Select your language

Ransomware trends for the rest of the year, according to Veeam

Tendencias de ransomware para lo que resta del año, según Veeam

Latin America. The consulting firm Veeam presented the results of its most recent Ransomware Trends Report, edition for Latin America.

According to the Data Protection Trends 2024 report, based on interviews with IT managers and implementers from 10 countries around the world:

  • Only 25% of organizations believe they were not attacked by ransomware in 2023.
  • 49% say they have been attacked between one and three times that year.
  • 26% of organizations stated that they were attacked four or more times.

Due to the high attack rates shown in this unbiased report each year, Veeam commissioned the Ransomware Trends report to better understand attacks, recoveries and lessons learned.

The 'Ransomware Trends 2024' report is the third annual publication of an unbiased study conducted by a team of independent analysts that surveyed anonymous but selected organizations that, in the last 12 months, suffered at least one successful cyberattack. Ransomware continues to be a growing concern for everyone within the IT industry. Gartner forecasts a planned 3.5% increase in overall IT budgets globally by 2024. In this survey, LATAM respondents expect budget increases of 6.2% for cyber prevention and detection technologies, and 5.9% for recovery technologies such as backup and business continuity/recovery
(BCDR).

- Publicidad -

Organizations are not coordinated
For the third year in a row, more than half of organizations (69% in LATAM) believe that a "significant improvement" or a "complete overhaul" is necessary for organizations to coordinate their backup and cybersecurity teams.

According to respondents, the two teams that receive notifications most frequently to launch remediation efforts are the executives responsible for prevention and remediation and the IT backups team. This is immediately followed by cybersecurity experts and the organization's overall risk management team.

89% of organizations surveyed stated that they also turned to third parties during the recovery process, with these four types of experts being the most hired:

  • Security software vendors.
  • Backup software providers.
  • Forensic security specialists.
  • Resellers, partners, or service providers.

Two of the most shocking statistics from the 1200 global lessons in 2023 are:

  • 37% of production data was successfully encrypted by malicious people in last year's attacks.
  • 53% of affected data was able to be recovered after being encrypted in a ransomware attack.

Two key questions asked each year in this survey are:

  • Did you pay the ransom?
  • Were you able to recover the data?

In 2023 within LATAM:

  • They paid and were able to recover their data after the attack: 50%.
  • They paid but were unable to recover data lost in the attack: 26%.
  • Recovered without paying the ransom demanded: 16%.

The overall results were similar:

  • 54% paid and were able to recover their data after the attack.
  • 27% paid but were unable to recover data lost in the attack.
  • 15% recovered the data without paying the demanded ransom.
  • With the remaining 4%, no ransom was requested.

These statistics are significant, not least because they show that about one in four of the organizations that paid the ransom were unable to recover their data even after paying.

Beyond the rescue
73% of organizations believe they are protected by insurance, although 21% of those insurance policies specifically exclude ransomware. However, the costs of prevention, detection, recovery services, and the ransom itself are far from the only economic factors that can affect your organization in the event of a ransomware attack. In fact, of all the responses to this year's survey, only 1 in 9 organizations (11%) stated that paying a ransom generated the largest part of the overall financial impact for their organization. For the rest of the cyber victims, the overall economic impact was substantially greater than "just" the ransom itself.

- Publicidad -

In terms of companies' internal policies in 2023, only a small number of organizations (14%) did not have a policy on whether or not to pay a ransom. While most organizations had a policy, opinions were almost equally divided toward paying (49%) and not paying (38%).

Regardless of whether they had a policy or not, it should come as no surprise to anyone that while only a minority of organizations had a pay-as-you-go policy, 76% ended up paying. That said, 66% paid with insurance and another 17% had insurance but chose to pay without claiming it. This means that in 2023, 83% of organizations had insurance that they could have used for a cyber event.

No recovery plan
In 95% of organizations (who had a team with a plan), the two most prevalent aspects of their incident response playbook were ensuring clean, recoverable data. This explains why 28% of LATAM organizations have alternative infrastructure in their plans, which means, unfortunately, that the other 72% do not have a plan for where they will recover after a location-level crisis.

2024: Immutability is still not enough
In 2024, it's not unreasonable for organizations to adopt immutable storage within their local disks, complemented by immutable cloud repositories and isolated tapes. Unfortunately, even of those who have experienced at least one cyberattack in the past, only 76% use hardened disks on-premises and only 80% use clouds with immutability. Thus, only 49% of the organization's total backup storage is immutable.

That said, it's encouraging that organizations are adopting the industry-standard 3-2-1 rule of having multiple media types, regardless of whether or not those media types can be immutable. By 2024, in addition to on-premises disk repositories, 45% of production data is retained on at least one tape, while 52% is also replicated to a cloud.


No comments

• If you're already registered, please log in first. Your email will not be published.

Leave your comment

In reply to Some User
The Challenge of Global Instability: Towards a Comprehensive Security and Defense Response

The Challenge of Global Instability: Towards a Comprehensive Security and Defense Response

The growing convergence between physical and digital threats is forcing organizations to rethink their security strategies. Faced with this scenario, there is a need for comprehensive approaches...

AI applied to medical security

AI applied to medical security

The Directorate of the Medical Emergency System (SEM), attached to the Ministry of Health of El Salvador, strengthened its technological infrastructure with the modernization of its video...

Eight Red Dot Awards Highlight Innovation in Technology Design

Eight Red Dot Awards Highlight Innovation in Technology Design

International. The technology company Ajax Systems announced that it has won eight awards in the Red Dot Design Award, one of the most prestigious global awards in the field of industrial design....

Villa María del Triunfo reinforces its security with intelligent video surveillance

Villa María del Triunfo reinforces its security with intelligent video surveillance

Peru. The district of Villa María del Triunfo has launched an intelligent video surveillance system that already shows results in terms of citizen security and that will be expanded in a second...

Milestone Systems grows 10% by 2025 and reinforces its commitment to artificial intelligence and intelligent video

Milestone Systems grows 10% by 2025 and reinforces its commitment to artificial intelligence and intelligent video

Denmark. The company reported net income of $340 million in 2025, representing a 10% growth from the previous year. The company spent about a third of this revenue on innovation, with an emphasis on...

Micro Key Solutions Reinforces Latin America Strategy with New Key Appointments

Micro Key Solutions Reinforces Latin America Strategy with New Key Appointments

United States. In response to the growth in demand for monitoring and management software solutions in the security industry, Micro Key Solutions announced the expansion of its operations in Latin...

Grupo Multisistemas strengthens its presence in Mexico with a new office in Morelia

Grupo Multisistemas strengthens its presence in Mexico with a new office in Morelia

Mexico. Grupo Multisistemas de Seguridad Industrial (GMSI) advances in its national growth strategy with the inauguration of new offices in Morelia, Michoacán, with the aim of expanding its coverage...

Case study: Security system modernization with artificial intelligence and centralized monitoring

Case study: Security system modernization with artificial intelligence and centralized monitoring

Mexico City. The Superior Audit Office of the Federation (ASF) implemented an ambitious technological renovation project in its five headquarters located in Mexico City, with the aim of...

Automated key and equipment management strengthens security in mining operations

Automated key and equipment management strengthens security in mining operations

International. Access and equipment management in the mining industry is evolving towards increasingly automated models, in response to operational complexity and occupational safety demands.

Security becomes a technological platform

Security becomes a technological platform

Mexico. Security is moving from a set of standalone systems to an integrated technology platform that combines artificial intelligence, video analytics, sensors, access control, and data platforms....

Suscribase Gratis
Remember Me
SUBSCRIBE TO OUR ENGLISH NEWSLETTER
DO YOU NEED A SERVICE OR PRODUCT QUOTE?
LATEST INTERVIEWS
SITE SPONSORS










LATEST NEWSLETTER
Latest Newsletter