• About Us
  • Advertising
  • Digital Magazine
  • Supplements
  • Media Pack
  • Privacy Policy
  • Contact us
CXO Insight Middle East
  • News
  • Opinion
  • Business
    • Industries
      • Transport
      • Retail
      • Government
      • Real Estate
      • Education
      • Energy
      • Banking and Finance
    • Channel
  • Future
    • Tech
    • Gadgets
    • Science
    • Space
    • Sustainability
  • Events
    • Channel Insights Summit 2025
    • Insight Innovation Summit
    • CXO50 Oman
    • CXO50
    • ICT Awards
      • Dubai 2025
      • Saudi Arabia
    • Cyber Strategists Summit
    • Cloud Connect 2025
    • Channel Awards 2024
    • All events
  • Digital Magazine
  • GITEX GLOBAL
No Result
View All Result
CXO Insight Middle East
  • News
  • Opinion
  • Business
    • Industries
      • Transport
      • Retail
      • Government
      • Real Estate
      • Education
      • Energy
      • Banking and Finance
    • Channel
  • Future
    • Tech
    • Gadgets
    • Science
    • Space
    • Sustainability
  • Events
    • Channel Insights Summit 2025
    • Insight Innovation Summit
    • CXO50 Oman
    • CXO50
    • ICT Awards
      • Dubai 2025
      • Saudi Arabia
    • Cyber Strategists Summit
    • Cloud Connect 2025
    • Channel Awards 2024
    • All events
  • Digital Magazine
  • GITEX GLOBAL
No Result
View All Result
CXO Insight Middle East
No Result
View All Result

Retail a top target for ransomware, data-theft extortion attacks: Sophos report

by CXO Staff
August 30, 2021
in News
Retail a top target for ransomware, data-theft extortion attacks: Sophos report

Sophos recently published the “State of Ransomware in Retail,” which looks at the extent and impact of ransomware attacks on mid-sized retail organisations worldwide during 2020.

The results show how retail organisations became a prime target for ransomware during the COVID-19 pandemic when many retailers started trading online for the first time simply in order to survive, while others saw a huge increase in their web traffic and online transactions.

The survey findings reveal that retail organisations were particularly vulnerable to a small but growing new trend: extortion-only attacks, where the ransomware operators don’t encrypt files but threaten to leak stolen information online if a ransom demand isn’t paid. More than one in ten (12%) retail ransomware victims experienced this, nearly double the cross-sector average of 7%. Only central government, at 13% was more affected.

Other top research findings include:

  • Retail, together with education, faced the highest level of ransomware attacks during 2020, with 44% of organisations hit (compared to 37% across all industry sectors)

 

  • The total bill for rectifying a ransomware attack in the retail sector, considering downtime, people time, device cost, network cost, lost opportunity, ransom paid, and more, was US$1.97 million on average – compared to a cross-sector average of US$1.85 million

 

  • Over half (54%) of the retail organisations hit by ransomware said the attackers had succeeded in encrypting their data

 

  • A third (32%) of those whose data was encrypted paid. The average ransom payment was $147,811 (lower than the global average of US$170,404.) However, those who paid recovered on average only two-thirds (67%) of their data, leaving a third inaccessible; and just 9% got all their encrypted data back

“The retail sector has always been an attractive target for cyberattacks, with its complex, distributed IT environments, including a multitude of connected point-of-sale devices, a relatively transient and non-technical workforce, and access to a wide range of personal and financial customer data,” said Chester Wisniewski, principal research scientist at Sophos. “The impact of the pandemic introduced additional security challenges that cybercriminals were quick to exploit.

“The comparatively high percentage of targets hit with data-theft based extortion attacks is not entirely surprising. Service industries such as retail hold information that is often subject to strict data protection laws, and attackers are only too willing to exploit a victim’s fear of fallout from a data breach in terms of fines and damage to brand reputation, sales and customer trust.

“It’s not all bad news for retail IT managers, however. While enabling, managing, and securing IT during the pandemic increased the overall IT workload for three-quarters of retailers – the sector was also the most likely (at 77%) to see a positive return in terms of enhanced cybersecurity skills and knowledge.

“To secure retail IT networks against ransomware and other cyberattacks, we advise IT teams to focus resources on three critical areas: building stronger defenses against cyberthreats, introducing security skills training for users including part-time and temporary staff, and, where possible, investing in more resilient infrastructure.”

The Sophos State of Ransomware in Retail, 2021, survey polled 5,400 IT decision-makers, including 435 retail IT managers, in 30 countries across Europe, the Americas, Asia-Pacific and Central Asia, the Middle East, and Africa.

The full “State of Ransomware in Retail” report is available here.

Tags: featured3ransomwareSophos
ShareTweet

Related Posts

SentinelOne solutions join new AWS Marketplace AI Agents and Tools category
Future

SentinelOne solutions join new AWS Marketplace AI Agents and Tools category

SentinelOne announced the availability of Singularity Cloud Security and Singularity AI SIEM. This includes Purple AI, the industry’s most advanced...

July 25, 2025
UAE’s EDGE, Pavo Group launch new JV in defence technology
Business

UAE’s EDGE, Pavo Group launch new JV in defence technology

EDGE Group and Türkiye’s Pavo Group have announced the establishment of KEY4, a new joint venture focused on critical defence...

July 24, 2025

Discussion about this post

Latest Issue

Beyond vision: Ericsson’s Petra Schirren on an execution-first strategy for the Gulf’s digital future

Beyond vision: Ericsson’s Petra Schirren on an execution-first strategy for the Gulf’s digital future

July 25, 2025
SentinelOne solutions join new AWS Marketplace AI Agents and Tools category

SentinelOne solutions join new AWS Marketplace AI Agents and Tools category

July 25, 2025
UAE’s EDGE, Pavo Group launch new JV in defence technology

UAE’s EDGE, Pavo Group launch new JV in defence technology

July 24, 2025

The most trusted source of strategic intelligence for IT decision makers in the Middle East.

About

  • About Us
  • Advertising
  • Digital Magazine
  • Supplements
  • Media Pack
  • Contact Us

Policies

  • Privacy Policy
© 2025 – CXO Insight Middle East. All Rights Reserved.
Facebook-f X-twitter Linkedin
Separated they live in Bookmarksgrove right at the coast of the Semantics, a large language ocean. A small river named Duden.

About

  • About Us
  • Site Map
  • Contact Us
  • Career

Policies

  • Help Center
  • Privacy Policy
  • Cookie Setting
  • Term Of Use

Join Our Newsletter

© 2024 – CXO Insight Middle East. All Rights Reserved.

Facebook-f Twitter Youtube Instagram

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Join our mailing list
Sign up here to get the latest news, updates and special offers delivered directly to your inbox.
No Result
View All Result
  • News
  • Opinions
  • Business
    • Industries
      • Transport
      • Retail
      • Government
      • Real Estate
      • Education
      • Energy
      • Banking and Finance
  • Channel
  • Future
    • Tech
    • Gadgets
    • Science
    • Space
    • Sustainability
  • Events
    • Channel Insights Summit 2025
    • Insight Innovation Summit
    • CX50 Oman
    • CXO50
    • ICT Awards
      • Dubai
      • Saudi Arabia
    • Cyber Strategists Summit
    • Cloud Connect 2025
    • Channel Awards 2023
    • All events
  • Videos
  • GITEX GLOBAL
  • Digital Magazine

© 2025 - CXO Insight Middle East. All Rights Reserved.