Skip to content
Briefings are running a touch slower this week while we rebuild the foundations.See roadmap
European Tech Sovereignty
17MAY

Iran hits Kuwait airport for fourth time

1 min read
14:28UTC

Non-belligerent Gulf states absorb daily attacks; Kuwait's airport hit for the fourth time in 26 days.

TechnologyAssessed
Key takeaway

Iran's four-country strike campaign makes non-belligerent status irrelevant for states hosting US forces.

Iranian drones struck a fuel tank at Kuwait International Airport on Tuesday, the fourth attack on the airport since 28 February 1. The Kuwait National Guard intercepted six more drones. No casualties were reported. Kuwait Airways is routing passengers through Saudi Arabia.

Saudi Arabia intercepted 32 drones and one ballistic missile over the Eastern Province in 11 hours. In Bahrain, an Iranian attack killed a Moroccan civilian working with the UAE armed forces 2. None of these countries is a formal belligerent. All host US military forces.

The Islamic Revolutionary Guard Corps (IRGC) resumed hourly barrages against Israeli cities the same day . The IRGC's four-country campaign, now in its 26th day, has struck energy infrastructure, airports, and military bases across Kuwait, Saudi Arabia, Bahrain, and Israel. Kuwait's airport has been hit four times in 26 days for hosting American aircraft.

Deep Analysis

In plain English

Iran is attacking airports and oil sites in countries that are not part of the war, because those countries host US military bases. Kuwait's main airport has been hit four times in a month. These countries did not choose to fight but are absorbing the consequences.

What could happen next?
  • Consequence

    Gulf states may restrict US basing to reduce exposure

First Reported In

Update #48 · Iran rejects ceasefire; Kharg fortified

Al Jazeera· 26 Mar 2026
Read original
Causes and effects
This Event
Iran hits Kuwait airport for fourth time
Iran's campaign against neutral Gulf states' civilian infrastructure normalises a pattern where non-combatant status provides no protection.
Different Perspectives
OpenForum Europe / open-source community
OpenForum Europe / open-source community
The EUR 350m Sovereign Tech Fund has no Commission host, no budget line, and no commissioner's name attached six weeks after the April conference, while Germany is already paying maintainers to staff international standards bodies. The CRA open-source guidance resolves contributor liability but leaves the financial-donations grey area open with the 11 September reporting clock running.
ASML / Christophe Fouquet
ASML / Christophe Fouquet
ASML's Q2 guidance miss of roughly EUR 300m below consensus reflects DUV revenue compression set by US export controls, not European policy. Fouquet said 2026 guidance accommodates potential outcomes of ongoing US-China trade discussions; a bipartisan US bill to tighten DUV sales further would accelerate the cross-subsidy thinning Chips Act II's equity authority is designed to address.
Anne Le Henanff / French G7 Presidency
Anne Le Henanff / French G7 Presidency
Le Henanff chairs the 29 May Bercy ministerial two days after Brussels adopts the Tech Sovereignty Package, making the G7 communique the first international read of the Omnibus enforcement split and CAIDA's scope. France's Cloud au Centre doctrine is already operational via the Scaleway Health Data Hub contract.
German federal government
German federal government
Berlin operationalises sovereignty through procurement mandates (the ODF requirement and the Sovereign Tech Standards programme) rather than waiting for Commission legislation. The Bundeskartellamt has still not received the Cohere-Aleph Alpha merger filing, leaving Germany's flagship AI champion in structural limbo six weeks after the deal resolved.
US Trade Representative
US Trade Representative
The USTR Section 301 investigation into EU digital rules closes with a 24 July 2026 final determination. CAIDA's public-sector cloud restriction sits within the criteria that triggered the 2020 Section 301 action against France's digital services tax, and the US has not signalled whether the Thales-Google S3NS arrangement resolves CLOUD Act jurisdiction concerns.
CISPE / Valentina Mingorance
CISPE / Valentina Mingorance
CISPE shipped its own pass-fail sovereignty badge in April to establish an industry-auditable floor the Commission could adopt. Whether CAIDA inherits the CISPE binary or the multi-tier SEAL approach will determine whether certification is enforceable by public contracting authorities or requires Commission discretion.