Industry Insights

Blog, Security

Does the Ransom Cause All the Financial Impacts of Ransomware?

by | Friday, September 2nd, 2022

Let’s say, hypothetically speaking, your business was infected with ransomware, and—despite our advice not to—you decided to pay the ransom. Once the money’s handed over, that’s the biggest cost that you might be subjected to, right?

Not so fast. Ransomware has many more impacts than that, each of which come with their own costs as well. Let’s dive into some of the other factors that also contribute to the cost of ransomware.

Take It from Those Who Paid: The Ransom Wasn’t the Worst Part of It

GetApp, a Software-as-a-Service review site, conducted a survey where they interviewed 300 business leaders who had been victimized by ransomware. Of the respondents, only 11%—effectively 1-in-10—considered the ransom payment to be the most impactful consequence.

Just consider multifactor extortion, for instance. Swiftly becoming a favorite tactic for attackers to use, 60% of the survey’s respondents had seen ransomware attacks launched in tandem with other efforts. While the attacker locks down their target’s data, it is also stolen. The attacker then threatens to leak this stolen data on the Internet unless another payment is received.

DDoS (Distributed Denial of Service) attacks are another favorite attack method that attackers will use to do harm to your business. In a DDoS attack, your servers are flooded with traffic to the point of failure, crashing websites and opening a business up to data breaches.

This multi-pronged attack has proven quite effective. According to the results of the survey, 31% of those targeted with ransomware alone would ultimately pay. This rate was found to effectively double to 58% when multifaceted attacks were used. GetApp tracked that 64% of businesses that suffered from multifaceted extortion dealt with ransomware and a DDoS attack, while 51% dealt with ransomware and data theft. 23% had to deal with all three of these effects.

This Still Isn’t the Worst Part

According to the survey, most impacted businesses didn’t see the ransom as the worst consequence. 42% did, while 21% saw minimal impacts. Similarly, 43% of businesses suffered some reputational damage, while 26% saw little-to-no impact.

GetApp’s research demonstrated that the most commonly felt impact after a ransomware attack was the lost productivity. 70% of those businesses surveyed identified it as a major impact, compared to a mere 13% stating that there was a minimal effect on productivity.

The duration of this loss of productivity was far and away seven hours or more for affected businesses, with 69% of businesses suffering for that long. 8% dealt with the ransomware for a week or more. On top of this, ransomware tends to alienate your clients. 62% of those business owners surveyed had lost a client after a ransomware infection, while 38% had lost multiple.

Ransomware Isn’t Cheap, One Way or the Other

Putting all of these factors together, it should be no surprise that ransomware is expensive. The survey’s respondents confirm this, too… 49% of those that paid up had to pay $50,000, but 34% that didn’t cave had to pay the same amount.

It’s Better to Not Have to Deal with Ransomware

Clearly, ransomware is something to avoid. Let’s touch on a few effective means of avoiding it.

Prepare for Phishing

Phishing is commonly used as a means of introducing cyberattacks into a business, especially ransomware. Keeping your team up-to-date on how to spot and mitigate phishing attacks, and running phishing simulations to help evaluate their readiness, is a good and necessary way to proactively prevent these attacks.

Patch Management

Ransomware can also be spread through software vulnerabilities, which makes it crucial that you keep your software up-to-date and phase it out once security updates are no longer produced by the developer. It also doesn’t hurt to isolate your business’ primary network from potentially insecure and unpatched devices (like IoT devices, as one example) by setting up a dedicated network for them that lacks access to the other one.

We’re Here to Help Keep You Secure and Productive

Our specialty is using technology and proactive maintenance to help solve business challenges and allow you to accomplish more, securely. Get started by giving us a call at 1-855-405-8889 today!

A Glimpse Into What Compliance Looks Like for Businesses

It’s easy to see all the reasons why you should make data regulations and compliance a priority. After all, you want to ensure you don’t violate the trust and security of your customers, as well as the integrity of your operations. If you make even one mistake, it...

AI Search Isn’t There Yet

People do this all the time: if they don’t know an answer, they just make something up that sounds right. It turns out AI has the same bad habit. A Study Put AI Search to the Test, and It Did Not Go Well Researchers at the Tow Center for Digital Journalism (part of...

Remote Work Is Great, but There Are Some Pitfalls

Do you have employees working remotely? If you do, the real question is, are you doing everything you can to keep them productive and secure? Remote work is awesome, but it comes with its fair share of risks. Today, we get into how to competently confront them. Remote...

Hiring IT is Hard (Here’s How to Make It Easier)

Do you have someone on your staff who can handle most IT-related issues for your business? If not, we’re sure your organization feels it in more ways than one. The issues that come from not having IT help are only made more frustrating when it comes time to find IT...

Let’s Take the Lid Off of CAPTCHA

We've officially reached the point where humans have to prove they're, well, human just to access websites. One of the most common ways to do this? CAPTCHA. CAPTCHA stands for Completely Automated Public Turing test to tell Computers and Humans Apart. It might sound...

Automation Isn’t Always the Best Business Option

Automation makes sense from an operations standpoint, and people see this despite the many who advocate for scaling back to save jobs. For every task that can be completed, however, less than half can be automated. When you consider all the tasks that a human might be...

More Reading from Industry Insights:

AI Search Isn’t There Yet

People do this all the time: if they don’t know an answer, they just make something up that sounds right. It turns out AI has the same bad habit. A Study Put AI Search to the Test, and It Did Not Go Well Researchers at the Tow Center for Digital Journalism (part of...

Hiring IT is Hard (Here’s How to Make It Easier)

Do you have someone on your staff who can handle most IT-related issues for your business? If not, we’re sure your organization feels it in more ways than one. The issues that come from not having IT help are only made more frustrating when it comes time to find IT...