Security

NotPetya ransomware attack cost us $300m – shipping giant Maersk

IT crippled so badly firm relied on WhatsApp


The world's largest container shipping biz has revealed the losses it suffered after getting hit by the NotPetya ransomware outbreak, and the results aren't pretty.

The malware surfaced in Ukraine in June after being spread by a malicious update to MeDoc, the country's most popular accounting software. Maersk picked up an infection that hooked into its global network and shut down the shipping company, forcing it to halt operations at 76 port terminals around the world.

"In the last week of the quarter we were hit by a cyber-attack, which mainly impacted Maersk Line, APM Terminals and Damco," CEO Soren Skou said in a statement today.

"Business volumes were negatively affected for a couple of weeks in July and as a consequence, our Q3 results will be impacted. We expect that the cyber-attack will impact results negatively by USD 200-300m."

Admittedly Maersk is massive – it's responsible for around 15 per cent of the world's entire shipping network – but that kind of financial damage is close to a record for such an attack. Then again, the company's entire network was down for days, Skou told the Financial Times.

“It was frankly quite a shocking experience,” said Skou. “Your email goes down, all your address system. We ended up having to use WhatsApp on our private phones. Most business problems, you will have an intuitive idea on what to do. But with this and my skills, I had no intuitive idea on how to move forward.”

Skou said that he decided to take personal charge of the situation, sitting in on IT meetings and getting daily updates on the malware's progress. He says he learned that there was nothing that could have been done to stop the attack, but he wants to strengthen the company's systems against further attacks.

Maersk wasn't the only multinational to be hit by NotPetya. WPP, the world's largest advertising agency, also took a major hit, as did deliveries firm TNT. While the latter biz hasn’t responded to requests for comment it's understood to have taken weeks to sort out its infection with a permanent loss of data. ®

Send us news
29 Comments

If Britain is so bothered by China, why do these .gov.uk sites use Chinese ad brokers?

One wonders why are there adverts on public-sector portals at all

Japanese and Singaporean devs battle over gamified crowdsourced telco maintenance app

You read that right – it's a bit like Pokémon Go, but for telephone poles

China's mega-telcos are spending billions on AI servers

China Mobile alone wants almost 8,000 machines

Senate passes law forcing ByteDance to sell off TikTok – or face a US ban

Somewhere in Beijing, someone's screaming: Mother, PFACAA!

US government reportedly ponders crimping China's use of RISC-V

Permissive licenses may be about to collide with geopolitics

White House tweaks HIPAA to shield medical files of those seeking reproductive care

In theory, this should make it harder for states to compel data-sharing to enforce anti-abortion laws

Intel Foundry ticks another box in quest to fab mil-spec chips for US DoD

Gelsinger and gang certified to court wider array of defense contractors

Using its own sums, AMD claims it's helping save Earth with Epyc server chiplets

Smaller dies, less wafer loss equals lower emissions, exec claims

Waymo robotaxi drives down wrong side of street after being alarmed by unicyclists

Strange tales from San Francisco

Banned Nvidia GPUs sneak into sanction-busting Chinese servers

Graphics giant and partners say they're clean - it's all technically legit

Miles of optical fiber crafted aboard ISS marks manufacturing first

ZBLAN fibers made in space hopefully don't crystallize and are far less brittle, opening the path to faster photonics

Seagate joins the HDD price hike party, blames AI for spike in demand

Expect ongoing supply shortages this year, say storage analysts