Skip to content
Tuesday 11 August 2026London --:--Frankfurt --:--Zurich --:--
NewslettersSearchEN · DE
MorningWire

European business, markets and politics

FTSE 100
10,862.50
-0.35%
DAX
26,323.88
+0.02%
CAC 40
8,726.03
0.00%
STOXX 50
6,535.62
+0.18%
  • Europe
  • Markets
  • Business
  • Economy
  • Technology
  • Politics
  • Opinion
More
GermanyFranceBankingAIEnergyFintechPropertyCapital Markets
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Economy
  • Technology
  • Politics
  • Opinion
  • DE
Thursday 17 January 2019 6:36 pm  |  Updated:  Monday 03 June 2019 3:33 am

Flawed cyber insurance policies could lead to years of litigation

By: James Booth

Add as a preferred source on Google

The majority of cyber insurance policies on the market are riddled with flaws and may not pay out in the event of a data breach or hack, according to new research.

A review by insurance governance company Mactavish of dozens of off-the-shelf cyber policies identified a litany of flaws.

Mactavish chief executive Bruce Hepburn said: “Very few claims have been made on these new cyber insurance policies, but my bet is that many will be disputed, or settlements will be much lower than clients expected.”

Confectionery company Mondelez is currently fighting a legal battle against its insurer Zurich after the latter refused to pay out following the NotPetya attack in 2017 that also affected companies such as shipping giant Maersk and law firm DLA Piper.

Mondelez made a $100m (£77m) claim, but Zurich refused to pay, arguing that the hack was an act of war by Russia targeting Ukraine.

The research said that common flaws in cyber policies include limiting cover to events triggered by attacks or unauthorised activity, excluding cover for incidents caused by omissions or errors and limiting data breach payouts to a strict legal minimum and providing system interruption cover only for the time the systems are down.

Robert Smart, technical director at Mactavish, said that cyber was such a new insurance line that many policy clauses had not yet been tested in court.

“Cyber is a new product, the wordings haven’t been tested and it has been pushed out very quickly and some of those rough edges haven’t been litigated out,” he said.

Smart warned that policyholders making large claims after cyber incidents could face major difficulties.

“I think most people that have a big claim in the next couple of years will be in for a nasty shock,” he said.

 

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Business
  • Tech

Related Topics

  • Insurance

Trending Articles

  • Boutique London advisory firm lands £8m funding amid M&A frenzy

  • Silence Therapeutics Announces Proposed Public Offering of $150 Million of American Depositary Shares

  • Point2 Completes $136M Series B Funding with Arm, LB Investment, and Maverick Silicon

  • Top economists shun Burnham over wealth taxes

  • Nottingham Forest owner Marinakis sues Crystal Palace for defamation

More from Morning Wire

  • FTSE 100 Beazley profit plunges as war roils insurance market

    Insurance
    Beazley 2026 business forecast graph with financial data and growth trends displayed for February 24 analysis
  • Qumis Launches the Industry’s First Attorney-Certified AI Agents for Commercial Insurance Coverage

    Business Wire
  • Arch Construction Risk Report Reveals Top Challenges Facing Sector Amid Rising Volatility

    Business Wire
  • UK government probes OpenAI breach after ‘unprecedented’ hack

    Tech
    Sam Altman discussing OpenAIs ChatGPT advancements at a press conference, emphasizing AI innovation and future developments
  • M&S chair: Tax and employment costs holding back Britain

    Retail
    Archie Norman, business leader, speaking at a corporate event wearing a suit and tie, engaging with the audience.
  • INTX Introduces Tenet, the Industry’s First Native Intelligence Layer for the (Re)Insurance Operating System

    Business Wire
  • M&S to face shareholder grilling over cyber attack recovery

    Retail
    Marks and Spencer was one of three UK retailers to be targeted
  • Accertify and Liminal Release First Empirical Study Proving Fraud-Cyber Convergence Works – and Defining How to Do It Right

    Business Wire
MorningWire

Independent European business, markets and political news for decision-makers.

Morning Briefing

Europe

  • Germany
  • France
  • Europe
  • UK & Ireland

Business

  • Markets
  • Banking
  • Technology
  • Energy
  • Property
  • Fintech

Editorial

  • Opinion
  • Editorial Policy
  • Corrections
  • Contact

Company

  • About Morning Wire
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
© 2026 Morning Wire Ltd · Published by Morning Wire Media, Bahnhofstrasse 65, 8001 Zürich, Switzerland
Privacy · Terms · Cookies · Facebook