Canadian mid-sized firms pay an average $1.13 million to ransomware gangs

Share post:

The average ransomware payment made by mid-sized Canadian companies this year was just over $1 million, according to a new survey.

The survey of IT professionals at 1,000 organizations with between 100 and 1,000 employees, done for Palo Alto Networks, was released Thursday.

Called the Canadian Ransomware Barometer, it found that while the volume of ransomware attacks here had decreased since the last study two years ago, the average ransom paid was $1.13 million. That’s a 150 per cent increase over 2021.

Of the majority of businesses that paid ransoms, just over half paid more than $500,000. By comparison, only 29 per cent paid over that amount in 2021.

The number of respondents saying their firm was hit by ransomware stayed roughly the same — 35 per cent this year, compared to 37 per cent in 2021.

However, the number of organizations willing to pay ransoms dropped. Of those hit this year, only 34 per cent of respondents said their organization paid to get access to data back. By comparison, 45 per cent of respondents in the 2021 survey said their firm paid.

As with the previous study, more than half of respondents (58 per cent) said that it took
more than a month to recover from a ransomware attack. One-quarter (24 per cent) said that it took longer than four months.

The report offers these tips to defend against ransomware attacks:

— train staff that if they think a phishing email has arrived in their inbox, it must be reported;
— ensure all software and hardware have the latest patches;
— have a solid and tested data backup and recovery plan.

The post Canadian mid-sized firms pay an average $1.13 million to ransomware gangs first appeared on IT World Canada.
Howard Solomon
Howard Solomonhttps://www.itworldcanada.com
Currently a freelance writer, I'm the former editor of ITWorldCanada.com and Computing Canada. An IT journalist since 1997, I've written for ITBusiness.ca and Computer Dealer News. Before that I was a staff reporter at the Calgary Herald and the Brampton (Ont.) Daily Times.

SUBSCRIBE NOW

Related articles

North Korean hacker infiltrates US security vendor, loads malware

KnowBe4, a US-based security vendor, unknowingly hired a North Korean hacker who attempted to introduce malware into the...

CrowdStrike releases an update from initial Post Incident Review: Hashtag Trending Special Edition for Thursday July 25, 2024

Security vendor CrowdStrike released an update on from their initial Post Incident Review today. The first, and most surprising...

Security vendor CrowdStrike issues an update from their initial Post Incident Review

Security vendor CrowdStrike released an update from their initial Post Incident Review (PIR) today. The company's CEO has...

CrowdStrike CEO summoned by Homeland Security committee over software disaster

CrowdStrike CEO George Kurtz has been called to testify before the U.S. House Committee on Homeland Security following...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways