Key Takeaways
- In 2023, 61% of small businesses reported experiencing at least one cybersecurity incident, including data breaches, according to a survey of 1,200 SMBs
- 43% of all data breaches in 2022 targeted organizations with fewer than 1,000 employees, primarily small businesses
- Small businesses accounted for 28% of all reported data breaches in the US during 2023, up from 22% in 2021
- The average cost of a data breach for small businesses was $25,000 in direct expenses in 2023
- Small businesses lost an average of $4.45 million in total breach costs including lost business in 2023
- Notification costs alone averaged $18,000 per breach for SMBs under GDPR in 2023
- Phishing accounted for 36% of small business data breaches in 2023
- Stolen credentials caused 24% of SMB data breaches, enabling unauthorized access in 2023
- Ransomware encrypted data in 22% of small business incidents leading to breaches 2023
- 60% of small businesses that suffered a data breach closed within six months afterward
- 51% of breached small businesses lost customers, with an average churn of 25%
- Employee morale dropped 40% post-breach in small firms, leading to 15% turnover increase
- 74% of small businesses took over 200 days to identify a data breach in 2023
- Only 26% of SMBs had an incident response plan tested before a breach in 2023
- Recovery time averaged 280 days for small business data breaches in 2023
Small businesses face frequent and costly data breaches that threaten survival.
Breach Types and Methods
Breach Types and Methods Interpretation
Financial Costs
Financial Costs Interpretation
Impacts on Businesses
Impacts on Businesses Interpretation
Prevalence and Frequency
Prevalence and Frequency Interpretation
Statistics on Response and Recovery
Statistics on Response and Recovery Interpretation
Sources & References
- Reference 1VERIZONverizon.comVisit source
- Reference 2IBMibm.comVisit source
- Reference 3FTCftc.govVisit source
- Reference 4SBAsba.govVisit source
- Reference 5UPGUARDupguard.comVisit source
- Reference 6PONEMONponemon.orgVisit source
- Reference 7HHShhs.govVisit source
- Reference 8MANUFACTURINGmanufacturing.netVisit source
- Reference 9GDPRgdpr.euVisit source
- Reference 10FINRAfinra.orgVisit source
- Reference 11SOPHOSsophos.comVisit source
- Reference 12CSOONLINEcsoonline.comVisit source
- Reference 13OAICoaic.gov.auVisit source
- Reference 14AGCagc.orgVisit source
- Reference 15HAVEIBEENPWNEDhaveibeenpwned.comVisit source
- Reference 16ISACAisaca.orgVisit source
- Reference 17HOTELSMAGhotelsmag.comVisit source
- Reference 18NONPROFITTECHYnonprofittechy.comVisit source
- Reference 19PRIVpriv.gc.caVisit source
- Reference 20SUPPLYCHAINDIVEsupplychaindive.comVisit source
- Reference 21EDTECHMAGAZINEedtechmagazine.comVisit source
- Reference 22NARnar.realtorVisit source
- Reference 23ICOico.org.ukVisit source
- Reference 24AUTONEWSautonews.comVisit source
- Reference 25ACCOUNTINGTODAYaccountingtoday.comVisit source
- Reference 26DARKREADINGdarkreading.comVisit source
- Reference 27ACSCacsc.gov.auVisit source
- Reference 28BIGSCOMMERCEbigscommerce.comVisit source
- Reference 29GSAgsa.govVisit source
- Reference 30FARMJOURNALfarmjournal.comVisit source
- Reference 31RETAILDIVEretaildive.comVisit source
- Reference 32INSURANCEJOURNALinsurancejournal.comVisit source
- Reference 33GARTNERgartner.comVisit source
- Reference 34LAWlaw.comVisit source
- Reference 35CIOcio.comVisit source
- Reference 36UPTIMEINSTITUTEuptimeinstitute.comVisit source
- Reference 37FORBESforbes.comVisit source
- Reference 38CONSUMERREPORTSconsumerreports.orgVisit source
- Reference 39MANDIANTmandiant.comVisit source
- Reference 40KNOWBE4knowbe4.comVisit source
- Reference 41IRSirs.govVisit source
- Reference 42MARKETINGDIVEmarketingdive.comVisit source
- Reference 43SHOPIFYshopify.comVisit source
- Reference 44CLOUDWARDScloudwards.netVisit source
- Reference 45PWCpwc.comVisit source
- Reference 46CHARITYNAVIGATORcharitynavigator.orgVisit source
- Reference 47TECHREPUBLICtechrepublic.comVisit source
- Reference 48CSIScsis.orgVisit source
- Reference 49CLOUDFLAREcloudflare.comVisit source
- Reference 50RETAILCYBERSECURITYretailcybersecurity.comVisit source
- Reference 51PROOFPOINTproofpoint.comVisit source
- Reference 52NRFnrf.comVisit source
- Reference 53WIFINOWGLOBALwifinowglobal.comVisit source
- Reference 54AKAMAIakamai.comVisit source
- Reference 55AMERICANBARamericanbar.orgVisit source
- Reference 56IMPERVAimperva.comVisit source
- Reference 57FBIfbi.govVisit source
- Reference 58ZDNETzdnet.comVisit source
- Reference 59HIMSShimss.orgVisit source
- Reference 60APPSEALINGappsealing.comVisit source
- Reference 61SYSDIGsysdig.comVisit source
- Reference 62MALWAREBYTESmalwarebytes.comVisit source
- Reference 63NATIONALCYBERSECURITYALLIANCEnationalcybersecurityalliance.orgVisit source
- Reference 64SHRMshrm.orgVisit source
- Reference 65INSURANCEBUSINESSMAGinsurancebusinessmag.comVisit source
- Reference 66LAW360law360.comVisit source
- Reference 67MCKINSEYmckinsey.comVisit source
- Reference 68INDEEDindeed.comVisit source
- Reference 69MAINSTREETmainstreet.orgVisit source
- Reference 70DELOITTEdeloitte.comVisit source
- Reference 71BCGbcg.comVisit source
- Reference 72FRANCHISETIMESfranchisetimes.comVisit source
- Reference 73NONPROFITQUARTERLYnonprofitquarterly.orgVisit source
- Reference 74NACDONLINEnacdonline.orgVisit source
- Reference 75HBRhbr.orgVisit source
- Reference 76COBALTcobalt.ioVisit source
- Reference 77FORRESTERforrester.comVisit source
- Reference 78MICROSOFTmicrosoft.comVisit source
- Reference 79CROWDSTRIKEcrowdstrike.comVisit source
- Reference 80NISTnist.govVisit source
- Reference 81MARSHmarsh.comVisit source
- Reference 82******.comVisit source
- Reference 83OKTAokta.comVisit source
- Reference 84BITSIGHTbitsight.comVisit source
- Reference 85SPLUNKsplunk.comVisit source
- Reference 86CORESECURITYcoresecurity.comVisit source
- Reference 87EXPERIANexperian.comVisit source
- Reference 88IC3ic3.govVisit source
- Reference 89BITDEFENDERbitdefender.comVisit source
- Reference 90IVANTIivanti.comVisit source
- Reference 91DILIGENTdiligent.comVisit source
- Reference 92RESILIENTXresilientx.comVisit source
- Reference 93FIREEYEfireeye.comVisit source
- Reference 94VARONISvaronis.comVisit source






