Skip to main content

Ransomware threat rises: Verizon 2022 Data Breach Investigations Report

Year over year jump in ransomware attacks greater than past five years combined, as latest report highlights exceptional year in cybersecurity

What you need to know:

  • The 2022 DBIR – marking its 15 year anniversary – analyzed 23,896 security incidents, of which 5,212 were confirmed breaches
  • Year over year ransomware attacks increased by 13 percent, a jump greater than the past 5 years combined
  • Roughly 4 in 5 breaches can be attributed to organized crime, with external actors approximately 4 times more likely to cause breaches in an organization than internal actors
  • Human element involved in 82 percent of all breaches analyzed over the past year

BASKING RIDGE, N.J., May 24, 2022 (GLOBE NEWSWIRE) — The Verizon Business 2022 Data Breach Investigations Report (2022 DBIR) examines an unprecedented year in cybersecurity history, and sheds light on some of the leading issues affecting the international cybersecurity landscape.

Of particular concern is the alarming rise in ransomware breaches, which increased by 13 percent in a single year – representing a jump greater than the past 5 years combined. As criminals look to leverage increasingly sophisticated forms of malware, it is ransomware that continues to prove particularly successful in exploiting and monetizing illegal access to private information.

Organized crime also continues to be a pervasive force in the world of cybersecurity. Roughly 4 in 5 breaches can be attributed to organized crime – with external actors approximately 4 times more likely to cause breaches in an organization than internal actors.

Heightened geopolitical tensions are also driving increased sophistication, visibility, and awareness around nation-state affiliated cyber attacks.

“Over the past few years, the pandemic has exposed a number of critical issues that businesses have been forced to navigate in real-time. But nowhere is the need to adapt more compelling than in the world of cybersecurity,” said Hans Vestberg, CEO and Chairman, Verizon. “As we continue to accelerate toward an increasingly digitized world, effective technological solutions, strong security frameworks, and an increased focus on education will all play their part in ensuring that businesses remain secure, and customers protected.”

For many businesses, the past year has also been dominated by supply chain issues, and this trend was also reflected across the cybersecurity landscape. 62 percent of System Intrusion incidents came through an organization’s partner. Compromising the right partner is a force multiplier for cybercriminals, and highlights the difficulties that many organizations face in securing their supply chain.

In a finding that exposes the cost of human influence, people remain – by far – the weakest link in an organizations’ cybersecurity defenses. 25 percent of total breaches in the 2022 report were the result of social engineering attacks, and when you add human errors and misuse of privilege, the human element accounts for 82 percent of analyzed breaches over the past year.

Dave Hylender, Lead Author of the DBIR, comments, “Entering its 15th year, Verizon’s Data Breach Investigations Report remains the leading authority on assessing the many cybersecurity threats that organizations continue to face. And while the report has evolved, the fundamentals of security remain the same. Assess your exposure, mitigate your risk, and take appropriate action. As is often the case, getting the basics right is the single most important factor in determining success.”

About the DBIR

The 2022 DBIR – its 15th edition – analyzed 23,896 security incidents, of which 5,212 were confirmed breaches. Data was collected from 87 contributors, both domestic and international, ranging from law enforcement agencies to forensic and law firms to CERTs and ISACs, and government agencies from several countries.

The complete 2022 Data Breach Investigations Report as well as Executive Summary is available on the DBIR resource page.

Visit the DBIR landing page for a comprehensive list of all our DBIR webinars and events.

Media contact:
Timo Burbidge
timo.burbidge@uk.verizon.com

Disclaimer & Cookie Notice

Welcome to GOLDEA services for Professionals

Before you continue, please confirm the following:

Professional advisers only

I am a professional adviser and would like to visit the GOLDEA CAPITAL for Professionals website.

Important Notice for Investors:

The services and products offered by Goldalea Capital Ltd. are intended exclusively for professional market participants as defined by applicable laws and regulations. This typically includes institutional investors, qualified investors, and high-net-worth individuals who have sufficient knowledge, experience, resources, and independence to assess the risks of trading on their own.

No Investment Advice:

The information, analyses, and market data provided are for general information purposes only and do not constitute individual investment advice. They should not be construed as a basis for investment decisions and do not take into account the specific investment objectives, financial situation, or individual needs of any recipient.

High Risks:

Trading in financial instruments is associated with significant risks and may result in the complete loss of the invested capital. Goldalea Capital Ltd. accepts no liability for losses incurred as a result of the use of the information provided or the execution of transactions.

Sole Responsibility:

The decision to invest or not to invest is solely the responsibility of the investor. Investors should obtain comprehensive information about the risks involved before making any investment decision and, if necessary, seek independent advice.

No Guarantees:

Goldalea Capital Ltd. makes no warranties or representations as to the accuracy, completeness, or timeliness of the information provided. Markets are subject to constant change, and past performance is not a reliable indicator of future results.

Regional Restrictions:

The services offered by Goldalea Capital Ltd. may not be available to all persons or in all countries. It is the responsibility of the investor to ensure that they are authorized to use the services offered.

Please note: This disclaimer is for general information purposes only and does not replace individual legal or tax advice.