RansomwareClock.org
Reported Cost of Ransomware Attacks 2025 YTD
$
Aggregated Estimate from Public and Private Sources, Reflects Reported Attacks Only. Actual cost estimated to be significantly higher.
Cyber Stats
$1.85m
93%
11 seconds
207 days
days is the average time to identify a breach. Meaning the bad guys are in your system for over 6-months. IBM Security Cost of a Data Breach Report 2020.
Only 21%
21 days
Spotlight
RECENT ATTACKS & NEWS
August 10, 2026
New Jersey, Alabama Join States Targeted in Water Cyberattacks
Read More
August 10, 2026
Metabase Patches Vulnerability Exploited as Zero-Day
Read More
August 10, 2026
Novel Private APN Pivot Let Hackers Sabotage Second Polish Energy Facility
Read More
August 10, 2026
CISA Urges Immediate Patching of Exploited Progress LoadMaster Vulnerability
Read More
August 10, 2026
Corporate Data Stolen in Levi Strauss Cyberattack
Read More
August 10, 2026
Critical Flaws Discovered in Belgian eID Software Used by 2 Million People
Read More
August 8, 2026
Critical One-Click Vulnerability in Atlassian’s Rovo AI Exposed Enterprise Data
Read More
August 7, 2026
In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street
Read More
August 7, 2026
Vishing Extortion Group UNC6671 Rebrands After Making Millions
Read More
August 7, 2026
Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix
Read More
PREVENTATIVE RESOURCES
Governmental and Law Enforcement
Legal Matters
Insurance Resources
In Case of Cyber Attack Emergency
If a ransomware incident occurs at your organization, CISA, FBI, and NSA recommend the following actions:
- Follow the Ransomware Response Checklist on p. 11 of the CISA-Multi-State Information Sharing and Analysis Center (MS-ISAC) Joint Ransomware Guide
- Scan your backups. If possible, scan your backup data with an antivirus program to check that it is free of malware.
- Report incidents immediately to CISA at https://us-cert.cisa.gov/report, a local FBI Field Office, or U.S. Secret Service Field Office
- Apply incident response best practices found in the joint advisory from Australia, Canada, New Zealand, the United Kingdom, and the United States on Technical Approaches to Uncovering and Remediating Malicious Activity.
Contact your Local FBI Office - https://www.fbi.gov/contact-us/field-offices
Report a Complaint to the FBI’s Internet Criminal Complaint Center: www.IC3.gov
Technical Expertise/Crisis Communications