June 27, 2017

NotPetya destructive malware hits global firms

NotPetya began spreading on June 27, 2017 — malwareMalicious software — viruses, worms, trojans, and ransomware designed to harm systems or steal data. disguised as ransomwareMalware that encrypts files and demands payment — a major threat to businesses and hospitals. that permanently wiped data, paralyzing Maersk, Merck, and Ukrainian infrastructure.

What it was for

Petya (malware family)NotPetya entered networks via compromised Ukrainian tax software and reused EternalBlue — but recovery was impossible because encryption keys were fake. Attributed to Russian military intelligence, it caused over $10 billion in damage and redefined 'ransomwareMalware that encrypts files and demands payment — a major threat to businesses and hospitals.' as a cover story for wiper attacks. Supply-chain and shipping ITInformation technology — the use of computers, networks, and software in organizations. teams still cite it in disaster-recovery planning.

Why it's here

NotPetya was the costliest cyberattack in history at the time of its release.

Why it mattered

It blurred the line between ransomwareMalware that encrypts files and demands payment — a major threat to businesses and hospitals. and nation-state data destruction.

What it solved

Nothing for victims — backups and offline recovery became the only defense against wipers.

Media

  • Petya (malware family)
    ImagePetya (malware family)

    Unknown author, Public domain, via Wikimedia Commons

Related