Only a third of businesses have taken out insurance against ransomware attacks
Almost one in six also reported having no disaster recovery plan in place
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
You are now subscribed
Your newsletter sign-up was successful
Only a third (35.8%) of businesses have insurance cover for ransomware attacks, despite it being one of the most common forms of cyber threat.
That's according to a survey of more than 820 organisations by Hornetsecurity, which shared the findings exclusively with IT Pro.
The findings show that one in five (21.1%) had fallen victim to a ransomware attack, while almost one in 10 (9.2%) were forced to pay the ransom to recover data after an attack. This comes just weeks after a Unit 42 report found that ransomware payments had increased 82% since 2020 to a record $570,000 in the first half of 2021.
Hornetsecurity's report also revealed that of those reporting ransomware, just under 12% of respondents were able to recover data through backups, although some data was still lost during this process. The report added that the rise in prevalence of ransomware has prompted 71.3% of organisations to reconsider the ways they back up their data.
The two most common forms of prevention were end-point detection software with anti-ransomware capabilities (75.6%), and email filtration and threat analysis (76.1%). However, it also found a comparably low uptake (47.8%) in the use of air-gapped, offsite storage, which is highly effective in recovering data.
Despite the rising threat of ransomware, Hornetsecurity found that education on how to prevent ransomware attacks can be lacking, and employees often believe in cyber security myths. More than a quarter (28.7%) of surveyed organisations do not provide training to end-users on how to recognise and handle potential ransomware threats, despite them being the easiest targets of social engineering techniques such as phishing.
RELATED RESOURCE
The best defence against ransomware
How ransomware is evolving and how to defend against it
Another 22.2% of those surveyed believe that Microsoft 365 data is immune to ransomware attacks, or stated that they don’t know whether it can be affected. This view can be dangerous for businesses: although notably secure, Microsoft 365 can fall victim to ransomware through malicious attachments sent via email or a potential system vulnerability.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Almost one in six (15.9%) of respondents also reported having no disaster recovery plan in place, making them unprepared to deal with a potential ransomware attack.
Hornetsecurity’s findings come days after CISA, the FBI, and the National Security Agency (NSA) released a joint Cybersecurity Advisory (CSA) warning organisations of increased threat of Conti attacks.
Having only graduated from City University in 2019, Sabina has already demonstrated her abilities as a keen writer and effective journalist. Currently a content writer for Drapers, Sabina spent a number of years writing for ITPro, specialising in networking and telecommunications, as well as charting the efforts of technology companies to improve their inclusion and diversity strategies, a topic close to her heart.
Sabina has also held a number of editorial roles at Harper's Bazaar, Cube Collective, and HighClouds.
-
The rise of teen hackers ‘makes for a good headline’, but cyber crime activities peak later in lifeNews With family responsibilities and mortgages to pay, it's not teenagers dishing out malware or carrying out cyber extortion
-
Ransomware gangs are using employee monitoring software as a springboard for cyber attacksNews Two attempted attacks aimed to exploit Net Monitor for Employees Professional and SimpleHelp
-
Ransomware gangs are sharing virtual machines to wage cyber attacks on the cheap – but it could be their undoingNews Thousands of attacker servers all had the same autogenerated Windows hostnames, according to Sophos
-
Google issues warning over ShinyHunters-branded vishing campaignsNews Related groups are stealing data through voice phishing and fake credential harvesting websites
-
The FBI has seized the RAMP hacking forum, but will the takedown stick? History tells us otherwiseNews Billing itself as the “only place ransomware allowed", RAMP catered mainly for Russian-speaking cyber criminals
-
Everything we know so far about the Nike data breachNews Hackers behind the WorldLeaks ransomware group claim to have accessed sensitive corporate data
-
There’s a dangerous new ransomware variant on the block – and cyber experts warn it’s flying under the radarNews The new DeadLock ransomware family is taking off in the wild, researchers warn
-
Hacker offering US engineering firm data online after alleged breachNews Data relating to Tampa Electric Company, Duke Energy Florida, and American Electric Power was allegedly stolen


