73 per cent of Indian firms report being ransomware victim in 2023: Report

About 77 per cent of ransomware attacks against surveyed organisations succeeded in encrypting data, but only 44 per cent paid the ransom to recover their data, the report said

Cyberattacks in India have tripled in the last three years.
Representative Image: Ransomware attacks
BS Web Team New Delhi
2 min read Last Updated : May 24 2023 | 11:48 PM IST
The rate of ransomware attacks in India has increased significantly in recent years. According to a recent report by cybersecurity company Sophos, 73 per cent of Indian firms have been victims of ransomware attacks, up from 57 per cent the previous year.

Ransomware is a type of malware that encrypts a victim's files and demands a ransom payment in order to decrypt them. Ransomware attacks can have a devastating impact on businesses, as they can lead to data loss, productivity losses, and reputational damage

About 77 per cent of ransomware attacks against surveyed organisations succeeded in encrypting data, but only 44 per cent paid the ransom to recover their data -- a significant drop from 78 per cent last year, according to cybersecurity company Sophos.

When the main causes of ransomware attacks were examined, exploited vulnerability (in 35 per cent of cases), followed by compromised credentials (in 33 per cent of cases) emerged as the chief causes.
 
"Although dipping slightly from the previous year, the rate of encryption remains high at 77 per cent, which is certainly concerning. Ransomware crews have been refining their methodologies of attack and accelerating their attacks to reduce the time for defenders to disrupt their schemes," said Chester Wisniewski, field chief technology officer, Sophos.
 
The report said that in 30 per cent of the cases where data was encrypted, data was also stolen, implying that the “double dip” method -- data encryption and data exfiltration -- was becoming commonplace off late. 


"Human-led threat hunting is very effective at stopping these criminals in their tracks, but alerts must be investigated, and criminals evicted from systems in hours and days, not weeks and months," Wisniewski added.

*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

Topics :ransomwareRansomware cyber attacksransomware attackBS web team

First Published: May 24 2023 | 11:48 PM IST

Next Story