Skip to content
July 21, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
  • Home
  • News
  • Malware
  • Nuance was lost $92 million by NotPetya attack
  • Malware

Nuance was lost $92 million by NotPetya attack

Do Son March 5, 2018 2 minutes read
Add Daily CyberSecurity as a preferred source on Google

NotPetya, originally considered ransomware, raided organizations across the globe on June 27, 2017, and a few days later it was found to be a more devastating hard disk eraser than the Bolaoso software.

Security experts also believe that NotPetya has ties to the malicious software BlackEnergy and KillDisk released by Russian hacker organizations, all using the same propagation vector – the update server for Ukrainian accounting software maker MeDoc.

Globally, the major organizations affected by NotPetya include Rosneft, Russia’s largest oil company, Merck, the U.S. pharmaceutical giant, FedEx, Mondelez International, the world’s leading snack maker of chocolate biscuits, Nuance, Reckitt Benckiser and Saint-Gobain, the largest provider of voice recognition software, have all suffered at least millions of dollars.

Nuance had estimated last year that NotPetya had affected the company by about $15 million in revenues in the third quarter of 2017. The company now claims that the economic losses caused by the attack totaled nearly 100 million U.S. dollars.

According to Nuance’s latest quarterly financial report (10-Q) to the Securities and Exchange Commission (SEC), NotPetya reported a direct economic loss of approximately $ 68 million to Nuance in 2017 due to remedies The incremental cost of the measure is about 24 million U.S. dollars.

Nuance said: “Blackmail software NotPetya affects certain Nuance systems, including systems used by our healthcare customers, primarily for transcriptional services, and systems affected by our imaging department to receive and process orders. Among them, the systems used by healthcare customers suffer the most. ”

The company also noted that although the direct impact of the attack was corrected in the fiscal year 2017, it will continue to affect the company’s first quarter of fiscal 2018 results. In addition, due to the attack, the company will have to invest more funds in the fiscal year 2018 and beyond to improve and enhance information security.

Last month, Maersk, the world’s largest shipping giant, said it suffered hundreds of millions of dollars in economic losses due to NotPetya and had to reinstall its software for nearly 50,000 devices. And in September 2017, FedEx revealed that the NotPetya ransom caused about a $300 million negative impact on the company’s profits.

In mid-February 2018, the British government issued a statement formally accusing the Russian military of releasing NotPetya. Immediately afterward, the United States, Canada, Australia and New Zealand gradually started solidarity with Britain on the second day and accused the Russian government of being responsible for the NotPetya attack.

Source: csoonline

Get Zero-Hour Vulnerability Alerts

Critical CVEs, CVSS scores, and PoC updates — straight to your inbox every week.


We respect your inbox. Unsubscribe anytime.

Related coverage

  • Malicious Packagist Themes Target Vietnamese OphimCMS Sites with Trojanized JS
  • HeartCrypt: A Packer-as-a-Service Fueling Malware Campaigns
  • Interlock and Rhysida Ransomware: IBM X-Force Maps a Shared Ecosystem
  • North Korean Hackers Evolve Tactics with New Malware Campaign
  • PyPI Poisoned: 116 Malicious Packages Target Windows and Linux
Track all actively exploited CVEs →

Support Our Threat Intelligence

If you find our CVE report and cybersecurity news helpful, consider supporting our work.

Buy Me a Coffee Logo Buy Me a Coffee PayPal
Crypto QR Code
USDT (TRC20):
TN8BdV8cp4T1Cd28gK9qTAnZknzzuwyUtm
USDT (ERC20):
0x3725e1a7d3bc5765499fa6aaafe307fabcd75bce

Share this article:

Facebook Post LinkedIn Telegram
Written by
@DdoS · Security Researcher

Do Son

Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.

Tags: NotPetya attack

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intel📅 Updated: Jul 21, 2026
  • CVE-2026-60137CVSS 5.9
    WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter...
    Admin intel📅 Updated: Jul 21, 2026
  • CVE-2026-6875CVSS 9.5
    ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability...
    Admin intel📅 Updated: Jul 18, 2026
  • CVE-2026-39808CVSS 9.8
    A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox...
    CISA KEV📅 Added to KEV: Jul 16, 2026
  • CVE-2026-25089CVSS 9.8
    A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox...
    CISA KEV📅 Added to KEV: Jul 16, 2026
  • CVE-2026-58644CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    CISA KEV📅 Added to KEV: Jul 16, 2026
  • CVE-2023-4346CVSS 7.5
    KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to...
    CISA KEV📅 Added to KEV: Jul 15, 2026
  • CVE-2026-53362
    In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation...
    Admin intel📅 Updated: Jul 14, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-64625CVSS 9.8
    AVideo before 29.0 contains an incomplete fix for CVE-2026-45578 where execAsync() re-wraps...
  • CVE-2026-53595CVSS 9.4
    FreeScout is a free help desk and shared inbox built with PHP's...
  • CVE-2026-44231CVSS 9.1
    RT is an open source, enterprise-grade issue and ticket tracking system. Versions...
  • CVE-2026-63766CVSS 9.8
    GPT-SoVITS through 20250606v2pro contains an OS command injection vulnerability in webui.py where...
  • CVE-2026-63767CVSS 9.8
    ktransformers through 0.6.3, fixed in commit def0f93, contains an unauthenticated pickle deserialization...
  • CVE-2026-39878CVSS 9.3
    Chamilo LMS versions 1.11.38 and earlier contain a stored cross-site scripting vulnerability...
  • CVE-2026-60034CVSS 9.4
    The Joomla extension JMedia is vulnerable to a stored XSS vulnerability. Unsanitised...
  • CVE-2026-60032CVSS 9.4
    The Joomla extension JMedia is vulnerable to an authenticated arbitrary file upload,...
  • CVE-2026-54051CVSS 9.9
    Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.9.1, the agent...
  • CVE-2026-41252CVSS 9.8
    xrdp is an open source RDP server. Versions 0.10.6 and prior contain...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.