← All Threat Actors
Threat Actor Profile

Sandworm

APT44 Blue Echidna ELECTRUM FROZENBARENTS G0034 GRU IRIDIUM IRON VIKING Quedagh Seashell Blizzard Storm-0816 TeleBots TEMP.Noble UAC-0050 UAC-0082 UAC-0113 Unit 74455 VOODOO BEAR
⚠ Critical Threat
Ukrainian Critical Infrastructure Sabotage, European Government Espionage and Disruption
Origin Russia
Sponsor Russian Federation (GRU Unit 74455)
Motivation Sabotage, political disruption, and military support

Target Sectors

Energy Infrastructure Government Services Telecommunications Defense Industrial Base Transportation Satellite Communications Critical Infrastructure

Known TTPs

Wiper malware deployment (e.g., CaddyWiper, IsaacWiper)
Living-off-the-land (LotL) techniques
Industrial Control Systems (ICS/SCADA) manipulation
Spear-phishing
Supply chain compromise
Exploitation of public-facing edge devices
Credential harvesting

Related Intelligence


LINK COPIED TO CLIPBOARD