logo

Sandworm Briefing Deck

ID: 79d54a31-0058-45c9-b702-95f8234b2763

STIX ID: report--79d54a31-0058-45c9-b702-95f8234b2763

Threat Score

78/100

Uploaded: 2026-08-21

Published Date: 2014-10-14

Last Modified Date: 2014-10-14

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
The Sandworm Campaign is a Russian cyber espionage operation that exploited a Windows zero-day (CVE-2014-4114) to spear-phish and compromise targets across NATO, the EU, Ukraine, and critical sectors like energy and telecom, with ties to the BlackEnergy family and attribution to the Sandworm Team. The report outlines the campaign timeline from 2009 through 2014, notable targets, coordination with Microsoft to patch the vulnerability, and observed victims, underscoring the operation's sophistication and potential impact.