
Risky Bulletin Risky Bulletin: Russia deployed wipers on Poland's energy grid
Jan 25, 2026
A reported Russian wiper aimed at Poland’s power grid was blocked before mass outages. Microsoft handed cloud BitLocker keys to law enforcement in a fraud probe. Romania shut down a crypto-funded murder-for-hire site and seized funds. The EU formed a new spyware investigation team to collect victim testimonies. Major breaches hit Under Armour, Nike, museums, and more.
AI Snips
Chapters
Transcript
Episode notes
First Wiper Attempt On EU Energy Grid
- Russian state-linked hackers deployed a data wiper against Poland's energy grid late last year and the attack was blocked.
- ESET links the malware to Sandworm, marking the first known attempt on an EU country's energy infrastructure.
BitLocker Keys Shared With FBI
- Microsoft provided BitLocker keys stored in its cloud to the FBI for a fraud probe, letting agents decrypt suspects' laptops.
- Microsoft says it averages about 20 such requests a year.
NIST Hands Off Vulnerability Enrichment
- NIST is shifting vulnerability enrichment responsibilities to CVE numbering authorities due to staffing and budget shortfalls.
- Since Feb 2024 NIST has prioritized only the most critical reports, unable to keep pace with incoming vulnerability data.
