NOTPETYA MALWARE: Cyber World’s Foe

  • Home
  • /
  • NOTPETYA MALWARE: Cyber World’s Foe

Share

Notpetya-malware-cybersecurity

As technology is advancing, cyber or malware attacks have increased over the past decades. Because of the attack, the world’s cybersecurity is questioned. Different forms of ransomware have created a tremendous hazard in the cyber world. One of the major malware attacks that multinational companies have to face is the Not Petya attack.  

What happened at Maersk?notpetya-cyebrsecurity

Maersk, the biggest container ship and supply vessel operator in Denmark was faced with an unexpected ransomware attack on 27 June 2017. The company was badly affected by a malware known as Notpetya and around 4000 to 40000 servers and PCs were under attack. The attackers spread the malware after grasping control of the software update mechanism of M.E.Doc, the de Facto standard accountancy package for firms doing business in Ukraine.

What is Notpetya malware?notpetya-wattlecorp-blog-cybersecurity

  Notpetya is an advanced version of Petya malware which was discovered in the year 2016. Petya ransomware encrypts the data of the infected system and charges a ransom amount in Bitcoin to regain the system. It mainly targets Microsoft-based systems encrypts the hard drive’s file and prevents Windows from booting. NotPetya has more features than Petya, which helps to spread and infect the system. NotPetya is considered as a cyber attack against Ukraine but the malware has affected not only the target but also infected machines all over the world. The malware has been infected in many multinational companies including Maersk during the year 2016-17. 

Is Notpetya more dangerous than the earlier form?

  It is considered that both Petya and Notpetya target system files, encrypt them, and demand a ransom in the form of bitcoin. The Petya malware has to be downloaded by the victim that appears in the form of email spam and it starts to encode the system. But Notpetya is a kind of malware that is infected without the knowledge of the user and uses a variety of techniques to spread all over the system including EternalBlue and EternalRomance, two exploits developed by the United States.

It takes advantage of a tool called Mimi Katz to find network administration documents in the infected system and use the PsExec and WMIC tools built into Windows to access the other computer’s local network and infect them as well. It encodes everything on the master boot and seriously affects the user’s hard drive. Notpetya ransomware is more vulnerable than the Petya ransomware as it damages the system and will be impossible to repair into the original form.  notpetya-blog

Read about the Manifestation of Malware in our blog.

How Maersk recovered from the attack?

  As the attack was serious the company took immediate actions that the IT experts gathered to track, identify, and remove malware from affected systems in order to restart their operations. Internal and external communications were established and the company transmitted daily updates about their dealings. They established several instructions to do all the actions required for the customers. 

Is Notpetya still active in the cyber world?notpetiya

  Studies have shown that the effect of Notpetya is still going on in different countries and experts claim the possibility that this malware can reoccur in a larger form than the earlier version. The only possible way to avoid a data breach is to update the system and its applications regularly. Prevent the downloading of unknown attachments and create a strong unique password to protect the system from any kind of malware attack.

Read About Ripple20

Picture of Anjali K

Anjali K

Anjali is a cybersecurity researcher with expertise in simplifying complex topics, from penetration testing to cloud security frameworks. Her work focuses on making essential security practices accessible, helping businesses and individuals adopt proactive measures to strengthen their digital defenses.

Share

Join a secure newsletter.

Secure, disturbance free and spam-free

Leave a Reply

Protecting Small Businesses from COVID-19

Our committment towards small businesses is now affordable.

Starting From

$349

Enquire Now

Ask our experts.

Quick Contact

Talk to our team

Protecting your Business

Book a free consultation with us .

Enquire Now

Ask our experts.

Quick Contact

Talk to our team