Key Takeaways
- 43% of cyber attacks target small businesses despite them representing only 99.9% of all US firms with fewer than 500 employees
- In 2023, small businesses experienced a 424% increase in ransomware attacks compared to 2022, affecting 66% of SMBs surveyed
- 61% of small and medium-sized businesses reported at least one cyber incident in the past year as of 2024 data
- Phishing comprises 36% of all SMB cyber attacks in 2023 Verizon DBIR update
- Ransomware affected 66% of small businesses via email vectors in 2023 Ponemon study
- DDoS attacks made up 22% of incidents against SMBs in 2023 Cloudflare data
- Average cost of cyber attack to small business is $25,000 per incident in 2023
- Ransomware payments by SMBs averaged $1.54 million globally in 2023 Sophos
- 60% of small businesses suffer $100,000+ losses from BEC scams annually
- 60% of small businesses fail within 6 months of a major cyber attack
- 51% of SMBs experienced operational downtime exceeding 24 hours post-attack 2023
- Loss of customer trust post-breach affects 75% of SMBs long-term
- Only 26% of small businesses have cyber insurance coverage in 2024 surveys
- SMBs with MFA enabled reduced account compromise by 99% per Microsoft 2023
- Regular backups helped 58% SMBs recover without paying ransom 2023 Sophos
Small businesses are increasingly targeted by devastating cyber attacks worldwide.
Attack Frequency and Prevalence
Attack Frequency and Prevalence Interpretation
Business Impacts
Business Impacts Interpretation
Common Attack Types
Common Attack Types Interpretation
Financial Costs
Financial Costs Interpretation
Mitigation and Statistics on Protection
Mitigation and Statistics on Protection Interpretation
Sources & References
- Reference 1VERIZONverizon.comVisit source
- Reference 2PONEMONponemon.orgVisit source
- Reference 3CISAcisa.govVisit source
- Reference 4GOVgov.ukVisit source
- Reference 5NATIONWIDEnationwide.comVisit source
- Reference 6CLOUDFLAREcloudflare.comVisit source
- Reference 7IBMibm.comVisit source
- Reference 8ACSCacsc.gov.auVisit source
- Reference 9BARRACUDAbarracuda.comVisit source
- Reference 10ENISAenisa.europa.euVisit source
- Reference 11RETAILDIVEretaildive.comVisit source
- Reference 12HHShhs.govVisit source
- Reference 13CYBERcyber.gc.caVisit source
- Reference 14AKAMAIakamai.comVisit source
- Reference 15SBAsba.govVisit source
- Reference 16CERT-INcert-in.org.inVisit source
- Reference 17NAMnam.orgVisit source
- Reference 18FIREEYEfireeye.comVisit source
- Reference 19INTERPOLinterpol.intVisit source
- Reference 20SHOPIFYshopify.comVisit source
- Reference 21CHAMBEROFCOMMERCEchamberofcommerce.orgVisit source
- Reference 22ITUitu.intVisit source
- Reference 23LOGISTICSMGMTlogisticsmgmt.comVisit source
- Reference 242600HZ2600hz.comVisit source
- Reference 25EDTECHMAGAZINEedtechmagazine.comVisit source
- Reference 26CERTcert.govt.nzVisit source
- Reference 27NARnar.realtorVisit source
- Reference 28MICROSOFTmicrosoft.comVisit source
- Reference 29AGCagc.orgVisit source
- Reference 30IC3ic3.govVisit source
- Reference 31MALWAREBYTESmalwarebytes.comVisit source
- Reference 32NISTnist.govVisit source
- Reference 33PROOFPOINTproofpoint.comVisit source
- Reference 34IOACTIVEioactive.comVisit source
- Reference 35ACUNETIXacunetix.comVisit source
- Reference 36CROWDSTRIKEcrowdstrike.comVisit source
- Reference 37LOOKOUTlookout.comVisit source
- Reference 38MANDIANTmandiant.comVisit source
- Reference 39AV-TESTav-test.orgVisit source
- Reference 40ZSCALERzscaler.comVisit source
- Reference 41CISCOcisco.comVisit source
- Reference 42SOPHOSsophos.comVisit source
- Reference 43THEHARTFORDthehartford.comVisit source
- Reference 44HBRhbr.orgVisit source
- Reference 45SALESFORCEsalesforce.comVisit source
- Reference 46GARTNERgartner.comVisit source
- Reference 47DARKTRACEdarktrace.comVisit source
- Reference 481PASSWORD1password.comVisit source
- Reference 49ISACisac.orgVisit source
- Reference 50SPLUNKsplunk.comVisit source
- Reference 51QUALYSqualys.comVisit source
- Reference 52KNOWBE4knowbe4.comVisit source
- Reference 53DATTOdatto.comVisit source
- Reference 54COMPUMATICAcompumatica.comVisit source






