Pull to refresh
Logo
Daily Brief
Following
Why Sign Up
CJ Moses

CJ Moses

Chief Information Security Officer, Amazon Integrated Security

Appears in 1 story

Stories

Russia's Sandworm unit wages five-year shadow war on Western energy grid

Force in Play

Led Amazon's threat intelligence disclosure and customer notification

Amazon exposed what Russia's most notorious cyber unit was doing while the world wasn't watching. From 2021 through 2025, GRU Unit 74455—the Sandworm team behind NotPetya and Ukraine's grid attacks—quietly evolved its playbook, abandoning flashy zero-day exploits for something harder to defend against: hunting misconfigured network devices protecting Western electric utilities, energy companies, and their security providers. They compromised edge devices, harvested credentials, and penetrated organizational networks across North America and Europe.

Updated Dec 25, 2025