Sandworm (hacker group)
Russian hacker group / From Wikipedia, the free encyclopedia
Dear Wikiwand AI, let's keep it short by simply answering these key questions:
Can you list the top facts and stats about Sandworm (hacker group)?
Summarize this article for a 10 year old
Sandworm is an advanced persistent threat operated by Military Unit 74455, a cyberwarfare unit of the GRU, Russia's military intelligence service.[3] Other names for the group, given by cybersecurity researchers, include Telebots, Voodoo Bear, IRIDIUM, Seashell Blizzard,[4] and Iron Viking.[5][6]
Formation | c. 2004–2007 |
---|---|
Type | Advanced persistent threat |
Purpose | Cyberespionage, cyberwarfare |
Headquarters | 22 Kirova Street Khimki, Russia |
Region | Russia |
Methods | Zero-days, spearphishing, malware |
Official language | Russian |
Parent organization | GRU |
Affiliations | Fancy Bear |
Formerly called | Voodoo Bear [1] Iron Viking [2] Telebots [2] |
The team is believed to be behind the December 2015 Ukraine power grid cyberattack,[7][8][9] the 2017 cyberattacks on Ukraine using the NotPetya malware,[10] various interference efforts in the 2017 French presidential election,[5] and the cyberattack on the 2018 Winter Olympics opening ceremony.[11][12] Then-United States Attorney for the Western District of Pennsylvania Scott Brady described the group's cyber campaign as "representing the most destructive and costly cyber-attacks in history."[5]