June 27, 2017
NotPetya destructive malware hits global firms
NotPetya began spreading on June 27, 2017 — malwareMalicious software — viruses, worms, trojans, and ransomware designed to harm systems or steal data. disguised as ransomwareMalware that encrypts files and demands payment — a major threat to businesses and hospitals. that permanently wiped data, paralyzing Maersk, Merck, and Ukrainian infrastructure.
What it was for
NotPetya entered networks via compromised Ukrainian tax software and reused EternalBlue — but recovery was impossible because encryption keys were fake. Attributed to Russian military intelligence, it caused over $10 billion in damage and redefined 'ransomwareMalware that encrypts files and demands payment — a major threat to businesses and hospitals.' as a cover story for wiper attacks. Supply-chain and shipping ITInformation technology — the use of computers, networks, and software in organizations. teams still cite it in disaster-recovery planning.
Why it's here
NotPetya was the costliest cyberattack in history at the time of its release.
Why it mattered
It blurred the line between ransomwareMalware that encrypts files and demands payment — a major threat to businesses and hospitals. and nation-state data destruction.
What it solved
Nothing for victims — backups and offline recovery became the only defense against wipers.
Media
ImagePetya (malware family)Unknown author, Public domain, via Wikimedia Commons
Related
- WannaCry ransomware spreads worldwideMay 12, 2017
- Stuxnet worm discovered targeting industrial systemsJune 17, 2010
- Sony Pictures Entertainment hackedNovember 24, 2014