Ransomware - it doesn't pay to pay

Cybereason has published the results of their third annual ransomware study, commissioned to better understand the true impact of ransomware to businesses.

  • Thursday, 22nd February 2024 Posted 2 years ago in by Phil Alsop

This global study reveals ransomware attacks are becoming more frequent, effective, and sophisticated:

56 percent of organisations surveyed suffered more than one ransomware attack in the last 24 months.

It still ‘doesn’t pay to pay’ as almost 80 percent of organisations who paid the ransom were hit a second time

82 percent were hit again within a year

63 percent were asked to pay again

The report ‘Ransomware: The True Cost to Business 2024’ further revealed that of the organisations who opted to pay a ransom in return for their encrypted systems, only 47 percent received their data and solutions back uncorrupted. These findings emphasise why it does not pay to pay ransomware attackers, and organisations should instead focus on detection and prevention tactics to end ransomware attacks before material damage occurs.

“This year’s research shows that, while most businesses have a ransomware strategy in place, many are incomplete. They’re either missing a documented plan, or the right people to execute it. As a result, we see that many organisations are paying the ransom. Likewise whilst many have cyber insurance, too many simply don’t know if, or to what degree it covers them for ransomware attacks. This is problematic on several levels. It’s no guarantee that attackers won’t sell your data on the black market, that you’ll even get your full files and systems back, or that you won’t be attacked again.” - Greg Day, Global Field CISO (VP), Cybereason.

Further key findings of the study include:

Attackers are evolving and the supply chain shows weakness - 56 percent didn’t detect a breach for 3-12 months, with 41 percent of the attackers getting in via a supply chain partner.

Attacker demands increase at every stage - 78 percent were breached a second time, with 63 percent being asked to pay more.

The true cost is staggering - 46 percent estimate total business losses of $1-10 million and 16 percent estimate total business losses of over $10 million. Not to mention the loss of revenue, brand damage, and layoffs that followed.

Businesses don’t have the right tools - Less than half said their businesses are adequately prepared for the next attack. Whilst 87 percent of organisations increased spend, only 41 percent feel they have the right people and plans in place to manage the next attack.

ProxySmart's SIM farm network as a global fraud enabler

Posted 7 hours ago by Sophie Milburn
Infrawatch reports on ProxySmart’s SIM-farm operations and their potential role in online fraud and security risks.
As AI eases manual burdens for IT teams, it simultaneously brings added pressures and responsibilities.

Addressing AI-driven gaps in disaster recovery planning

Posted 8 hours ago by Sophie Milburn
Keepit survey unveils the chasm between confidence and verification in AI disaster readiness, underscoring risks and the necessity for enhanced...

Slide roadshow brings hands-on BCDR for MSPs

Posted 9 hours ago by Sophie Milburn
Slide is showcasing its business continuity and disaster recovery (BCDR) platform for MSPs through a partner-focused roadshow across the U.S. and...

The growing fault line: AI tools and employee disengagement

Posted 12 hours ago by Sophie Milburn
A gap exists between executive enthusiasm for AI and employee trust in these tools, alongside the use of unsanctioned AI applications.
More than half of UK business leaders face challenges from AI-powered cyber threats, with many unprepared for the technological shift.
Kaseya reveals insights into the shifting MSP sector, spotlighting AI as pivotal amidst rising competition and economic pressures.
Arctic Wolf introduces Decipio, a cybersecurity tool, aiming to catch credential-stealing attempts early to protect networks better.