2021年全球勒索软件报告(英)-26页_1mb
报告摘要
Datto's Global State of the Channel Ransomware Report Summary
Core Content
Datto's Annual Global State of the Channel Ransomware Report presents findings from a survey of over 1,000 managed service providers (MSPs) worldwide, highlighting the persistent threat of ransomware to small and medium businesses (SMBs). The report provides insights into ransomware trends, attack vectors, recovery methods, and the impact on businesses, emphasizing the need for robust security and continuity strategies.
Main Findings
- Ransomware remains the top malware threat to SMBs, with 70% of MSPs identifying it as the most common.
- Awareness and preparedness are increasing, with 92% of MSPs predicting ransomware attacks will rise in the next year.
- SMBs are not fully aware of the threat, with only 30% of MSPs reporting that their clients are "very concerned" about ransomware.
- Phishing emails are the leading cause of successful ransomware attacks, followed by weak passwords and poor user practices.
- Downtime costs are significantly higher than ransom payments, with the average downtime cost in 2020 being 94% greater than in 2019 and nearly 50 times the ransom amount.
- BCDR (Business Continuity and Disaster Recovery) solutions are crucial for minimizing downtime, with 91% of MSPs noting that clients with BCDR in place are less likely to experience significant disruption.
- Windows endpoint systems are the most targeted by ransomware, accounting for 91% of attacks, followed by Windows servers at 76%.
- SaaS applications are increasingly vulnerable, with nearly 25% of MSPs reporting attacks on Google Workspace and 54% on Dropbox.
- MSPs are more concerned about ransomware than their SMB clients, with 84% of MSPs feeling "very concerned" versus only 30% of SMBs.
- Ransomware is evolving, with attackers shifting focus to more profitable targets like larger enterprises during economic downturns.
- Security measures such as 2FA, SSO, and partnering with MSSPs are becoming more common among MSPs to enhance their own and their clients' defenses.
Key Trends and Statistics
- Ransomware frequency has slightly decreased, with 78% of MSPs reporting attacks in the last two years, down from 85% the previous year.
- Average ransom requested for SMBs remained stable in 2020 at $5,600, compared to $5,900 in 2019.
- MSPs are adopting more sophisticated recovery methods, such as re-imaging from backup (76%) and virtualizing from backup images (31%), showing a maturing approach to ransomware response.
- Cloud security concerns are higher in North America compared to Europe and Asia Pacific.
- Healthcare, finance/insurance, and government industries are most vulnerable to ransomware attacks due to the pandemic and increased reliance on digital infrastructure.
Recommendations
- Implement a multi-layered security approach to combat ransomware, including employee training, endpoint protection, and BCDR solutions.
- Prioritize cybersecurity education for employees to reduce the risk of phishing and other social engineering attacks.
- Invest in BCDR solutions to ensure quick recovery and minimize downtime.
- Utilize advanced security tools such as endpoint detection and response (EDR), unified threat management, and identity access management (IAM).
- Partner with MSSPs for specialized security expertise and to enhance overall preparedness.
Conclusion
Despite increased awareness and security spending, ransomware remains a significant threat to SMBs. The report underscores the importance of a comprehensive, proactive approach to cybersecurity and business continuity to mitigate the impact of ransomware attacks. With the right tools and strategies, businesses can better protect themselves against this evolving threat.
试读结束,高清完整版pdf/doc/ppt,请点下载