logo

Kremlin's Sandworm blamed for cyberattacks on US, European water utilities

ID: 29b334d9-99d3-567f-9632-cfc50b811479

STIX ID: report--29b334d9-99d3-567f-9632-cfc50b811479

Feed Name: The Register (Security)

Threat Score
90/100

Date Published: 2024-04-17

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Mandiant attributed disruptions at water and hydroelectric utilities in the US and Europe to Sandworm (labeled APT44), reporting intrusions that targeted OT/HMI via remotely accessible vendor management software; at least one intrusion caused a tank to overflow and another disrupted electricity generation. The report notes the group's use of GRU-linked Telegram personas to claim activity and highlights ongoing risk to Western critical infrastructure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.