Ransomware Attacks Hit 75% of Organizations in 2023, Veeam Report Reveals
A staggering 75% of organizations experienced at least one ransomware attack in 2023, according to Veeam’s Data Protection Trends Report 2024. The study, which surveyed 1,200 IT leaders and data protection professionals, found that 26% of organizations were hit four or more times surpassing the 25% that reported no attacks at all.
Veeam’s VP of Market Strategy, Jason Buffington, warned that ransomware is an inevitability for most businesses, with some attacks going undetected for up to 200 days before activation. He noted that organizations claiming to have avoided attacks may already be compromised without realizing it.
Beyond ransomware, cyber-attacks were the leading cause of IT outages, responsible for 40% of disruptions and 18% of the most damaging incidents. Unlike other outage triggers such as cloud failures, human error, or natural disasters cyber-attacks are deliberate, designed to inflict widespread damage. However, Veeam’s Dave Russell emphasized that while cyber threats dominate concerns, businesses must also prepare for non-malicious risks like hardware failures and accidental data loss.
The report underscores the growing sophistication of ransomware campaigns and the need for comprehensive disaster recovery strategies beyond cybersecurity alone.
Source: https://www.infosecurity-magazine.com/news/75-orgs-ransomware-2023-1/
Veeam Software cybersecurity rating report: https://www.rankiteo.com/company/veeam-software
"id": "VEE1770473427",
"linkid": "veeam-software",
"type": "Ransomware",
"date": "1/2023",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'type': 'Organizations'}],
'data_breach': {'data_encryption': 'Yes (ransomware-related)'},
'date_publicly_disclosed': '2024',
'description': 'A staggering 75% of organizations experienced at least one '
'ransomware attack in 2023, with 26% hit four or more times. '
'Cyber-attacks were the leading cause of IT outages, '
'responsible for 40% of disruptions and 18% of the most '
'damaging incidents.',
'impact': {'downtime': 'IT outages (40% of disruptions)',
'operational_impact': '18% of the most damaging incidents'},
'initial_access_broker': {'reconnaissance_period': 'Up to 200 days before '
'activation'},
'lessons_learned': 'Ransomware is an inevitability for most businesses, and '
'organizations must prepare for both malicious and '
'non-malicious risks like hardware failures and accidental '
'data loss.',
'post_incident_analysis': {'corrective_actions': 'Need for comprehensive '
'disaster recovery '
'strategies',
'root_causes': 'Growing sophistication of '
'ransomware campaigns'},
'ransomware': {'data_encryption': 'Yes'},
'recommendations': 'Implement comprehensive disaster recovery strategies '
'beyond cybersecurity alone.',
'references': [{'source': 'Veeam’s Data Protection Trends Report 2024'}],
'title': 'Ransomware Attacks on Organizations in 2023',
'type': 'Ransomware'}