2017 Ukraine ransomware attacks
IncidentWikipedia
13
MENTIONS
5
EPISODES
5
PODCASTS
Search complete. 13 mentions across 5 episodes found for "2017 Ukraine ransomware attacks".
Sep 20, 2026
CyberWire Daily at 10: Critical infrastructure attacks over the last 10 years. [Special Edition]
M
10:56Maria VarmazisHOST
Sure did.
M
10:57Maria VarmazisHOST
Uh, another thing that around that time, seismic, and we've talked about it a lot in a number of our retrospectives, is NotPetya, which I don't think will immediately spring to mind for a lot of people as an OT or industrial control or infrastructure attack, because we often just talk about it as, you know, ransomware.
M
11:18Maria VarmazisHOST
But it had such a huge ripple effect that it ended up...
M
11:21Maria VarmazisHOST
I mean, it, it had huge effects on infrastructure.
M
12:54Maria VarmazisHOST
Yeah, and I'm gonna issue a correction to what I said earlier real quick.
M
12:57Maria VarmazisHOST
It, it...
M
12:57Maria VarmazisHOST
NotPetya's not ransomware.
M
12:59Maria VarmazisHOST
We thought it was.
Ukraine's Cyber War: Hacking, Deception, and the IT Army
C
1:34CornHOST
Russian GRU and FSB units, Sandworm, APT-28, Terla, they treated Ukrainian networks as a testing ground.
C
1:43CornHOST
The power grid attacks, the NotPetya worm, the election infrastructure probing, all of that happened before Ukraine had anything resembling an offensive cyber capability.
H
1:55Herman PoppleberryHOST
And that's the baseline people miss.
H
1:57Herman PoppleberryHOST
When the war started in 2022, Ukraine wasn't starting from a standing army of government hackers.
11 MINS LATER
H
13:15Herman PoppleberryHOST
Why is that?
C
13:16CornHOST
Russia has some of the most capable cyber units in the world.
C
13:20CornHOST
Sandworm alone has a track record that includes NotPetya, which caused billions in damage globally.
C
13:26CornHOST
Why hasn't that translated into strategic
AI Cyber Insurance
C
12:29Colin WrightHOST
There was also the question of attribution.
C
12:32Colin WrightHOST
In twenty seventeen, the NotPetya malware spread from Ukraine through corporate networks around the world.
C
12:39Colin WrightHOST
The US and several allies attributed it to the Russian military, but many victims were ordinary companies with no meaningful role in geopolitics.
C
12:47Colin WrightHOST
Drug maker Merck claimed about one point four billion dollars in damages under its property policies.
C
15:40Colin WrightHOST
The second thing to watch for is the first big disputed claim.
C
15:44Colin WrightHOST
Industry interviews can describe what insurers expect to cover, but their operational position will be established when an AI agent causes an eight figure loss and a carrier must either pay or explain why it won't.
C
15:57Colin WrightHOST
The NotPetya dispute took years to resolve, and the first autonomous agent case could similarly define policy language well before it produces a final court ruling.
C
16:06Colin WrightHOST
That'll be a moment that maybe defines the next ten years of cyber insurance standards, if not longer.
The Digital Battlefield of Cyber Insurance in Business
L
5:33Liza ClarkHOST
An act of war? For code?
M
5:36Maya CollinsHOST
Think about NotPetya in 2017.
M
5:39Maya CollinsHOST
Massive global damage.
M
5:41Maya CollinsHOST
When companies, including the food giant Mondelez, filed claims, some carriers said, no, hostile state activity, act of war, excluded.
How websites are tracking you with silence
D
30:28Danny PalmerGUEST
The organization affected has been pretty transparent about what has happened during the incident and its resolution.
D
30:34Danny PalmerGUEST
I think one of the best examples of this, NotPetya.
D
30:38Danny PalmerGUEST
Remember that? So that hit organizations around the globe in 2017.
D
30:43Danny PalmerGUEST
One of the organizations hit by this was the shipping giant Maersk.