🔒Ransomware Targets Backups in Over 90% of Attacks
Your backups are now the primary target for ransomware
TL;DR
Ransomware attacks increasingly focus on deleting or tampering with backups before launching their payloads. Nearly 60% succeed, turning recovery into a major enterprise risk.
Ransomware attackers are now targeting backups in over 90% of their assaults, aiming to delete or corrupt them before deploying their main payload. This shift means that backup integrity and recoverability have become critical for business continuity. Delayed recovery can cripple operations, reduce productivity, and lead to customer loss. With only 27% of SMBs enforcing MFA and fragmented defense strategies being the norm, unified protection across hybrid environments is crucial but rare (only 1 in 5 organizations achieve it).

Key Points
Over 90% of ransomware attacks attempt to delete or tamper with backups before launching payloads, making them a primary target.
Nearly 60% of these attacks on backups are successful, highlighting the vulnerability of current defense strategies.
Only 27% of SMBs enforce MFA, leaving many companies exposed to identity-based ransomware approaches that start by targeting backup repositories.
Unified protection across hybrid environments is rare; only one in five organizations report having it, despite its critical importance for resilience.
Cloud providers operate under a Shared Responsibility Model, where users are responsible for protecting their data and ensuring recovery capabilities.
Why It Matters
If you manage backups or handle IT security for your organization, this shift means that backup integrity and recoverability have become critical. With over 90% of ransomware attacks targeting backups first, robust protection and tested recovery plans are essential to avoid business-critical downtime.
Frequently Asked Questions
Why does this matter?
If you manage backups or handle IT security for your organization, this shift means that backup integrity and recoverability have become critical. With over 90% of ransomware attacks targeting backups first, robust protection and tested recovery plans are essential to avoid business-critical downtime.
What happened?
Ransomware attacks increasingly focus on deleting or tampering with backups before launching their payloads. Nearly 60% succeed, turning recovery into a major enterprise risk.
Comments
Be the first to comment
Enjoyed this article?
Get it daily. 7am. Free. Reads in 5 minutes.
Join 2,788 builders reading daily.