75% of SMBs Would Only Survive Seven Days or less from a Ransomware Attack



Ransomware-Checklist-LibraryWith ransomware attacks on the increase, new data shows a material portion of small and medium business organizations are completely ill-equipped to address an attack.

Is it me or shouldn’t even SMB organizations at this point know they’re going to be severely crippled if they aren’t ready for a ransomware attack? I realize I live this stuff, but it’s everywhere in the headlines and SMBs have long-been a soft target with lower budgets, staffing, etc.

But new data from cybersecurity vendor CyberCatch in their Small and Medium-Sized Businesses Ransomware report make it clear that a subset of SMBs are anything but ready. According to the report, on the average:

  • 30% of SMBs have no written incident response plan
  • Of those that do, 35% of them tested the plan over six months ago
  • 21% of SMBs have no offline immutable backups
  • 34% of SMBs don’t utilize phishing testing of employees to thwart phishing attacks

This isn’t good. And the projected repercussions are even worse:

  • 47% of SMBs would only survive for 3 days after an attack
  • 28% would survive only 7 days

I get it that SMBs have limited resources, so it makes sense to put budget toward only a few security measures that will have the greatest cost-effective impact. These include endpoint protection, email protection, patching, cloud-based immutable backups, and Security Awareness Training (along with phishing testing).

By securing the most common attack vectors threat actors use, SMBs have a better chance of not just surviving an attack, but keeping one from ever hitting them.


Free Ransomware Simulator Tool

Threat actors are constantly coming out with new strains to evade detection. Is your network effective in blocking all of them when employees fall for social engineering attacks?

KnowBe4’s "RanSim" gives you a quick look at the effectiveness of your existing network protection. RanSim will simulate 24 ransomware infection scenarios and 1 cryptomining infection scenario and show you if a workstation is vulnerable.

RansIm-Monitor3Here's how it works:

  • 100% harmless simulation of real ransomware and cryptomining infections
  • Does not use any of your own files
  • Tests 25 types of infection scenarios
  • Just download the install and run it 
  • Results in a few minutes!

Get RanSim!

PS: Don't like to click on redirected buttons? Cut & Paste this link in your browser:

https://www.knowbe4.com/ransomware-simulator

Topics: Ransomware



Subscribe to Our Blog


Comprehensive Anti-Phishing Guide




Get the latest about social engineering

Subscribe to CyberheistNews