fbpx
Founder Institute Lagos Founder Institute Lagos Founder Institute Lagos
  • Home
  • About
  • Partners
  • Advertise
  • Contact
  • Signup to receive updates
Innovation | Startups | Funding | Tech Blog in Africa
Advertisement
  • Home
  • Startups
  • Hubs
  • Funding
  • WomenTech
  • CleanTech
  • Blockchain
No Result
View All Result
  • Home
  • Startups
  • Hubs
  • Funding
  • WomenTech
  • CleanTech
  • Blockchain
No Result
View All Result
Innovation | Startups | Funding | Tech Blog in Africa
No Result
View All Result
Home General

Retail Organization is the 2nd Most attacked Industry by Ransomware in 2021 – Sophos Survey

77% of Retail Organizations were Hit with Ransomware, up from 44% in 2020—a 75% Rise

by Editor
2022/09/08
in General
Retail Organization - techbuild
Share on FacebookShare on Twitter
Tweet
Share
Share

Sophos, a global leader in next-generation cybersecurity, today published a new sectoral survey report, The State of Ransomware in Retail 2022, which found that retail had the second highest rate of ransomware attacks last year of all sectors surveyed after the media, leisure, and entertainment industry.

Globally, 77% of retail organizations surveyed were hit—a 75% increase from 2020. This is also 11% more than the cross-sector average attack rate of 66%.

“Retailers continue to suffer one of the highest rates of ransomware attacks of any industry. With more than three in four suffering an attack in 2021, it certainly brings a ransomware incident into the category of when, not if.

In Sophos’ experience, the organizations that are successfully defending against these attacks are not just using layered defenses, they are augmenting security with humans trained to monitor for breaches and actively hunting down threats that bypass the perimeter before they can detonate into even bigger problems.

RelatedPosts

Why Debt Financing is Important for the African Business Market

CCM’s Paradigm Shift: From Document Automation to Intelligent Solutions

CBN, Partners Host Second International Financial Inclusion Conference (IFIC) October 2023

Infobip, Spryker partner to support Businesses deliver Personal Shopping Experiences

This year’s survey shows that only 28% of retail organizations targeted were able to stop their data from being encrypted, suggesting that a large portion of the industry needs to improve their security posture with the right tools and appropriately trained security experts to help manage their efforts,” said Chester Wisniewski, principal research scientist, Sophos.

Chester Wisniewski principal research scientist Sophos
Chester wisniewski, principal research scientist, sophos.

As the percentage of retail organizations attacked by ransomware increased, so did the average ransom payment. In 2021, the average ransom payment was $226,044, a 53% increase when compared to 2020 ($147,811). However, this was less than one-third the cross-sector average ($812K).

“It’s likely that different threat groups are hitting different industries. Some of the low-skill ransomware groups ask for $50,000 to $200,000 in ransom payments, whereas the larger, more sophisticated attackers with increased visibility demand $1 million or more,” said Wisniewski.

“With Initial Access Brokers (IABs) and Ransomware-as-a-Service (RaaS), it’s unfortunately easy for bottom-rung cybercriminals to buy network access and a ransomware kit to launch an attack without much effort. Individual retail stores and small chains are more likely to be targeted by these smaller opportunistic attackers,” said Wisniewski.

Additional findings include:

  • While the retail sector was the second most targeted industry, the perceived increase in the volume and complexity of cyberattacks against the industry were slightly below the cross-sector average (55% and 55% respectively)
  • 92% of retail organizations hit by ransomware said the attack impacted their ability to operate and 89% said the attack caused their organization to lose business/revenue
  • In 2021, the overall cost to retail organizations to remediate a ransomware attack was $1.27M, down from $1.97M in 2020
  • When compared to 2020, the amount of data recovered after paying the ransom decreased (from 67% to 62%), as did the percentage of retail organizations that got all their data back (from 9% to 5%)

In the light of the survey findings, Sophos experts recommend the following best practices for all organizations across all sectors:

  • Install and maintain high-quality defenses across all points in the environment. Review security controls regularly and make sure they continue to meet the organization’s needs
  • Proactively hunt for threats to identify and stop adversaries before they can execute attacks – if the team lacks the time or skills to do this in-house, outsource to a Managed Detection and Response (MDR) team
  • Harden the IT environment by searching for and closing key security gaps: unpatched devices, unprotected machines and open RDP ports, for example. Extended Detection and Response (XDR) solutions are ideal for this purpose
  • Prepare for the worst, and have an updated plan in place of a worst-case incident scenario
  • Make backups, and practice restoring them to ensure minimal disruption and recovery time

To learn more about the State of Ransomware in Retail 2022, download the full report from Sophos.com.

The State of Ransomware in Retail 2022 survey polled 5,600 IT professionals in mid-sized organizations across 31 countries, including 422 respondents from the retail sector.

Learn More About

  • The State of Ransomware 2022
  • Different ransomware threat actors, their TTPs, and Sophos’ latest ransomware research in the Ransomware Threat Intelligence Center
  • Vulnerable organizations falling victim to multiple ransomware attacks
  • The latest tactics and tools of the BlackCat ransomware group

Don’t miss important articles during the week. Subscribe to techbuild.africa weekly digest for updates

Join @techbuildafrica on Telegram
Tweet
Share
Share
ShareTweetShareSendShare

Subscribe us

Recent Posts

  • Stakeholders join Forces to support the Nigeria Innovation Summit 2023
  • THRIVE Studio Agrifood Tech Program closes Soon (Sep 30)
  • Why Debt Financing is Important for the African Business Market
  • CCM’s Paradigm Shift: From Document Automation to Intelligent Solutions
  • CBN, Partners Host Second International Financial Inclusion Conference (IFIC) October 2023
  • Infobip, Spryker partner to support Businesses deliver Personal Shopping Experiences
  • The Importance of Partnerships to drive Local Retail Success
  • NCC Extends Hackathon Application for Talent Hunt Research (Sep 30)
  • From SaaS Company to Full-stack Tech Platform, Zoho offers an All-in-One Solution to Businesses
  • LG takes CSR Project to Federal Medical Centre Abuja, donates Products, Mosquito Nets & Baby Care Kits
Innovation | Startups | Funding | Tech Blog in Africa

© 2013-2021 techbuild.africa. All Rights Reserved.

Navigate Site

  • About
  • Contact
  • WE-Forum
  • Privacy
  • Sitemap
  • Terms
  • Blockchain
  • CleanTech

Follow Us

No Result
View All Result
  • Home
  • Startups
  • Hubs
  • Funding
  • WomenTech
  • CleanTech
  • Blockchain

© 2013-2021 techbuild.africa. All Rights Reserved.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In