SmartStateIndia
Reports

Veeam Ransomware Trends Report 2023

Organizations of all sizes are increasingly falling victim to ransomware attacks and inadequately protecting against this rising cyberthreat. According to new data in the Veeam® 2023 Ransomware Trends Report, one in seven organizations will see almost all (>80%) data affected as a result of a ransomware attack – pointing to a significant gap in protection. Veeam Software, the leader in Data Protection and Ransomware Recovery, found that attackers almost always (93%+) target backups during cyber-attacks and are successful in debilitating their victims’ ability to recover in 75% of those events, reinforcing the criticality of immutability and air gapping to ensure backup repositories are protected.

The Veeam 2023 Ransomware Trends Report shares insights from 1,200 impacted organizations and nearly 3,000 cyber-attacks, making it one of the largest reports of its kind. The survey examines key takeaways from these incidents, their impact on IT environments and the steps taken, or needed, to implement data protection strategies that ensure business resiliency. This research report encompasses four different roles involved in cyber-preparedness and/or mitigation including, security professionals, CISOs or similar IT executives, IT Operations generalists, and backup administrators.

“The report shows that today it’s not about IF your organization will be the target of a cyber-attack, but how often.  Although security and prevention remain important, it’s critical that every organization focuses on how rapidly they can recover by making their organization more resilient,” said Danny Allan, CTO at Veeam. “We need to focus on effective ransomware preparedness by focusing on the basics, including strong security measures and testing both original data and backups, ensuring survivability of the backup solutions, and ensuring alignment across the backup and cyber teams for a unified stance.”

Paying the ransom does not ensure recoverability

For the second year in a row, the majority (80%) of the organizations surveyed paid the ransom to end an attack and recover data – now up 4% compared to the year prior – despite 41% of organizations having a “Do-Not-Pay” policy on ransomware. Still, while 59% paid the ransom and were able to recover data, 21% paid the ransom yet still didn’t get their data back from the cyber criminals. Additionally, only 16% of organizations avoided paying ransom because they were able to recover from backups. Sadly, the global statistic of organizations able to recover data themselves without paying ransom is down from 19% in last year’s survey.

To avoid paying ransom, your backups must survive

Following a ransomware attack, IT leaders have two choices: pay the ransom or restore-from-backup. As far as recovery goes, the research reveals that in almost all (93%) cyber-events, criminals attempt to attack the backup repositories, resulting in 75% losing at least some of their backup repositories during the attack, and more than one-third (39%) of backup repositories being completely lost.

By attacking the backup solution, attackers remove the option of recovery and essentially force paying the ransom. While best practices – such as securing backup credentials, automating cyber detection scans of backups, and auto verifying that backups are restorable – are beneficial to protect against attacks, the key tactic is to ensure that the backup repositories cannot be deleted or corrupted. To do so, organizations must focus on immutability. The good news is that based on lessons learned from those who had been victims – 82% use immutable clouds, 64% use immutable disks, and only 2% of organizations do not have immutability in at least one tier of their backup solution.

Do not re-infect during recovery

When respondents were asked how they ensure that data is ‘clean’ during restoration, 44% of respondents complete some form of isolated-staging to re-scan data from backup repositories prior to reintroduction into the production environment. Unfortunately, that means that the majority (56%) of organizations run the risk of re-infecting the production environment by not having a means to ensure clean data during recovery. This is why it is important to thoroughly scan data during the recovery process.

Other key findings from the Veeam 2023 Ransomware Trends Report include:

  • Cyber-insurance is becoming too expensive: 21% of organizations stated that ransomware is now specifically excluded from their policies, and those with cyber insurance saw changes in their last policy renewals: 74% saw increased premiums, 43% saw increased deductibles, 10% saw coverage benefits reduced.
  • Incident response playbooks depend on backup: 87% of organizations have a risk management program that drives their security roadmap, yet only 35% believe their program is working well, while 52% are seeking to improve their situation, and 13% do not yet have an established program. Findings reveal the most common elements of the ‘playbook’ in preparation against a cyberattack are clean backup copies and recurring verification that the backups are recoverable.
  • Organizational alignment continues to suffer: While many organizations may deem ransomware to be a disaster and therefore include cyberattacks within their Business Continuity or Disaster Recovery (BC/DR) planning, 60% of organizations say they still need significant improvement or complete overhauls between their backup and cyber teams to be prepared for this scenario.

Related posts

BARC India seeks Paradigm Shift in Audience Measurement Technology

SSI Bureau

Gartner Identifies Three Imperatives Driving the Top Trends in Data and Analytics for 2022

SSI Bureau

NetApp 2023 Cloud Complexity Report Highlights the Shifting Demands of a Multicloud Environment

SSI Bureau

7 comments

Teresat June 28, 2024 at 1:29 pm

This article had me laughing and learning! For those interested, check out: DISCOVER HERE. What’s your take?

Reply
najlepsze escape roomy July 6, 2024 at 4:39 am

You actually make it appear really easy with your presentation but I in finding this matter
to be actually one thing that I feel I would never understand.
It sort of feels too complex and extremely extensive for me.
I am taking a look forward in your next submit, I’ll attempt to get the dangle of it!
Escape room lista

Reply
Tonja V July 7, 2024 at 2:18 am

Very interesting topic, regards for posting.!

Reply
owner financing July 21, 2024 at 3:19 pm

Aw, this was a really good post. Finding the time and actual effort to create a superb article… but what can I say… I procrastinate a lot and never manage to get nearly anything done.

Reply
mold removal ottawa July 22, 2024 at 8:07 am

Good blog post. I definitely love this website. Stick with it!

Reply
THC gummies July 22, 2024 at 3:19 pm

After going over a handful of the articles on your blog, I really like your technique of writing a blog. I saved it to my bookmark site list and will be checking back in the near future. Please visit my web site as well and tell me your opinion.

Reply
wedding dress July 24, 2024 at 8:43 am

Good write-up. I certainly appreciate this site. Keep writing!

Reply

Leave a Comment

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Accept Read More