{"id":23990,"date":"2022-12-19T10:18:35","date_gmt":"2022-12-19T04:48:35","guid":{"rendered":"https:\/\/www.getastra.com\/blog\/?p=23990"},"modified":"2026-01-06T14:50:47","modified_gmt":"2026-01-06T09:20:47","slug":"cyber-security-statistics","status":"publish","type":"post","link":"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-security-statistics\/","title":{"rendered":"160 Cybersecurity Statistics 2026 [Updated]"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Cybersecurity statistics indicate that there are 2,200 cyber attacks per day, with a cyber attack happening every 39 seconds on average. In the US, a data breach costs an average of $9.44M, and cybercrime is predicted to cost $8 trillion by 2023.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The cybersecurity landscape is continuously evolving. And now with COVID-19, remote work, and<a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-crime-statistics\/#:~:text=The%20global%20annual%20cost%20of,attacks%20in%20the%20technology%20sector.\"> increasing cyber crimes<\/a> in the picture, maintaining fool-proof security is becoming harder and harder.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To give you a better view of what\u2019s happening with cybersecurity, we curated a list of 160 cybersecurity stats for 2026.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Forecasts_for_Cybersecurity_in_2026\"><\/span><strong>Forecasts for Cybersecurity in 202<\/strong>6<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Did you know a cyberattack happens every 39 seconds? That&#8217;s less time than it takes to order takeout. To put this in perspective, cybercrime is estimated to have cost the world USD 9.5 trillion in <a href=\"https:\/\/www.esentire.com\/resources\/library\/2023-official-cybercrime-report\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">2024<\/a>.&nbsp;<\/p>\n\n\n\n<div class=\"wp-block-cover alignfull has-parallax wp-duotone-094850-f9644e-2\" style=\"margin-top:0;padding-top:48px;padding-right:48px;padding-bottom:48px;padding-left:48px;min-height:66vh;aspect-ratio:unset;\"><div class=\"wp-block-cover__image-background wp-image-29054 has-parallax\" style=\"background-position:50% 50%;background-image:url(https:\/\/cdn-blog.getastra.com\/2023\/10\/Sybil-Attack.webp)\"><\/div><span aria-hidden=\"true\" class=\"wp-block-cover__background has-background-dim-70 has-background-dim wp-block-cover__gradient-background has-background-gradient has-midnight-gradient-background\"><\/span><div class=\"wp-block-cover__inner-container is-layout-flow wp-block-cover-is-layout-flow\">\n<div class=\"wp-block-buttons is-content-justification-left is-nowrap is-layout-flex wp-container-core-buttons-is-layout-f4069c65 wp-block-buttons-is-layout-flex\">\n<div class=\"wp-block-button is-style-outline is-style-outline--1\"><a class=\"wp-block-button__link has-white-color has-text-color has-custom-font-size wp-element-button\" style=\"border-radius:96px;padding-top:24px;padding-right:48px;padding-bottom:24px;padding-left:48px;font-size:15px;font-style:normal;font-weight:400;letter-spacing:0px;text-transform:capitalize\">Astra Fact<\/a><\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-group is-content-justification-left\"><div class=\"wp-block-group__inner-container is-layout-constrained wp-container-core-group-is-layout-2f471073 wp-block-group-is-layout-constrained\">\n<h3 class=\"wp-block-heading has-text-align-left has-white-color has-text-color\" style=\"font-size:34px;font-style:normal;font-weight:700;letter-spacing:0px;line-height:1;text-transform:uppercase\">Did you know a cyberattack happens every <\/h3>\n\n\n\n<h3 class=\"wp-block-heading has-text-align-left has-white-color has-text-color\" style=\"font-size:75px;font-style:normal;font-weight:700;letter-spacing:0px;line-height:1;text-transform:uppercase\">39 seconds?<\/h3>\n<\/div><\/div>\n\n\n\n<div style=\"height:72px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n<\/div><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">This staggering amount underscores the imminent need for cybersecurity to be treated as a global priority. Moreover, with the explosion of generative AI (besides ChatGPT as well!), the current&nbsp;2200 daily attacks&nbsp;are expected to not only multiply manifold but become far more&nbsp;individualized.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Despite the new technology, ransomware will possibly continue to dominate cybercrime in 2026. In fact, according to Statista, it was the leading motive for more than 72% of cybersecurity incidents in 2023.\u00a0<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Moreover, even with the widespread impact, small and medium-sized businesses (SMBs) seem to be the new bullseye, as documented by&nbsp; <a href=\"https:\/\/firewalltimes.com\/small-business-cybersecurity-statistics\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">61%<\/a> of SMBs that were hit in 2023. <span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">As such, the expected growth of the global cybersecurity market to&nbsp;<a href=\"https:\/\/www.marketsandmarkets.com\/Market-Reports\/cyber-security-market-505.html\" target=\"_blank\" rel=\"noopener\">$266.2 billion<\/a>&nbsp;by 2027 hardly comes as a surprise.<\/span>&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">As such, with the alarming 8.9% CAGR of the cybersecurity industry, Gartner predicts that <a href=\"https:\/\/www.gartner.com\/en\/newsroom\/press-releases\/2022-02-24-gartner-says-the-cybersecurity-leader-s-role-needs-to\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">50%<\/a> of C-suite leaders will have cybersecurity risk-related performance requirements embedded in their contracts by 2026.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Top 5 Countries by Cybercrime Density<\/h3>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1792\" height=\"1344\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/1.png\" alt=\"Most attacked countries (since 2004)\" class=\"wp-image-30339\" srcset=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/1.png 1792w, \/cdn-cgi\/image\/width=1536,height=1152,fit=crop,quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/1.png 1536w\" sizes=\"auto, (max-width: 1792px) 100vw, 1792px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Headliners_for_Cybersecurity_in_2023\"><\/span><strong>Headliners for Cybersecurity in 2023<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">At the time of writing, <a href=\"https:\/\/www.cvedetails.com\/vulnerability-list\/year-2023\/vulnerabilities.html?page=1&amp;order=1&amp;trc=28778&amp;sha=9394f1baca42a3ef74adb541404db24e1859fcef\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">28778<\/a> new vulnerabilities have been discovered in 2023 alone, dwarfing 2022\u2019s total vulnerabilities by nearly <a href=\"https:\/\/www.cvedetails.com\/vulnerability-list\/year-2022\/vulnerabilities.html?page=1&amp;order=1&amp;trc=28778&amp;sha=9394f1baca42a3ef74adb541404db24e1859fcef\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">3700+<\/a>. In fact, at the current rate of 14.8%, 2025 will have 33K+ CVEs.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"768\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/Cybersecurity-statistics-infographic-2.png\" alt=\"Total CVEs Discovered\" class=\"wp-image-30368\"\/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Conversely, recent research by the World Economic Forum reveals a striking lack of confidence among organizations. Only <a href=\"https:\/\/www3.weforum.org\/docs\/WEF_State_of_the_Connected_World_2023_Edition.pdf\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">4% of organizations<\/a> are confident in their assurance of security to \u201cusers of connected devices and related technologies are protected against cyberattacks.\u201d&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This, unfortunately, indicates that most organizations (federal and private) have adopted a reactive rather than proactive approach to cybersecurity, i.e., they place damage control campaigns on a higher priority than preventative vigilance.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Simply put, Fortra&#8217;s reactive stance allowed hackers to exploit a <a href=\"https:\/\/techcrunch.com\/2023\/02\/15\/clop-ransomware-community-health-systems\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">zero-day vulnerability<\/a>, triggering a domino effect that affected over 130 companies. In contrast, Google&#8217;s proactive measures successfully defended against a massive DDoS attack, handling over <a href=\"https:\/\/cloud.google.com\/blog\/products\/identity-security\/google-cloud-mitigated-largest-ddos-attack-peaking-above-398-million-rps\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">398 million requests<\/a> per second.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Adding to the bad news, <a href=\"https:\/\/www.ibm.com\/reports\/data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">IBM\u2019s 2023 report<\/a> indicates the average cost of a corporate data breach in 2023 stood at $4.45 million. However, supply chain attacks can far exceed such a cost, especially in the case of key APIs.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">The infamous&nbsp;<a href=\"https:\/\/www.ncsc.gov.uk\/information\/moveit-vulnerability\" target=\"_blank\" rel=\"noopener\">MOVEit Supply Chain Attack<\/a>&nbsp;in June provided ample proof, as it compromised more than 620 organizations, including major companies such as the BBC and British Airways.<\/span>&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">By the same token, <a href=\"https:\/\/www.gartner.com\/en\/articles\/7-top-trends-in-cybersecurity-for-2022\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Gartner<\/a> predicts that over the next two years, 45% of global organizations will be impacted in some way by a supply chain attack. The takeaway: your organization is only as strong as its weakest link.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The bad news doesn\u2019t end there. The same <a href=\"https:\/\/www.ibm.com\/reports\/data-breach\" target=\"_blank\" rel=\"noreferrer noopener\">IBM report<\/a> also found that 82% of breaches involved cloud-based data, with ransomware being the primary threat. More frighteningly, even with blockchain safeguards, hackers got away with more than $2 billion in cryptocurrencies in 2023.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, that would still just be some nominal pocket change in the burgeoning <a href=\"https:\/\/cybersecurityventures.com\/cybercrime-to-cost-the-world-8-trillion-annually-in-2023\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$8 trillion<\/a> cybercrime economy of 2023. To put this in perspective, the world lost $255,000 every second this year to cyberattacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Let\u2019s take a look at some of the emerging trends in 2023.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Popular_Cybersecurity_Trends_in_2026\"><\/span><strong>Popular Cybersecurity Trends in 202<\/strong>6<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">As the threat landscape evolves with new threat vectors and novel methodologies and techniques, AIML, as well as intricate social engineering tactics, emerged as new favourites in 2023. Let\u2019s take a deeper dive into some of the popular cybersecurity, or rather cybercrime,e trends of 2026:<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Malware<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>According to Parachute, threat actors deployed an average of <a href=\"https:\/\/www.blackberry.com\/us\/en\/solutions\/threat-intelligence\/2023\/threat-intelligence-report-august\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">11.5 attacks per minute<\/a>, including 1.7 novel malware samples per minute in 2023.&nbsp;<\/li>\n\n\n\n<li>92% of malware was delivered via email.<\/li>\n\n\n\n<li>Quoting <a href=\"https:\/\/www.ibm.com\/reports\/data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">IBM<\/a>, \u201cThe share of breaches caused by ransomware grew 41% in the last year and took 49 days longer than average to identify and contain.\u201d<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">In layman\u2019s language, malware is malicious software designed to disrupt, damage, or gain unauthorized access to computer systems. Some of the most popular variants include viruses, worms, and ransomware, among others.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Although it has dominated the cyberattacks billboard for several years, along with global summits\u2014from COP28 to Davos\u2014the existing strategies continue to fail. This is due to two major reasons: the growing sophistication of the attacks thanks to genAI and the lack of cohesive management tools.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Don\u2019t believe us? In the first half of 2022,<a href=\"http:\/\/statista.com\/statistics\/873097\/malware-attacks-per-year-worldwide\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"> 2.8 billion malware attacks<\/a> occurred, and that&#8217;s not even counting the<a href=\"http:\/\/kaspersky.co.in\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"> <strong>5,520,908 mobile malware, adware<\/strong><\/a><strong>, and riskware attacks that were blocked in Q2 2022<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Moreover, the first half of 2022 saw a<a href=\"http:\/\/trendmicro.com\/vinfo\/hk\/security\/research-and-analysis\/threat-reports\/roundup\/defending-the-expanding-attack-surface-trend-micro-2022-midyear-cybersecurity-report\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"> massive 976.7% increase<\/a> in Emotet detections compared to the first half of 2021. Iran is the country most impacted by mobile malware attacks, and the VBA Trojan was the most<a href=\"http:\/\/securitybrief.asia\/story\/use-of-malware-botnets-and-exploits-expands-in-q1-2022\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"> common malware variant in 2022<\/a>.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect yourself from malware attacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Use security software to detect and remove malicious programs.<\/li>\n\n\n\n<li>Leverage MFA and strong passwords to make it harder for attackers to access your device or accounts.<\/li>\n\n\n\n<li>Use up-to-date software, as older versions often have vulnerabilities.<\/li>\n\n\n\n<li>Never click on links from unknown sources as this is a common way for attackers to spread malware.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Ransomware<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>The average ransom in 2023 was <a href=\"https:\/\/info.cgcompliance.com\/blog\/ransomeware_breaches_and_how_they_were_resolved#:~:text=The%20average%20ransom%20in%202023,(Astra%2C%202023).\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$1.54 million<\/a>, which is almost double the 2022 figure of $812,380<\/li>\n\n\n\n<li>As of 2023, over <a href=\"https:\/\/www.statista.com\/statistics\/204457\/businesses-ransomware-attack-rate\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">72%<\/a> of businesses worldwide were affected by ransomware attacks.<\/li>\n\n\n\n<li><strong>IBM reports that it takes an<\/strong><a href=\"http:\/\/ibm.com\/reports\/data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"><strong> average of 49 days<\/strong><\/a><strong> to identify a ransomware attack<\/strong>, leaving businesses and organizations vulnerable for an extended period.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Ransomware simply refers to malware deployed to encrypt a victim&#8217;s files. Attackers offer the company the decryption key against a hefty payment, usually in cryptocurrency. Thus, they exploit digital vulnerabilities to extort individuals and entities for financial gain.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In fact, since 2018, more than half of the total survey <a href=\"https:\/\/www.statista.com\/statistics\/204457\/businesses-ransomware-attack-rate\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">respondents<\/a> each year have stated that their organizations had been victimized by ransomware.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Moreover, no one is safe from such attacks, not even established governments. <a href=\"http:\/\/statista.com\/statistics\/1246438\/ransomware-attacks-by-country\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Austria was the most affected country<\/a> by ransomware attacks, while <a href=\"http:\/\/cm-alliance.com\/cybersecurity-blog\/5-major-ransomware-attacks-of-2022\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Costa Rica&#8217;s government<\/a> was the victim of the biggest attack in history, as reported by Cyber Management Alliance.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Ransomware-as-a-service (RaaS) is also a growing concern, with 67 active RaaS reported in the first six months of this year alone.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect yourself from ransomware attacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Never use outdated software.<\/li>\n\n\n\n<li>Never click unsafe links.<\/li>\n\n\n\n<li>Never insert a USB that you don\u2019t own.<\/li>\n\n\n\n<li>Use VPNs on public networks.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">DDoS Attacks<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">According to Netscout, there were almost&nbsp;<a href=\"https:\/\/www.netscout.com\/press-releases\/netscout-identified-nearly-79-million-ddos-attacks-1h2023#:~:text=Cybercriminals%20launched%20approximately%207.9%20million,driven%20recent%20DDoS%20attack%20growth.\" target=\"_blank\" rel=\"noopener\">7.9 million<\/a>&nbsp;DDoS attacks, approximately 44,000 attacks per day in the first half of 2023 alone.<\/span><\/li>\n\n\n\n<li>DDoS-Attack-as-a-Service is being advertised on the dark web for <a href=\"https:\/\/www.kaspersky.com\/about\/press-releases\/2023_kaspersky-unveils-an-overview-of-iot-related-threats-in-2023\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$20 per day<\/a> to $10,000 per month.<\/li>\n\n\n\n<li><a href=\"https:\/\/krebsonsecurity.com\/2023\/05\/feds-take-down-13-more-ddos-for-hire-services\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">13 DDoS-for-hire market<\/a><a href=\"https:\/\/krebsonsecurity.com\/2023\/05\/feds-take-down-13-more-ddos-for-hire-services\/\" target=\"_blank\" rel=\"noopener\">places<\/a> were shut down in 2023 by the Federal Bureau of Investigation (FBI).<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">DDoS or Distributed Denial of Service attacks are often mounted as a decoy to distract the owners of the targeted website while the hacker tries to mount a second, more exploitative attack.&nbsp;&nbsp;&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cloudflare has <span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">observed a significant increase in HTTP DDoS attacks, which rose by&nbsp;<a href=\"https:\/\/blog.cloudflare.com\/tag\/ddos-reports\/\" target=\"_blank\" rel=\"noopener\">111%<\/a>&nbsp;year-over-year<\/span>. The gaming and gambling industries were the most targeted by L3\/4 DDoS attacks, highlighting their vulnerability to such attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Moreover, according to G2, every minute of downtime during a DDoS attack costs an average business anywhere from <a href=\"https:\/\/learn.g2.com\/ddos-attack-statistics\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$22,000<\/a> to $1,20,000 for SMEs. Meanwhile, hackers can rent online resources to launch attacks for as little as $5 per hour.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect yourself from DDoS attacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Choose a DDoS mitigation service.<\/li>\n\n\n\n<li>Create a secure network infrastructure.<\/li>\n\n\n\n<li>Monitor your website traffic.<\/li>\n\n\n\n<li>Use Web Application Firewalls (WAF).<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Social Engineering Attacks<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\"><a href=\"https:\/\/www.okta.com\/identity-101\/social-engineering\/#:~:text=Social%20engineering%20is%20a%20type,of%20cyberattacks%20use%20social%20engineering.\" target=\"_blank\" rel=\"noopener\">Approximately 98%<\/a>&nbsp;of cyberattacks involve social engineering tactics, which often employ tricks or manipulation<\/span>.<\/li>\n\n\n\n<li>According to Verizon&#8217;s 2023 Report, <a href=\"https:\/\/www.verizon.com\/business\/resources\/reports\/dbir\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">10% of security incidents<\/a> and 17% of data breaches were caused by social engineering.<\/li>\n\n\n\n<li>The average organization is targeted by more than <a href=\"https:\/\/www.zdnet.com\/article\/average-organization-targeted-by-over-700-social-engineering-attacks-each-year-report\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">700 social engineering attacks<\/a> annually.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">In layman\u2019s terms, social engineering refers to the various techniques of manipulation, influence, or deceit an attacker uses to gain unauthorized access to systems, data, and information. Phishing is the most popular social engineering attack.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.cshub.com\/attacks\/news\/social-engineering-most-dangerous-threat-say-75-of-security-professionals\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">75% of security professionals<\/a> consider social engineering the &#8220;most dangerous&#8221; threat. These concerns are not unfounded, as evidenced by the 2,773 social engineering incidents reported in the recent Verizon study.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The severity of the threat is further highlighted by a high-profile case in which a hacker employed a social engineering attack to gain access to Twilio&#8217;s internal systems and the data of 125 customers.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect yourself from social engineering attacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Use a secure Web Application Firewall (WAF).<\/li>\n\n\n\n<li>Enable MFA across all accounts.<\/li>\n\n\n\n<li>Set high-level spam filters.<\/li>\n\n\n\n<li>Conduct a pentest to detect vulnerabilities.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Phishing<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Phishing was the most common form of cybercrime, with approximately <a href=\"https:\/\/www.itgovernance.co.uk\/blog\/51-must-know-phishing-statistics-for-2023\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">3.4 billion<\/a> malicious emails sent every day.<\/li>\n\n\n\n<li>BEC-based phishing attacks increased from 1.6 attacks per 1,000 mailboxes in the latter half of 2022 to <a href=\"https:\/\/abnormalsecurity.com\/blog\/bec-vec-attacks-2023\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">2.5 attacks<\/a> over the first half of 2023.<\/li>\n\n\n\n<li>In 2023, IBM reported that phishing cost $4.9 million per attack.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">In simplest terms, phishing refers to the cluster of cybercrime techniques through which attackers deceive individuals into divulging sensitive information by impersonating legitimate entities. Common types include vishing, spear phishing, and smishing.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To put this in perspective, in November 2022 alone, <a href=\"https:\/\/blog.google\/products\/gmail\/holiday-season-scams\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Google blocked over 231 billion spam<\/a> and phishing emails, highlighting the scale of the problem. In fact, according to Security Magazine, <span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">a total of&nbsp;<a href=\"http:\/\/securitymagazine.com\/articles\/98536-over-255m-phishing-attacks-in-2022-so-far\" target=\"_blank\" rel=\"noopener\">255 million<\/a>&nbsp;phishing attacks occurred over the last six months<\/span>.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, Business Email Compromise attacks are the most common type of phishing attack. In this case, attackers compromise or impersonate official email accounts to deceive individuals within a business.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In 2022, a staggering <a href=\"http:\/\/arcticwolf.com\/resources\/blog\/incident-response-insights-from-arctic-wolf-labs-1h-2022\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">34% of all attacks<\/a> were launched as Business Email Compromise (BEC) attacks, according to Arctic Wolf. To make matters worse, a shocking <a href=\"http:\/\/blog.sonicwall.com\/en-us\/2022\/06\/bec-attacks-can-you-stop-the-imposters-in-your-inbox\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">80% of organizations that fell victim to BEC attacks<\/a> didn&#8217;t have a Multi-Factor Authentication (MFA) solution in place.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect yourself from phishing attacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Use a password manager like LastPass.<\/li>\n\n\n\n<li>Don\u2019t open emails that look spammy.<\/li>\n\n\n\n<li>Purchase antivirus software.<\/li>\n\n\n\n<li>Enable Multi-factor Authentication (MFA).<\/li>\n\n\n\n<li>Train your team to identify unsafe emails.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">IoT Attacks<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>A recent survey by <a href=\"https:\/\/techjury.net\/blog\/internet-of-things-statistics\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Tech Jury<\/a> suggests that 127 new IoT devices are connected to the internet every second.<\/li>\n\n\n\n<li>IoT malware attacks increased by 37% globally in 2023, resulting in more than <a href=\"https:\/\/iotac.eu\/iot-malware-attacks-up-by-37-in-the-first-half-of-2023\/#:~:text=In%20the%20first%20six%20months%20of%202023%2C,in%20a%20total%20of%2077.9%20million%20attacks.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">77.9 million<\/a> attacks in the first half itself.&nbsp;<\/li>\n\n\n\n<li>According to <a href=\"https:\/\/www.marketwatch.com\/press-release\/2023-internet-of-things-iot-security-market-pestle-analysis-and-future-growth-by-2030-2023-06-19\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Market Watch<\/a>, the IOT security market is expected to grow to 13.36 billion by 2028.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">With more than <a href=\"https:\/\/www.statista.com\/statistics\/1183457\/iot-connected-devices-worldwide\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">15 billion IoT devices<\/a> and operational technology units present in the world, IoT security has emerged as an alarming issue in the past couple of years.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the first six months of 2022 alone, a staggering <a href=\"http:\/\/speartip.com\/resources\/5-major-cybersecurity-threats-msps-are-facing-going-into-2023\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">1.51 billion IoT breaches<\/a> were reported, highlighting the scale of the challenge faced by organizations. Compounding the issue, 51% of IT teams are unaware of the types of devices connected to their networks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This indicates a lack of visibility and control over potential vulnerabilities. Moreover, the shortage of skilled personnel worsens data security concerns for most IoT companies.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect yourself from IoT attacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Update firmware and stay up-to-date.<\/li>\n\n\n\n<li>Use Multi-Factor Authentication (MFA).<\/li>\n\n\n\n<li>Encrypt your devices properly.<\/li>\n\n\n\n<li>Connect IoT devices using secure Wi-Fi.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"What_are_the_most_common_IoT_targets\"><\/span>What are the most common IoT targets?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">As discussed earlier, the IoT network is made up of interconnected physical objects that communicate and share data with other devices and systems through the Internet. Common vulnerabilities include website security, mobile security, APIs, and cloud security, as discussed below:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1792\" height=\"1344\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/3.png\" alt=\"CVE's Discovered as percentages\" class=\"wp-image-30337\" srcset=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/3.png 1792w, \/cdn-cgi\/image\/width=1536,height=1152,fit=crop,quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/3.png 1536w\" sizes=\"auto, (max-width: 1792px) 100vw, 1792px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">Website Security<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Web application attacks contribute to <a href=\"https:\/\/www.verizon.com\/business\/en-gb\/resources\/reports\/dbir\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">26% of breaches<\/a>, ranking as the second most prevalent attack pattern.<\/li>\n\n\n\n<li>On average, a website experiences 94 attacks daily and is visited by bots approximately 2,608 times a week.<\/li>\n\n\n\n<li>Moreover, <a href=\"https:\/\/www.ptsecurity.com\/ww-en\/analytics\/web-vulnerabilities-2020-2021\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">17% of all cyber attacks<\/a> target vulnerabilities in <a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/web-application-penetration-testing\/\" target=\"_blank\" rel=\"noreferrer noopener\">web applications<\/a>.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The biggest danger with web app attacks is that attackers can not only gain unauthorized access and control to your data but also weaponize the same to promote cyber attacks in your name.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In fact, the situation has deteriorated such that <a href=\"http:\/\/s3.us-east-1.amazonaws.com\/sectigo-sites-web\/global\/uploads\/2022-SiteLock-Website-Security-Report-FINAL.pdf\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">4.1 million<\/a> websites contain malware at any given time. E-commerce websites are particularly vulnerable, with <a href=\"https:\/\/www.prnewswire.com\/news-releases\/gm-sectec-cyber-threats-vectors--ecommerce-into-2023-301684385.html\" target=\"_blank\" rel=\"noopener\">75%<\/a> of fraud and data theft involving them, as reported by GM Security.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Most of these vulnerabilities leverage WordPress plugins, with <a href=\"https:\/\/www.hostinger.com\/blog\/wordpress-security-in-2022\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">97%<\/a> of security breaches exploiting them. Despite this, 22% of WordPress administrators spend less than an hour per month on security.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To put this into perspective, in a recent high-profile incident, over 280,000 WordPress sites were attacked using the WP Gateway plugin&#8217;s zero-day vulnerability, according to <a href=\"http:\/\/thehackernews.com\/2022\/09\/over-280000-wordpress-sites-attacked.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">The Hacker News<\/a>.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your website from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Use a strong firewall and intrusion detection to monitor and filter traffic.<\/li>\n\n\n\n<li>Keep all website software up-to-date for security patches.<\/li>\n\n\n\n<li>Implement SSL encryption for secure data transmission.<\/li>\n\n\n\n<li>Run regular website <a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/vulnerability-scanning\/\" target=\"_blank\" rel=\"noreferrer noopener\">vulnerability scans<\/a> and conduct <a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/penetration-testing\/\">pentests<\/a>.<\/li>\n\n\n\n<li>Leverage MFA &amp; password managers.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Mobile Application Security<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/www.zimperium.com\/global-mobile-threat-report\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">80% of phishing attacks<\/a> targeted or functioned on mobile devices.&nbsp;<\/li>\n\n\n\n<li><a href=\"https:\/\/cybersecurity.asee.co\/blog\/mobile-app-statistics-to-keep-an-eye-on\/#:~:text=What%20is%20mobile%20app%20security?%20%C2%B7%2082%,25%20vulnerabilities%20in%20the%20Android%20operating%20system.\" target=\"_blank\" rel=\"noopener\">82%<\/a> of Android devices were vulnerable to at least one of 25 vulnerabilities in the Android operating system.<\/li>\n\n\n\n<li>The global mobile security market is expected to reach <a href=\"https:\/\/www.skyquestt.com\/report\/mobile-security-market#:~:text=Mobile%20Security%20Market%20is%20estimated%20to%20account,of%20value%20by%20the%20end%20of%202028.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$14.82 billion<\/a> by 2028.&nbsp;<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The increasing dependence and adoption of smartphones have triggered a wave of concern. This is especially concerning since <a href=\"https:\/\/www.zimperium.com\/global-mobile-threat-report\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">75% of phishing sites<\/a> are specifically designed for mobile devices, according to Zimperium.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Moreover, smartphone users are 6-10 times more susceptible to SMS phishing than email attacks. Although mobile app stores are taking measures to combat this, the losses are still mounting.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.zdnet.com\/article\/android-security-we-stopped-billions-of-harmful-app-downloads-says-google\/\" target=\"_blank\" rel=\"noopener\">Google<\/a> and Apple have collectively blocked 1.2 million suspicious applications, while Apple has intervened and blocked fraudulent transactions in the ballpark of <a href=\"https:\/\/www.apple.com\/newsroom\/2023\/05\/app-store-stopped-more-than-2-billion-in-fraudulent-transactions-in-2022\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$2 million<\/a>. Nonetheless, all the blame doesn\u2019t lie with providers.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">User behavior also plays a role in mobile security breaches, with <a href=\"https:\/\/www.verizon.com\/business\/resources\/articles\/s\/what-is-security-analytics-and-how-can-it-benefit-your-organization\/#:~:text=Over%2044%25%20of%20organizations%20suffering,Verizon%20Mobile%20Security%20Index%20report.&amp;text=As%20the%20attack%20surface%20expands,security%20tools%20and%20endpoints%20collect.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">44% of companies<\/a> that suffered a mobile security breach attributing it to user behavior, according to Verizon.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your mobile app from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Conduct routine security audits to identify and fix vulnerabilities.<\/li>\n\n\n\n<li>Implement strong encryption for data in transit and at rest.<\/li>\n\n\n\n<li>Use robust authentication and authorization mechanisms.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">API Security<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>According to a recent report, <a href=\"https:\/\/salt.security\/api-security-trends#:~:text=API%20security%20problems%20are%20a,by%20authentication%20problems%20at%2040%25.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">94%<\/a> of survey respondents had some security issues with their production APIs over the past year.<\/li>\n\n\n\n<li>The number of unique API attacks has increased by <a href=\"https:\/\/www.wallarm.com\/resources\/q2-2023-api-threatstats-tm-report#:~:text=The%20total%20number%20of%20unique,attacks%20have%20also%20escalated%20dramatically.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">60%<\/a> year over year from 2022 to 2023.<\/li>\n\n\n\n<li>Despite the above, only <a href=\"https:\/\/voyager.postman.com\/pdf\/2023-state-of-the-api-report-postman.pdf\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">53% of <\/a><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\"><a href=\"https:\/\/voyager.postman.com\/pdf\/2023-state-of-the-api-report-postman.pdf\" target=\"_blank\" rel=\"noopener\">respondents<\/a>&nbsp;listed<\/span> security as their top priority.&nbsp;<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">APIs account for 91% of all <a href=\"https:\/\/supercoconutclub.com\/mobile-web-traffic\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">web traffic<\/a>, making them a prime target for attackers. Malicious API traffic increased by <a href=\"https:\/\/salt.security\/press-releases\/salt-security-state-of-api-security-report-reveals-api-attacks-increased-681-in-the-last-12-months\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">681% in 2022<\/a>, according to Salt Labs, and <strong>t<\/strong>here has been a 286% increase in API threats quarter over quarter.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to a report by VentureBeat, <a href=\"https:\/\/venturebeat.com\/security\/apis-are-everywhere-but-api-security-is-lacking\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">41% of organizations<\/a> experienced an API security incident in the last 12 months, with 63% of those incidents resulting in a data breach or loss.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Despite rising threats, numerous organizations lack adequate API security measures. The above report by Salt Labs also reveals that 34% lack an API security strategy, with 62% slowing new application rollout due to security concerns.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your API &amp; endpoints from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Ensure that only authorized users have access to your API and limit their privileges.&nbsp;<\/li>\n\n\n\n<li>Validate all user input to prevent injection attacks.<\/li>\n\n\n\n<li>Implement rate limiting to prevent malicious actors from overwhelming your API with requests and causing denial of service (DoS) attacks.<\/li>\n\n\n\n<li>Encrypt all sensitive data transmitted between clients and servers.<\/li>\n\n\n\n<li>Continuously test and monitor your API for vulnerabilities.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Cloud Security<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/www.techcircle.in\/2022\/08\/19\/52-of-malware-can-use-usb-drives-to-bypass-network-security-report\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">52% of malware<\/a> can use USB drives to bypass network security<\/li>\n\n\n\n<li>According to IBM\u2019s Data Breach report, more than <a href=\"https:\/\/www.ibm.com\/reports\/data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">45% of data breaches<\/a> are cloud-based.&nbsp;<\/li>\n\n\n\n<li>As such, the cloud security market is expected to grow from $40.7 billion in 2023 to <a href=\"https:\/\/www.marketsandmarkets.com\/Market-Reports\/cloud-security-market-100018098.html?utm_source=prnewswire&amp;utm_medium=referral&amp;utm_campaign=paidpr\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$62.9 billion<\/a> by 2028.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Thales Group reports that <a href=\"https:\/\/www.thalesgroup.com\/fr\/monde\/securite\/press_release\/cloud-data-breaches-and-cloud-complexity-rise-reveals-thales\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">66% of organizations<\/a> store 21%-60% of their sensitive data in the cloud. As such, with rising adoption, security concerns have also become prevalent.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In fact, the same report reveals that 51% of IT professionals perceive that managing privacy and security has become more complex. Protecting data in multi-cloud environments is even more challenging, with<a href=\"https:\/\/www.checkpoint.com\/cyber-hub\/cloud-security\/what-is-cloud-security\/the-biggest-cloud-security-challenges-in-2022\/#:~:text=Data%20Protection%20and%20Privacy%3A%2057,consistent%20protection%20difficult%20to%20achieve.\" target=\"_blank\" rel=\"noopener\"> 57% of organizations<\/a> struggling to do so, according to Checkpoint.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to the IBM report, cloud misconfigurations account for <a href=\"https:\/\/www.ibm.com\/reports\/data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">15% of initial attack vectors<\/a> in security breaches. Meanwhile, 51% of organizations cite phishing as their primary concern in cloud security.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Lastly, with compliance, 56% of organizations struggle to find and hire skilled cloud security professionals, making cloud security seem like an improbable goal.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your cloud infrastructure from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Restrict access based on the principle of least privilege.<\/li>\n\n\n\n<li>Prioritize container security practices.<\/li>\n\n\n\n<li>Implement regular data backups and a solid disaster recovery plan.<\/li>\n\n\n\n<li>Train employees on security best practices.<\/li>\n\n\n\n<li><a href=\"https:\/\/www.getastra.com\/blog\/cloud\/cloud-penetration-testing\/\">Conduct regular cloud pentests<\/a> to identify misconfigurations.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Which_are_the_most_commonly_targeted_Industries\"><\/span>Which are the most commonly targeted Industries?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1792\" height=\"1344\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/2.png\" alt=\"Top 5 Industries by Cybercrime Intensity\" class=\"wp-image-30338\" srcset=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/2.png 1792w, \/cdn-cgi\/image\/width=1536,height=1152,fit=crop,quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/2.png 1536w\" sizes=\"auto, (max-width: 1792px) 100vw, 1792px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">Manufacturing<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Ransomware struck <a href=\"https:\/\/news.sophos.com\/en-us\/2023\/06\/21\/the-state-of-ransomware-in-manufacturing-and-production-2023\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">56% of manufacturing<\/a> companies surveyed between January and March 2023.<\/li>\n\n\n\n<li><a href=\"https:\/\/www.manufacturing.net\/iot\/blog\/22444974\/the-top-8-cyber-threats-facing-manufacturers#:~:text=Phishing%20remains%20one%20of%20the,needed%20to%20complete%20the%20attack.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">85%<\/a> of all attacks were weaponized phishing in 2023.<\/li>\n\n\n\n<li>According to Gartner, 63% of respondents reported that their organization has experienced a supply chain attack in the past year<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Accounting for nearly 25% of all cyberattacks, the increasing adoption of robotics, IoT (Internet of Things) technology, and automation by the manufacturing industry has painted a bullseye for cybercriminals.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Out of the victims of ransomware, more than <a href=\"https:\/\/news.sophos.com\/en-us\/2023\/06\/21\/the-state-of-ransomware-in-manufacturing-and-production-2023\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">one-third of manufacturers<\/a> paid the ransom in an attempt to get their data back. However, only 1 in 4 companies were able to thwart the attacks before their data was fully encrypted.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Moreover, the adoption of AIML not only in storage but also in the operations of digital assets on a daily basis has increased the attack surface even more.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your manufacturing firm from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Implement access controls and limit privileges for employees.<\/li>\n\n\n\n<li>Employ intrusion detection and prevention systems.<\/li>\n\n\n\n<li>Regularly update and patch industrial control systems to address vulnerabilities.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Finance &amp; Insurance<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\"><a href=\"https:\/\/socradar.io\/finance-threat-landscape-report-17-5m-credit-card-numbers-sold-on-blackmarket\/\" target=\"_blank\" rel=\"noopener\">17.5 million&nbsp;<\/a>credit card numbers were sold on the black market.<\/span><\/li>\n\n\n\n<li>Hackers registered over <a href=\"https:\/\/terranovasecurity.com\/blog\/imposter-domains-phishing-attack\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">42,000 imposter domains<\/a> to execute a large-scale phishing attack in 2023.<\/li>\n\n\n\n<li>In Q1 2023, phishing attacks disproportionately targeted the finance sector, constituting a substantial <a href=\"https:\/\/www.beacondigitalmarketing.com\/blog\/cyber-security-statistics-2023#:~:text=In%20the%20first%20quarter%20of,the%20magnitude%20of%20this%20threat.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">23.6%<\/a> of total cyber incidents.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">With a rise in politically motivated attacks, the financial sector has become a favored target. Losses incurred by financial organizations amounted to approximately $5.9 million per incident in 2023.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to Security Boulevard, <a href=\"http:\/\/securityboulevard.com\/2022\/07\/authentication-security-in-the-finance-industry-2022-report-hypr\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">80% of the organizations<\/a> encountered at least one breach related to weak authentication.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><span style=\"box-sizing: border-box; margin: 0px; padding: 0px;\">The impacts of these cyberattacks are massive, as evident from the Transit Finance incident, where&nbsp;<a href=\"https:\/\/www.bankinfosecurity.com\/hacker-steals-29m-from-transit-finance-returns-19m-a-20196\" target=\"_blank\" rel=\"noopener\">$29 million<\/a>&nbsp;was stolen by a hacker.<\/span> Additionally, <a href=\"https:\/\/www.afponline.org\/publications-data-tools\/reports\/survey-research-economic-data\/Details\/payments-fraud\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">71 percent of organizations<\/a> were victims of payment fraud attacks or attempts.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your financial firm from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Strengthen cybersecurity with encryption and regular updates.<\/li>\n\n\n\n<li>Develop an agile incident response plan.<\/li>\n\n\n\n<li>Leverage advanced threat detection for real-time monitoring.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Consumer Businesses<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>In retail, the average cost of a data breach in 2022 was <a href=\"https:\/\/www.onlinedasher.com\/retail-cybersecurity-statistics\/#:~:text=Retail%20Cybersecurity%20Statistics:%20The%20Key,in%202022%20was%20$3.28%20million.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$3.28 million<\/a>.<\/li>\n\n\n\n<li>50% of retail cyberattack victims were extorted, and 25% had their credentials harvested.<\/li>\n\n\n\n<li>More than <a href=\"https:\/\/www.securitymagazine.com\/articles\/87393-almost-20-of-consumers-would-avoid-a-retailer-after-a-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">20% of customers<\/a> stop purchasing from companies that have been hacked.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Living in a post-pandemic world with remote operational models, the digitization trend has become a necessity for E-commerce businesses. <a href=\"https:\/\/www.watchguard.com\/wgrd-news\/blog\/68-corporate-endpoints-are-hit-data-breach-attacks\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">68% of companies<\/a> experienced a targeted attack on their networks and suffered data loss as a direct result.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.alfahive.com\/blogs\/cyber-security-in-consumer-packaged-goods-industry#:~:text=63%25%20of%20data%20breaches%20come,company&#039;s%20customer%20and%20vendor%20network.&amp;text=Cyber%20crimes%20are%20predicted%20to%20cost%20the%20global%20economy%20%24445%20billion%20annually.\" target=\"_blank\" rel=\"noopener\">63%<\/a> of such data breaches come from exploiting internal weak points in a company&#8217;s customer and vendor network. Moreover, according to a recent research by BDO, <a href=\"https:\/\/www.threatintelligence.com\/blog\/retail-cybersecurity#:~:text=34%25%20of%20retailers%20said%20cybersecurity,most%20serious%20digital%20threat%20(BDO)\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">34% of retailers<\/a> said that cyber attacks or privacy breaches were their most serious digital threat&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">As such, in 2023, E-commerce fraud cost the retail sector more than <a href=\"https:\/\/www.juniperresearch.com\/press\/ecommerce-losses-online-payment-fraud-48bn\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$48 billion<\/a> globally.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your consumer business from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Use secure and compliant payment processing solutions.<\/li>\n\n\n\n<li>Regularly analyze network activity for anomalies and potential security threats.<\/li>\n\n\n\n<li>Develop and test a clear incident response plan to efficiently handle breaches.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Education<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>In 2023, over <a href=\"https:\/\/economictimes.indiatimes.com\/tech\/technology\/education-sector-emerges-as-most-targetted-sector-for-cyber-attacks-in-april-june-study\/articleshow\/104889132.cms?from=mdr#:~:text=The%20education%20sector%20has%20emerged,2023%2C%20according%20to%20a%20study.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">700,000 threats<\/a> were detected between April and June alone.<\/li>\n\n\n\n<li>In 2023, the <a href=\"https:\/\/www.sophos.com\/en-us\/whitepaper\/state-of-ransomware-in-education\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">rate of ransomware attacks<\/a> in the education sector was more than double at 44% of the rate reported in 2021.<\/li>\n\n\n\n<li>The average cost of data recovery dropped from $1.42 million in 2022 to about $1 million in 2023.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">The education sector, with its extensive sensitive data and limited cybersecurity resources, has been an appealing target for cybercriminals for the past few years. With an average of almost <a href=\"http:\/\/blog.checkpoint.com\/2022\/08\/09\/check-point-research-education-sector-experiencing-more-than-double-monthly-attacks-compared-to-other-industries\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">2,000 attacks per organization<\/a> reported weekly in 2022, the education industry has had it rough.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To put the above in perspective, of the above attacks, <a href=\"https:\/\/www.sophos.com\/en-us\/whitepaper\/state-of-ransomware-in-education\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">36%<\/a> were attributed to compromised credentials and 29% to exploited vulnerabilities, all of which could have been prevented by simple MFA.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to IBM, the average cost of a data breach in the higher education and training sector was <a href=\"https:\/\/www.ibm.com\/reports\/data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$3.7 million<\/a> in 2023, down from $3.9 million in 2022.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your educational organization from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Strengthen cybersecurity with regular audits and updates.<\/li>\n\n\n\n<li>Establish robust backup systems for quick recovery.<\/li>\n\n\n\n<li>Utilize endpoint protection for device security.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Healthcare<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">Key Takeaways<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>According to<a href=\"https:\/\/ocrportal.hhs.gov\/ocr\/breach\/breach_report.jsf\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"> the U.S. government\u2019s OCR<\/a>, healthcare firms reported 145 data breaches in the first quarter of 2023 alone.<\/li>\n\n\n\n<li>Phishing attacks were used in<a href=\"https:\/\/www.hhs.gov\/sites\/default\/files\/the-impact-of-social-engineering-on-healthcare.pdf\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"> 45% of all healthcare data breaches<\/a> in 2023.<\/li>\n\n\n\n<li>Ransomware attacks, in particular, have been a major threat to <a href=\"http:\/\/guidepointsecurity.com\/resources\/grit-ransomware-report-july-sept_2022\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">healthcare organizations<\/a>, with<a href=\"http:\/\/guidepointsecurity.com\/resources\/grit-ransomware-report-july-sept_2022\/\" target=\"_blank\" rel=\"noopener\"> <\/a>707 attacks in 2023.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Compared to the previous year, the number of cybersecurity breaches has increased; however, the loss from each incident has risen significantly.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Simply put, the number of individuals affected by such breaches jumped from 31 million in the second half of 2022 to a new record of 40 million in 2023. Furthermore, third-party data breaches have also had severe consequences.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">More than 119 pediatric practices and <a href=\"http:\/\/healthitsecurity.com\/news\/third-party-data-breach-impacts-119-pediatric-practices-2.2m-patients\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">2.2 million patients<\/a> were impacted by a single incident. Furthermore, <a href=\"http:\/\/healthitsecurity.com\/news\/newyork-presbyterian-hospital-notifies-12k-of-healthcare-data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">New York-Presbyterian (NYP)<\/a> Hospital reported a data breach that affected approximately 12,000 people in September 2022.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Similarly, Aveanna Healthcare was hit with several phishing-related data breaches, for which they agreed to pay <a href=\"http:\/\/healthitsecurity.com\/news\/home-health-provider-reaches-425k-settlement-after-healthcare-data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">$425,000 in settlements<\/a>.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>How can you protect your healthcare business from cyberattacks?<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Restrict access to sensitive data through stringent user authentication and authorization measures.<\/li>\n\n\n\n<li>Keep healthcare systems and software up to date.<\/li>\n\n\n\n<li>Educate healthcare personnel on recognizing and mitigating cyber threats.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Final_Thoughts\"><\/span>Final Thoughts<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">With the cybersecurity landscape changing ever so constantly, knowing the figures and facts related to it, and its risks like phishing, ransomware, and other scams can give a deep insight.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The proactive adoption of preventive measures, awareness of emerging trends, and industry-specific safeguards are crucial for robust cybersecurity defenses in 2026.\u00a0<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">With this extensive compilation of 160 cybersecurity statistics for 2026 we aim to provide valuable insights into emerging trends, attack vectors, and the industries most targeted. Stay informed, stay secure.<\/p>\n\n\n\n<div class=\"wp-block-group\"><div class=\"wp-block-group__inner-container is-layout-constrained wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-8f761849 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-security-statistics\/\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/cyber-security-statistics.jpg\" alt=\"cyber security statistics\" class=\"wp-image-24299\"\/><\/a><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-crime-statistics\/\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/cybercrime-statistics.jpg\" alt=\"cybercrime statistics\" class=\"wp-image-24300\"\/><\/a><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/data-breach-statistics\/\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/data-breach-statistics.jpg\" alt=\"data breach statistics\" class=\"wp-image-24301\"\/><\/a><\/figure>\n<\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-8f761849 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/healthcare-data-breach-statistics\/\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/healthcare-data-breaches-statistics.jpg\" alt=\"healthcare data breaches statistics\" class=\"wp-image-24302\"\/><\/a><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/phishing-attack-statistics\/\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/phishing-statistics.jpg\" alt=\"phishing statistics\" class=\"wp-image-24303\"\/><\/a><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/ransomware-attack-statistics\/\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/ransomware-attack-statistics.jpg\" alt=\"ransomware attack statistics\" class=\"wp-image-24304\"\/><\/a><\/figure>\n<\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-8f761849 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/small-business-cyber-attack-statistics\/\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/Small-business-cyber-security-statistics.jpg\" alt=\"Small business cyber security statistics\" class=\"wp-image-24305\"\/><\/a><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/third-party-data-breach-statistics\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/3rd-party-data-breaches.jpg\" alt=\"3rd party data breaches\" class=\"wp-image-24297\"\/><\/a><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-insurance-claims-statistics\/\"><img loading=\"lazy\" decoding=\"async\" width=\"675\" height=\"675\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2022\/12\/cyber-insurance-claims-statistics.jpg\" alt=\"cyber insurance claims statistics\" class=\"wp-image-24298\"\/><\/a><\/figure>\n<\/div>\n<\/div>\n<\/div><\/div>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"FAQs\"><\/span>FAQs<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<div id=\"rank-math-faq\" class=\"rank-math-block\">\n<div class=\"rank-math-list \">\n<div id=\"faq-question-1680629820550\" class=\"rank-math-list-item\">\n<h3 class=\"rank-math-question \">How many cyber attacks happen per year?<\/h3>\n<div class=\"rank-math-answer \">\n\n<p>It is estimated that 2023 will face around 33 billion account breaches. Cyber attacks 8,00,000 have been recorded in total, and on average, there is a hacker attack every 39 seconds.<\/p>\n\n<\/div>\n<\/div>\n<div id=\"faq-question-1680629880508\" class=\"rank-math-list-item\">\n<h3 class=\"rank-math-question \">Cyber attacks on banks statistics?<\/h3>\n<div class=\"rank-math-answer \">\n\n<p>20 million banking cyberattacks have been found and blocked according to Kaspersky. 79% of IT professionals believe the banking sector is a soft target for darknet operators.<\/p>\n\n<\/div>\n<\/div>\n<div id=\"faq-question-1680629905220\" class=\"rank-math-list-item\">\n<h3 class=\"rank-math-question \">How many cyber attacks happen per day?<\/h3>\n<div class=\"rank-math-answer \">\n\n<p>Around 2328 cyber crimes are thought to occur each day. Over the last 21 years from 2001 to 2021, cyber crime has claimed at least 6.5 million victims with an estimated loss of nearly $26 billion over the same period.<\/p>\n\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n<style>\n.cluster-pattern-wrap {<br \/>\n    padding: 40px;<br \/>\n    background-color: #E8EAF0;<br \/>\n    border-radius: 16px;<br \/>\n}<\/p>\n<p>.cluster-pattern-heading {<br \/>\n    font-size: 24px;<br \/>\n    font-weight: 600;<br \/>\n    color: #002770;<br \/>\n    line-height: 32px;<br \/>\n    margin: 0px;<br \/>\n}<\/p>\n<p>.cluster-pattern-para {<br \/>\n    font-size: 16px;<br \/>\n    font-weight: 400;<br \/>\n}<\/p>\n<p>.cluster-pattern-ul {<br \/>\n    list-style: none;<br \/>\n    padding: 10px;<br \/>\n    margin: 0px;<br \/>\n}<\/p>\n<p>.cluster-pattern-li {<br \/>\n    font-size: 14px;<br \/>\n    margin-bottom: 5px;<br \/>\n}<\/p>\n<p>.cluster-pattern-a {<br \/>\n    color: #0c76fc;<br \/>\n    font-size: 16px;<br \/>\n}<\/p>\n<p>@media(max-width: 576px){<br \/>\n  .cluster-pattern-file{<br \/>\n    display: none;<br \/>\n  }<br \/>\n}<br \/>\n<\/style>\n<div class=\"cluster-pattern-wrap\">\n<div style=\"display: flex; align-items: start; grid-gap: 2rem;\">\n<div>\n<p class=\"cluster-pattern-heading\">Explore Our Cybersecurity Series<\/p>\n<p class=\"cluster-pattern-para\">This post is <b>part of a series on Cybersecurity.<\/b> You can\nalso check out other articles below.<\/p>\n\n<\/div>\n<img decoding=\"async\" class=\"cluster-pattern-file\" src=\"\/cdn-cgi\/image\/quality=80,format=auto,onerror=redirect,metadata=none\/https:\/\/cdn-blog.getastra.com\/2024\/09\/64e35ab3-file.png\" width=\"84px\" height=\"96px\" \/>\n\n<\/div>\n<ul class=\"cluster-pattern-ul\">\n \t<li class=\"cluster-pattern-li\">Chapter 1: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-security-statistics\/\">160 Cybersecurity Statistics 2026 [Updated]<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 2: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cybersecurity-trends\/\">Top Cybersecurity Trends Shaping 2026<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 3: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cybersecurity-audit\/\">How Cybersecurity Audits Can Help Organizations Being Secure?<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 4: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/knowledge-base\/steps-to-take-after-a-cybersecurity-breach\/\">How to Respond to a Cybersecurity Breach?<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 5: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-security-tips\/\">6 Practical Cyber Security Tips for Startups on a Budget<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 6: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-security-audit-companies\/\">Top 10 Cyber Security Audit Companies<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 7: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-security-assessment-companies\/\">Top 9 Cyber Security Assessment Companies\n<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 8: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-security-report\/\">What Is a Cyber Security Report?<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 9: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/ai-security\/ai-in-cybersecurity\/\">AI in Cybersecurity: Benefits and Challenges<\/a><\/li>\n \t<li class=\"cluster-pattern-li\">Chapter 10: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/building-a-cyber-security-culture\/\">How to Build a Cyber Security Culture?<\/a><\/li>\n \t<li>Chapter 11: <a class=\"cluster-pattern-a\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/what-is-ctem\/\">What is CTEM (Continuous Threat Exposure Management)?<\/a><\/li>\n<\/ul>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>Cybersecurity statistics indicate that there are 2,200 cyber attacks per day, with a cyber attack happening every 39 seconds on average. In the US, a data breach costs an average of $9.44M, and cybercrime is predicted to cost $8 trillion by 2023. The cybersecurity landscape is continuously evolving. And now with COVID-19, remote work, and &#8230; <a title=\"160 Cybersecurity Statistics 2026 [Updated]\" class=\"read-more\" href=\"https:\/\/www.getastra.com\/blog\/security-audit\/cyber-security-statistics\/\" aria-label=\"Read more about 160 Cybersecurity Statistics 2026 [Updated]\">Read more<\/a><\/p>\n","protected":false},"author":111,"featured_media":24004,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[340,695],"tags":[785],"class_list":["post-23990","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security-audit","category-statistics","tag-summarize"],"_links":{"self":[{"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/posts\/23990","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/users\/111"}],"replies":[{"embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/comments?post=23990"}],"version-history":[{"count":20,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/posts\/23990\/revisions"}],"predecessor-version":[{"id":44503,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/posts\/23990\/revisions\/44503"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/media\/24004"}],"wp:attachment":[{"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/media?parent=23990"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/categories?post=23990"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.getastra.com\/blog\/wp-json\/wp\/v2\/tags?post=23990"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}