Washington, D.C. | February 13, 2025 –Russia-backed hackers expand attacks across 15+ nations, targeting critical infrastructure. Cybersecurity agencies warn of potential large-scale disruption.
A chilling new report from Microsoft Threat Intelligence has exposed the expanding global reach of Sandworm, a notorious Russian state-sponsored hacking group.
The cybercriminals have now targeted over 15 countries, including the U.S., UK, Australia, China, and Germany, in a sophisticated campaign aimed at critical infrastructure, government agencies, and the energy sector.
Originally focused on Ukraine, Sandworm—also known as APT44 and Seashell Blizzard—has evolved into a worldwide cyber threat, using zero-day vulnerabilities, backdoors, and malware to infiltrate networks. A Microsoft security analyst warned:
This is not just espionage—it’s cyber warfare. They are scaling their operations to disrupt industries and destabilize governments.
The BadPilot campaign, a major component of Sandworm’s operations, has exploited vulnerabilities in Microsoft Exchange, Zimbra, Fortinet, and JetBrains TeamCity to infiltrate energy grids, telecom networks, and arms manufacturers.
Sandworm’s new strategy includes using criminally sourced malware to mask their identity, making attribution more difficult. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and Europol have issued urgent warnings, urging organizations to patch systems immediately.
These attacks aren’t random. They are calculated strikes on vital sectors.
With global cyber tensions rising, security experts fear Sandworm’s next move could trigger widespread outages or even cyber sabotage.
Other News At VPNRanks
Hey, wait!
Stay informed on the latest privacy updates, cybersecurity insights, and internet freedom news by following VPNRanks news daily! As your primary resource for critical updates in online security, we ensure you’re always in the know. Make VPNRanks your go-to guide for safeguarding your digital life.