Sophos report reveals a 500% surge in ransomware payments over the past year

Published:

spot_img

Sophos Report: Average Ransom Payments Increased 500% in the Last Year

The average ransom payment has increased by 500% in the last year, according to Sophos’ annual “State of Ransomware 2024” survey report. Organisations that paid the ransom reported an average payment of $2 million, up from $400,000 in 2023. The survey also found that the average cost of recovery reached $2.73 million, an increase of almost $1 million since 2023.

Despite the increase in ransom payments, there has been a slight reduction in the rate of ransomware attacks, with 59% of organisations being hit compared to 66% in 2023. Even small organisations with less than $10 million in revenue are regularly targeted, with 47% being hit by ransomware in the last year.

The report also revealed that 63% of ransom demands were for $1 million or more, with 30% of demands exceeding $5 million. This suggests that ransomware operators are seeking huge payoffs, with nearly half of organisations with revenue of less than $50 million receiving seven-figure ransom demands.

Exploited vulnerabilities were identified as the most common root cause of ransomware attacks, impacting 32% of organisations. This was followed by compromised credentials (29%) and malicious email (23%). Victims where the attack started with exploited vulnerabilities reported the most severe impact, with higher rates of backup compromise, data encryption, and the propensity to pay the ransom.

Sophos recommends best practices to defend against ransomware, including understanding risk profiles, implementing endpoint protection, bolstering defences with threat detection, and maintaining an incident response plan. The data for the report comes from a survey of 5,000 cybersecurity/IT leaders conducted between January and February 2024.

spot_img

Related articles

Recent articles

TanStack Supply Chain Attack Compromises Two OpenAI Devices, Mandates macOS Updates

TanStack Supply Chain Attack Compromises Two OpenAI Devices, Mandates macOS Updates In a significant cybersecurity incident, OpenAI has reported that two employee devices were compromised...

Mali: GSIM Must Uphold International Humanitarian Law to Protect Civilians Amid Ongoing Siege of Bamako

Mali: GSIM Must Uphold International Humanitarian Law to Protect Civilians Amid Ongoing Siege of Bamako The siege of Bamako, initiated by the Group for the...

ODNI Strengthens Coordination Against Foreign Election Threats Ahead of 2026 Midterms

ODNI Strengthens Coordination Against Foreign Election Threats Ahead of 2026 Midterms The U.S. intelligence community is intensifying its efforts to safeguard the upcoming midterm elections...

Nqubator Advances AI-Native Real Estate Innovations at PropTech Cohort 2026 Demo Day

Nqubator Advances AI-Native Real Estate Innovations at PropTech Cohort 2026 Demo Day In a significant development for the real estate sector, Nqubator has concluded its...