Close Menu
  • Home
  • AI
  • Big Data
  • Cloud Computing
  • iOS Development
  • IoT
  • IT/ Cybersecurity
  • Tech
    • Nanotechnology
    • Green Technology
    • Apple
    • Software Development
    • Software Engineering

Subscribe to Updates

Get the latest technology news from Bigteetechhub about IT, Cybersecurity and Big Data.

    What's Hot

    android – Can’t show or schedule notification with flutter workmanager

    January 26, 2026

    How Teams Using Multi-Model AI Reduced Risk Without Slowing Innovation

    January 26, 2026

    A deep dive into Apple’s AI strategy reset, as it prepares to announce a Gemini-powered personalized Siri next month and a reimagined chatbot-like Siri at WWDC (Mark Gurman/Bloomberg)

    January 25, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram
    Big Tee Tech Hub
    • Home
    • AI
    • Big Data
    • Cloud Computing
    • iOS Development
    • IoT
    • IT/ Cybersecurity
    • Tech
      • Nanotechnology
      • Green Technology
      • Apple
      • Software Development
      • Software Engineering
    Big Tee Tech Hub
    Home»IT/ Cybersecurity»The State of Ransomware in Retail 2025 – Sophos News
    IT/ Cybersecurity

    The State of Ransomware in Retail 2025 – Sophos News

    big tee tech hubBy big tee tech hubAugust 20, 20250474 Mins Read
    Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email Telegram WhatsApp
    Follow Us
    Google News Flipboard
    The State of Ransomware in Retail 2025 – Sophos News
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link


    Sophos’ latest annual study explores the real-world ransomware experiences of 361 retail organizations that were hit by ransomware in the past year. The report examines how the causes and consequences of these attacks have evolved over time.

    This year’s edition also sheds new light on previously unexplored areas, including the organizational factors that left retailers exposed and the human toll ransomware takes on retail IT and cybersecurity teams.

    Download the report to explore the full findings.

    Exploited vulnerabilities, unknown security gaps, and limited expertise underpin the main root causes of attacks

    For the third year running, retail victims identified exploited vulnerabilities as the most common technical root cause of attack, used in 30% of incidents.

    Multiple organizational factors contribute to retail organizations falling victim to ransomware, with the most common being unknown security gaps named by close to half (46%) of victims. It is followed in very close succession by a lack of expertise, which was a contributing factor in 45% of attacks — the highest rate recorded of any sector surveyed.

    Organizational root cause of attacks in retail
    Organizational root cause of attacks in retail 1

    Data encryption falls to a five-year low, while thwarted encryption attempts hit a record high

    Data encryption in the retail sector has dropped to its lowest level in five years, with fewer than half (48%) of attacks resulting in encryption, down from a peak of 71% in 2023. In line with this trend, the percentage of attacks stopped before encryption reached a five-year high, indicating that retail organizations are strengthening their defenses.

    However, adversaries are adapting: the proportion of retailers hit by extortion-only attacks (where data wasn’t encrypted but a ransom was still demanded) has tripled, rising from 2% in 2023 to 6% in 2025.

    Data encryption in retail | 2021 – 2025
    Data encryption rate in retail

    Rising ransom payment rates and declining backup use signal a shift in retail data recovery strategies

    The percentage of retailers paying the ransom to recover data has nearly doubled since 2021 (from 32% to 58% in 2025, well above the 49% cross-sector average). Backup use is at a four-year low, and although still marginally more common than ransom payments, the narrowing gap suggests a greater reliance on multiple/alternative recovery methods.

    Recovery of encrypted data in retail | 2021 – 2025
    Recovery of encrypted data in retail

    Ransom demands soar, but retailers stand firm

    The average (median) ransom demand made to retail organizations has doubled in the past year, reaching $2M in 2025 compared to $1M in 2024. This sharp increase is largely driven by a 59% rise in the proportion of demands exceeding $5M, which grew from 17% in 2024 to 27% in 2025. Despite this, the median ransom payment has increased by just 5%, from $950K in 2024 to $1M in 2025, indicating that retailers are showing greater resistance to inflated demands.

    Encouragingly, the average (mean) cost of recovering from a ransomware attack, excluding any ransom payment, has dropped by 40% over the past year to $1.65M, its lowest point in three years.

    These trends suggest that, while threat actors are demanding more, retail organizations are becoming more resilient by improving recovery processes and potentially holding firmer in ransom negotiations.

    Ransomware attacks place significant pressure on retail IT/cybersecurity teams from senior leadership

    The survey makes clear that having data encrypted in a ransomware attack has significant repercussions for IT/cybersecurity teams in the retail sector, with increased pressure from senior leaders cited by close to half (47%) of respondents. Other repercussions include (but are not limited to):

    • Increased anxiety or stress about future attacks — cited by 43%.
    • Staff absences due to stress/mental health issues — cited by 37%.
    • Feelings of guilt that the attack was not stopped — cited by 34%.

    Download the full report for more insights into the human and financial impacts of ransomware on the retail sector.

    About the survey

    The report is based on the findings of an independent, vendor-agnostic survey commissioned by Sophos of 3,400 IT/cybersecurity leaders across 17 countries in the Americas, EMEA, and Asia Pacific, including 361 from the retail sector. All respondents represent organizations with between 100 and 5,000 employees. The survey was conducted by research specialist Vanson Bourne between January and March 2025, and participants were asked to respond based on their experiences over the previous year.



    Source link

    News Ransomware Retail Sophos State
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    tonirufai
    big tee tech hub
    • Website

    Related Posts

    European Space Agency’s cybersecurity in freefall as yet another breach exposes spacecraft and mission data

    January 25, 2026

    Konni hackers target blockchain engineers with AI-built malware

    January 24, 2026

    CISA Updates KEV Catalog with Four Actively Exploited Software Vulnerabilities

    January 24, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    android – Can’t show or schedule notification with flutter workmanager

    January 26, 2026

    How Teams Using Multi-Model AI Reduced Risk Without Slowing Innovation

    January 26, 2026

    A deep dive into Apple’s AI strategy reset, as it prepares to announce a Gemini-powered personalized Siri next month and a reimagined chatbot-like Siri at WWDC (Mark Gurman/Bloomberg)

    January 25, 2026

    European Space Agency’s cybersecurity in freefall as yet another breach exposes spacecraft and mission data

    January 25, 2026
    About Us
    About Us

    Welcome To big tee tech hub. Big tee tech hub is a Professional seo tools Platform. Here we will provide you only interesting content, which you will like very much. We’re dedicated to providing you the best of seo tools, with a focus on dependability and tools. We’re working to turn our passion for seo tools into a booming online website. We hope you enjoy our seo tools as much as we enjoy offering them to you.

    Don't Miss!

    android – Can’t show or schedule notification with flutter workmanager

    January 26, 2026

    How Teams Using Multi-Model AI Reduced Risk Without Slowing Innovation

    January 26, 2026

    Subscribe to Updates

    Get the latest technology news from Bigteetechhub about IT, Cybersecurity and Big Data.

      • About Us
      • Contact Us
      • Disclaimer
      • Privacy Policy
      • Terms and Conditions
      © 2026 bigteetechhub.All Right Reserved

      Type above and press Enter to search. Press Esc to cancel.