Sandworm Briefing Deck
ID: 79d54a31-0058-45c9-b702-95f8234b2763
STIX ID: report--79d54a31-0058-45c9-b702-95f8234b2763
Threat Score
78/100
Uploaded: 2026-08-21
Published Date: 2014-10-14
Last Modified Date: 2014-10-14
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
The Sandworm Campaign is a Russian cyber espionage operation that exploited a Windows zero-day (CVE-2014-4114) to spear-phish and compromise targets across NATO, the EU, Ukraine, and critical sectors like energy and telecom, with ties to the BlackEnergy family and attribution to the Sandworm Team. The report outlines the campaign timeline from 2009 through 2014, notable targets, coordination with Microsoft to patch the vulnerability, and observed victims, underscoring the operation's sophistication and potential impact.
