Cybersecurity from Málaga · Networks, lures and threats

← Threats
Actor · MITRE G0034

Sandworm

QuedaghVOODOO BEARTEMP.NobleIRON VIKINGG0034ELECTRUMTeleBotsIRIDIUMBlue EchidnaFROZENBARENTSUAC-0113Seashell BlizzardUAC-0082APT44SANDWORM RELICUAC-0145

This threat actor targets industrial control systems, using a tool called Black Energy, associated with electricity and power generation for espionage, denial of service, and data destruction purposes. Some believe that the threat actor is linked to the 2015 compromise of the Ukrainian electrical grid and a distributed denial of service prior to the Russian invasion of Georgia. Believed to be… Source: MISP

Attributed country: RU according to MISP

Activity on Jábega · 12 weeks

1 stories · first seen on 14 Sep 2026 · last seen on 14 Sep 2026

News

Appears alongside

MITRE ATT&CK techniques

Reconnaissance

Resource Development

Initial Access

Execution

Persistence

Credential Access

Discovery

Lateral Movement

Collection

Command and Control

Exfiltration

Impact

Stealth

Relationships come from co-occurrence in the news, not attribution. Sources: MISP galaxy, MITRE ATT&CK and SigmaHQ. attack.mitre.org ↗