Signs Point to Long-Active ‘Sandworm’ Military Intelligence Hackers at Work. Russian cyberattacks in late December 2025 that attempted to disrupt Poland’s power grid have been attributed to Sandworm, the codename for an advanced persistent threat group tied to a Moscow military intelligence unit that repeatedly uses wiper malware, including in these attacks.
First seen on govinfosecurity.com
Jump to article: www.govinfosecurity.com/wiper-malware-targeting-polands-power-grid-tied-to-moscow-a-30596
![]()

