Ransomware Attacks Surge 91% in a Single Month to Reach an All-Time High

Stu Sjouwerman | May 4, 2023

Ransomware Attacks SurgeMarch saw a huge jump in ransomware compared to January and February, signifying that organizations should expect to see a lot more of these attacks this year.

With security solutions getting good at spotting and stopping malware on endpoints and servers, you’d think that ransomware attacks would be dwindling. But, according to the NCC Group’s Cyber Threat Report for March 2023, it feels a lot more like 2023 is going to be a repeat of 2022, but at significantly higher attack levels.

According to the report, March of 2023 incurred 459 documented ransomware attacks. That’s a 91% rise over February of this year and a 62% increase over March of last year. Additionally, January and February both saw significant growth over their 2022 counterparts.

4-4-23 ImageGlobal Ransomware Attacks by Month

Source: NCC Group

The industrial sector was the most targeted in March, experiencing 32% of the attacks, with more expected sectors like finance and healthcare falling lower in the sector list.

While Cl0p ransomware (RWaaS variant that leveraged a vulnerability in GOAnywhere Managed File Transfer) dominated the growth, Lockbit 3.0 was a close second. I’ve highlighted Lockbit before, mostly because they continue to use phishing attacks as their initial attack vector.

The growth we’re seeing in ransomware attacks, along with the continued use of phishing attacks, should be enough to make organizations realize they need better protective measures in place – which should include Security Awareness Training – to reduce the effectiveness of phishing emails used as the first step in ransomware attacks.

Topics: Ransomware

Test Your Network’s Defenses with our Free Ransomware Simulator

When employees bypass guidance and fall for social engineering, your network security is the last line of defense. Run our 100% harmless RanSim tool on Windows 10+ workstations to safely simulate 25 ransomware and cryptomining infection scenarios, pinpoint technical vulnerabilities, and get your results in minutes.

Launch Your Free Ransomware Simulation

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.