Ransomware Attacks on the Rise in India: Sophos

Sophos, a global enabler in innovating and delivering cybersecurity as a service, has released its annual “State of Ransomware 2023” report, which found that the rate of ransomware attacks has increased in India with 73% of organizations surveyed reporting they were a victim of ransomware up from 57% the previous year.

In 77% of ransomware attacks against surveyed organizations, adversaries succeeded in encrypting data with 44% paying the ransom to get their data back – a considerable drop from last year’s rate of 78%.

Sophos Logo

On a global scale, the survey also shows that when organizations paid a ransom to get their data decrypted, they ended up additionally doubling their recovery costs (US$750,000 in recovery costs versus US$375,000 for organizations that used backups to get data back). Moreover, paying the ransom usually meant longer recovery times, with 45% of those organizations that used backups recovering within a week, compared to 39% of those that paid the ransom.

“Although dipping slightly from the previous year, the rate of encryption remains high at 77 per cent, which is certainly concerning. Ransomware crews have been refining their methodologies of attack and accelerating their attacks to reduce the time for defenders to disrupt their schemes,” said Chester Wisniewski, field CTO, Sophos.

“Incident costs rise significantly when ransoms are paid. Most victims will not be able to recover all their files by simply buying the encryption keys; they must rebuild and recover from backups as well. Paying ransoms not only enriches criminals, but it also slows incident response and adds cost to an already devastatingly expensive situation,” said Wisniewski.

When analyzing the root cause of ransomware attacks, the most common was an exploited vulnerability (involved in 35% of cases), followed by compromised credentials (involved in 33% of cases). This is in line with recent, in-the-field incident response findings from Sophos’ 2023 Active Adversary Report for Business Leaders.

Additional key global findings from the report include:

· In 30% of cases where data was encrypted, data was also stolen, suggesting this “double dip” method (data encryption and data exfiltration) is becoming commonplace

· The education sector reported the highest level of ransomware attacks, with 79% of higher education organizations surveyed and 80% of lower education organizations surveyed reporting that they were victims of ransomware

· Overall, 46% of organizations surveyed that had their data encrypted paid the ransom. However, larger organizations were far more likely to pay. In fact, more than half of businesses with revenue of $500 million or more paid the ransom, with the highest rate reported by those with revenue over $5 billion. This could partially be due to the fact that larger companies are more likely to have a standalone cyber insurance policy that covers ransom payments

“With almost three quarters of Indian organizations reporting that they have been victimized by ransomware criminals, a lot of work needs to be done. The key to lowering this number is to work to aggressively lower both time to detect and time to respond. Human-led threat hunting is very effective at stopping these criminals in their tracks, but alerts must be investigated, and criminals evicted from systems in hours and days, not weeks and months. Experienced analysts can recognize the patterns of an active intrusion in minutes and spring into action. This is likely the difference between the quarter who stay safe and the three quarters who do not. Organizations must be on alert 24×7 to mount an effective defense these days,” said Wisniewski.

ChannelDrive Bureauhttp://www.channeldrive.in
ChannelDrive Bureau covers the latest developments in the space of ICT, technology, solutions and implementations and delivers content focused around solution providers, system integrators, distributors and technology partner community in India. ChannelDrive Bureau is headed by Zia Askari. He can be reached at ziaaskari@channeldrive.in

Recent Articles

R Systems Acquires Velotio to Drive Product Engineering

R Systems, a digital product engineering company, has signed definitive agreements to acquire Velotio, an India-based product engineering and digital solutions provider. With a team...

Saudi Arabia’s MoMRAH Picks CamCom to Tackle Visual Pollution

The Kingdom of Saudi Arabia (KSA) via the Ministry of Municipal, Rural Affairs and Housing (MoMRAH) signed an agreement with Indian Artificial Intelligence (AI)...

Tempt India partners with Staunch Electronics to manufacture power banks

Tempt, an audio technology and lifestyle accessories focused brand, has announced its strategic partnership with Staunch Electronics India, a renowned electronics manufacturing company. The...

Wind River Launches Free Linux Security Scanning Service

Wind River, a global enabler in delivering software for mission-critical intelligent systems, has introduced Wind River Studio Linux Security Scanning Service. The service, currently available...

Wipro Unveils Immersive Innovation Experience for Financial Services with Microsoft

Wipro Limited, a technology services and consulting company, has launched the Wipro Industry Innovation Experience for Financial Services, featuring a new suite of banking...

Related Stories

Stay on op - Get the daily news in your inbox