Skip to main content

Fact check

Is it true: NotPetya destructive cyberattack (Jun 27 2017)?

Confirmed5% confidence

Yes — this is confirmed.

US CISA, UK NCSC, and Five Eyes attributed NotPetya to Russian GRU Unit 74455 (Sandworm) in February 2018. US DOJ indicted six named GRU officers in October 2020 with granular technical detail. Supply-chain entry via M.E.Doc update servers is forensically documented. $10B+ global damages are independently verified across multiple corporate disclosures. Multiple private-sector firms (ESET, Cisco Talos, CrowdStrike) independently confirm the same technical findings.

The claim

On 27 June 2017 a destructive malware campaign — publicly branded NotPetya — erupted from Ukraine and spread globally within hours, masquerading as ransomware while in reality being a pure wiper desig

Key evidence

$10B+ damages independently verified across corporate filings

Five Eyes joint attribution to GRU Unit 74455 (Feb 2018)

Read the full evidence file

Conspirafy steelmans each claim, then follows the evidence. How we reach a verdict · Check another claim