Skip to main content
2017 Ukraine ransomware attacks

2017 Ukraine ransomware attacks

IncidentWikipedia

Search complete. 13 mentions across 5 episodes found for "2017 Ukraine ransomware attacks".

Sep 20, 2026

Maria VarmazisHOST
10:56
Sure did.
Maria VarmazisHOST
10:57
Uh, another thing that around that time, seismic, and we've talked about it a lot in a number of our retrospectives, is NotPetya, which I don't think will immediately spring to mind for a lot of people as an OT or industrial control or infrastructure attack, because we often just talk about it as, you know, ransomware.
Maria VarmazisHOST
11:18
But it had such a huge ripple effect that it ended up...
Maria VarmazisHOST
11:21
I mean, it, it had huge effects on infrastructure.
Maria VarmazisHOST
12:54
Yeah, and I'm gonna issue a correction to what I said earlier real quick.
Maria VarmazisHOST
12:57
It, it...
Maria VarmazisHOST
12:57
NotPetya's not ransomware.
Maria VarmazisHOST
12:59
We thought it was.
CornHOST
1:34
Russian GRU and FSB units, Sandworm, APT-28, Terla, they treated Ukrainian networks as a testing ground.
CornHOST
1:43
The power grid attacks, the NotPetya worm, the election infrastructure probing, all of that happened before Ukraine had anything resembling an offensive cyber capability.
Herman PoppleberryHOST
1:55
And that's the baseline people miss.
Herman PoppleberryHOST
1:57
When the war started in 2022, Ukraine wasn't starting from a standing army of government hackers.

11 MINS LATER

Herman PoppleberryHOST
13:15
Why is that?
CornHOST
13:16
Russia has some of the most capable cyber units in the world.
CornHOST
13:20
Sandworm alone has a track record that includes NotPetya, which caused billions in damage globally.
CornHOST
13:26
Why hasn't that translated into strategic
Colin WrightHOST
12:29
There was also the question of attribution.
Colin WrightHOST
12:32
In twenty seventeen, the NotPetya malware spread from Ukraine through corporate networks around the world.
Colin WrightHOST
12:39
The US and several allies attributed it to the Russian military, but many victims were ordinary companies with no meaningful role in geopolitics.
Colin WrightHOST
12:47
Drug maker Merck claimed about one point four billion dollars in damages under its property policies.
Colin WrightHOST
15:40
The second thing to watch for is the first big disputed claim.
Colin WrightHOST
15:44
Industry interviews can describe what insurers expect to cover, but their operational position will be established when an AI agent causes an eight figure loss and a carrier must either pay or explain why it won't.
Colin WrightHOST
15:57
The NotPetya dispute took years to resolve, and the first autonomous agent case could similarly define policy language well before it produces a final court ruling.
Colin WrightHOST
16:06
That'll be a moment that maybe defines the next ten years of cyber insurance standards, if not longer.
Liza ClarkHOST
5:33
An act of war? For code?
Maya CollinsHOST
5:36
Think about NotPetya in 2017.
Maya CollinsHOST
5:39
Massive global damage.
Maya CollinsHOST
5:41
When companies, including the food giant Mondelez, filed claims, some carriers said, no, hostile state activity, act of war, excluded.
Danny PalmerGUEST
30:28
The organization affected has been pretty transparent about what has happened during the incident and its resolution.
Danny PalmerGUEST
30:34
I think one of the best examples of this, NotPetya.
Danny PalmerGUEST
30:38
Remember that? So that hit organizations around the globe in 2017.
Danny PalmerGUEST
30:43
One of the organizations hit by this was the shipping giant Maersk.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.