Sandworm OT cyber attack in Ukraine causes power outage (2022)

Incident Impacts Disruption to energy supply
Affected Sector Energy
Associated Intrusion Sets Sandworm

Mandiant reports on a disruptive attack by Sandworm against a Ukrainian critical infrastructure organization.

The actor, Sandworm, likely caused an unplanned power outage by tripping the victim's substation circuit breakers using OT-level living off the land techniques.

Sandworm subsequently conducted a destructive attack against the IT environment by deploying CADDYWIPER.

Cyber Threat Graph Context

Explore how this cyber incident relates to the wider threat graph

References