RansomwareClock.org
Reported Cost of Ransomware Attacks 2025 YTD
$
Aggregated Estimate from Public and Private Sources, Reflects Reported Attacks Only. Actual cost estimated to be significantly higher.
Cyber Stats
$1.85m
93%
11 seconds
207 days
days is the average time to identify a breach. Meaning the bad guys are in your system for over 6-months. IBM Security Cost of a Data Breach Report 2020.
Only 21%
21 days
Spotlight
RECENT ATTACKS & NEWS
August 20, 2026
Hackers Target Zimbra Servers in Active Exploitation Campaign
Read More
August 20, 2026
Surveillance – Everything You Wanted to Know, But Were Afraid to Ask
Read More
August 20, 2026
Threat Actor Hacks 14,000 IP Cameras in Ukraine and Russia
Read More
August 20, 2026
Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities
Read More
August 20, 2026
MLflow Vulnerability Exploited for Cloud Credential Theft
Read More
August 20, 2026
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
Read More
August 20, 2026
AI-Assisted Tool Helped Secure Satellite Communication System After 2022 Russian Hacking
Read More
August 20, 2026
OpenAI Overhauls Model Security With Sandboxing, 30-Minute Alerts, and Training Pauses
Read More
August 20, 2026
Exploitation Expected for Critical Authentication Bypass Patched in Citrix NetScaler
Read More
August 20, 2026
Critical GitLab Flaw Exploited Shortly After Disclosure
Read More
PREVENTATIVE RESOURCES
Governmental and Law Enforcement
Legal Matters
Insurance Resources
In Case of Cyber Attack Emergency
If a ransomware incident occurs at your organization, CISA, FBI, and NSA recommend the following actions:
- Follow the Ransomware Response Checklist on p. 11 of the CISA-Multi-State Information Sharing and Analysis Center (MS-ISAC) Joint Ransomware Guide
- Scan your backups. If possible, scan your backup data with an antivirus program to check that it is free of malware.
- Report incidents immediately to CISA at https://us-cert.cisa.gov/report, a local FBI Field Office, or U.S. Secret Service Field Office
- Apply incident response best practices found in the joint advisory from Australia, Canada, New Zealand, the United Kingdom, and the United States on Technical Approaches to Uncovering and Remediating Malicious Activity.
Contact your Local FBI Office - https://www.fbi.gov/contact-us/field-offices
Report a Complaint to the FBI’s Internet Criminal Complaint Center: www.IC3.gov
Technical Expertise/Crisis Communications