsea patrol, cyber resilience, redundancy and public-private coordination, is in Protecting Critical Infrastructure from Sabotage. What follows is the compressed version, enough to close the loop on the threat picture above.
Four layers do most of the work. Physical hardening still matters, but static perimeters buy little without drones, thermal cameras, sonar arrays, remotely operated vehicles and mobile teams that can reach a rupture before it cascades. Cybersecurity is now mission-critical, because a ransomware crew needs no proximity: air-gapped control systems, AI-assisted threat detection and frequent drills are the baseline. Redundancy is the cheapest deterrent, since diversified import routes, decentralised generation and automated switchover strip out the single points of failure an attacker is hunting for. The Baltic states’ disconnection from Russia’s power grid is the model case.
The fourth layer is political. NATO, the European Union and the Five Eyes have begun sharing threat tracking and cross-border sabotage alerts, but international maritime law and undersea infrastructure protocols remain outdated and weakly enforced. Closing that gap takes intelligence sharing and legal reform more than it takes fences. Energy infrastructure is not simply an economic asset. It is a battlefield on which national security, geopolitical influence and survival intersect.
OSS: Combined & Remastered is the original doctrinal source on attacking industrial and transport infrastructure from the inside, and it reads as a direct ancestor of the campaigns described above. Part of the catalogue from The Distillery Press.
View on Amazon →Conclusion: Infrastructure as a Theater of War
From the Nord Stream sabotage to cyberattacks on U.S. pipelines and armed assaults in Nigeria, one thing is clear: infrastructure is the new frontline of global conflict.
Energy pipelines, undersea cables, and supply chains are no longer neutral. They are targets in the shadow wars of the 21st century. As nation-states, insurgents, and cyber actors continue to weaponize infrastructure, the task of securing these vital assets grows more urgent by the day.
Hybrid Warfare: Fighting Complex Opponents from the Ancient World to the Present, by Williamson Murray and Peter Mansoor (eds.). How modern adversaries blend conventional, irregular, and cyber tools to paralyze societies without firing a shot.
Russian “Hybrid Warfare”: Resurgence and Politicization, by Ofer Fridman. How Moscow shapes conflict below the threshold of war, from pipeline politics to infrastructure sabotage.

