DigitalCIO
No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
DigitalCIO
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
No Result
View All Result
Digitalcio
No Result
View All Result
Home Tech News

Sophos Survey Finds $3M Median Recovery Costs For Energy And Water Sectors

DigitalCIO Bureau by DigitalCIO Bureau
July 22, 2024
in Tech News
0
Sophos Survey Finds $3M Median Recovery Costs For Energy And Water Sectors
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

Sophos has released a sector survey report, “The State of Ransomware in Critical Infrastructure 2024,” which revealed that the median recovery costs for two critical infrastructure sectors, Energy and Water, quadrupled to $3 million over the past year. This is four times higher than the global cross-sector median. In addition, 49% of ransomware attacks against these two critical infrastructure sectors started with an exploited vulnerability.

Data for the State of Ransomware in Critical Infrastructure 2024 report comes from 275 respondents at energy, oil and gas, and utilities organisations, which fall under the Energy and Water sectors of CISA’s 16 defined critical infrastructure sectors. The results for this sector survey report are part of a broader, vendor-agnostic survey of 5,000 cybersecurity/IT leaders conducted between January and February 2024 across 14 countries and 15 industry sectors.

“Criminals focus where they can cause the most pain and disruption so the public will demand quick resolutions, and they hope, ransom payments to restore services more quickly. This makes utilities prime targets for ransomware attacks. Because of the essential functions they provide, modern society demands they recover quickly and with minimal disruption,” said Chester Wisniewski, global Field CTO.

“Unfortunately, public utilities are not only attractive targets but vulnerable to attacks on many fronts, including the requirement for high availability and safety, as well as an engineering mindset focused on physical security. There’s a preponderance of older technologies configured to enable remote management without modern security controls like encryption and multifactor authentication. Like hospitals and schools these utilities are frequently operating with minimal staffing and without the IT staffing required to stay on top of patching, the latest security vulnerabilities and the monitoring required for early detection and response.”

On top of growing recovery costs, the median ransom payment for organisations in these two sectors jumped to more than $2.5 million in 2024—$500,0000 higher than the global cross-sector median. The Energy and Water sectors also reported the second highest rate of ransomware attacks. Overall, 67% of the organisations in these sectors reported being hit by ransomware in 2024, in comparison to the global, cross-sector average of 59%.

Other findings from the report include:

  • The energy and water sectors reported increasingly longer recovery times. Only 20% of organisations hit by ransomware were able to recover within a week or less in 2024, compared to 41% in 2023 and 50% in 2022. Fifty-five percent took more than a month to recover, up from 36% in 2023. In comparison, across all sectors, only 35% of companies took more than a month to recover
  • These two critical infrastructure sectors reported the highest rate of backup compromise (79%) and the third highest rate of successful encryption (80%) when compared to the other industries surveyed

“This once again shows that paying ransom payments almost always works against our best interests. An increasing number (61%) paid the ransom as part of their recovery, yet the amount time it took to recover was extended. Not only do these high rates and amounts of ransoms encourage more attacks on the sector, but they are not achieving the claimed goal of shorter recovery times,” said Wisniewski.

“These utilities must recognise they are being targeted and take proactive action to monitor their exposure of remote access and network devices for vulnerabilities and ensure they have 24/7 monitoring and response capabilities to minimise outages and shorten recovery times. Incident response plans should be planned in advance, the same as for fires, floods, hurricanes and earthquakes, and be rehearsed on a regular schedule.”

Tags: Sophos
Share30Tweet19
DigitalCIO Bureau

DigitalCIO Bureau

Recommended For You

TCS and AMD to bring state-of-the-art ‘Helios’ rack-scale AI architecture to India

by DigitalCIO Bureau
February 16, 2026
0
TCS and AMD to bring state-of-the-art ‘Helios’ rack-scale AI architecture to India

Tata Consultancy Services (TCS) and AMD have expanded their strategic collaboration. TCS, through its subsidiary HyperVault AI Data Center Limited (HyperVault), and AMD will co‑develop a rack‑scale AI infrastructure...

Read moreDetails

AI, Regulation & Quantum to Shape Top Cybersecurity Trends in 2026: Gartner

by DigitalCIO Bureau
February 9, 2026
0
LockBit Ransomware Hacker Sentenced to Prison in Canada

The chaotic rise of AI, geopolitical tensions, regulatory volatility and an accelerating threat landscape are the driving forces behind the top cybersecurity trends for 2026, according to Gartner, Inc. a business...

Read moreDetails

Massive Cyber-Espionage Campaign Affects 37 Countries

by DigitalCIO Bureau
February 9, 2026
0
Retail Industry — Next Big Target for Hackers?

Sensitive systems of organizations in 37 countries have been compromised in a large-scale cyberespionage campaign. The campaign is the work of a state-sponsored threat actor, designated TGR-STA-1030. This...

Read moreDetails

Number of DDoS attacks increased by 121 percent

by DigitalCIO Bureau
February 9, 2026
0
Education Sector Sees Highest Rate Of Ransomware Attacks

The number of DDoS attacks increased by 121 percent last year. An average of 5,376 attacks were automatically blocked per hour. This is evident from figures shared by...

Read moreDetails

Sovereign Cloud IaaS Spending to Reach $80 Billion in 2026

by DigitalCIO Bureau
February 9, 2026
0
Infosys: Over $300 billion In Corporate Cloud Commitments Remain Untapped

Worldwide sovereign cloud infrastructure as a service (IaaS) spending is forecast to total $80 billion in 2026, a 35.6% increase from 2025, according to Gartner, Inc. a business and technology...

Read moreDetails
Next Post
CommScope To Sell Outdoor Wireless Networks & DAS Businesses To Amphenol For $2.1bn

CommScope To Sell Outdoor Wireless Networks & DAS Businesses To Amphenol For $2.1bn

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

Proofpoint Unveils Data Security Landscape Report

Proofpoint Unveils Data Security Landscape Report

November 6, 2025
Equinix Launches Managed Service for NVIDIA DGX AI Supercomputing

Equinix Launches Managed Service for NVIDIA DGX AI Supercomputing

January 27, 2024
OurCrowd AI Fund to Collaborate with NVIDIA Inception

75% of Industry Leaders Believe Responsible AI Significantly Improves Decision-Making and Governance

August 6, 2024

Browse by Category

  • Acquisition
  • Appointment
  • Archive
  • Artificial Intelligence
  • CIO Interviews
  • Cloud
  • Datacenter
  • Events and Conferences
  • Market Insights
  • News
  • Opinion and Analysis
  • Products
  • Resources
  • Security
  • Storage
  • Tech News
  • Telecom
Digitalcio

Welcome to DigitalCIO, your ultimate source for staying ahead in the ever-evolving world of technology and business.

BROWSE BY TAG

Acquisition AI Appointment artificial intelligence Artificial Intelligence and Machine Learning AWS Barracuda Big Data and Analytics Blockchain CISCO Cloud Computing Cloudflare Commvault CrowdStrike Cybersecurity Digital Transformation Dynatrace E-books Fortinet Gartner GenAI Generative AI Google Cloud IBM Infographics Internet of Things (IoT) Kaspersky Microsoft New Relic NTT DATA NVIDIA Palo Alto Networks Panel Discussion Qlik Salesforce ServiceNow Sophos Tenable Trend Micro Veeam Veeam Software Vertiv Webinars Whitepaper Zscaler

CATEGORIES

  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
  • Archive

NAVIGATION

  • Home
  • About Us
  • Advertise with Us
  • Contact Us

© 2024 digitalcio.in - All rights reserved.

No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources

© 2024 digitalcio.in - All rights reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?