SourceSecurity.com
  • Products
    CCTV
    • CCTV cameras
    • CCTV software
    • IP cameras
    • Digital video recorders (DVRs)
    • Dome cameras
    • Network video recorders (NVRs)
    • IP Dome cameras
    • CCTV camera lenses
    Access Control
    • Access control readers
    • Access control software
    • Access control controllers
    • Access control systems & kits
    • Audio, video or keypad entry
    • Electronic locking devices
    • Access control cards/ tags/ fobs
    • Access control system accessories
    Intruder Alarms
    • Intruder alarm system control panels & accessories
    • Intruder detectors
    • Intruder warning devices
    • Intruder alarm communicators
    • Intruder alarm accessories
    • Intruder alarm lighting systems
    One system, one card
    One system, one card
    Dahua Smart Dual Illumination Active Deterrence Network PTZ Camera

    Dahua Smart Dual Illumination Active Deterrence Network PTZ Camera

    Hikvision DS-K6B630TX: Smart Pro Swing Barrier for Modern Access Control

    Hikvision DS-K6B630TX: Smart Pro Swing Barrier for Modern Access Control

    Climax Mobile Lite: Advanced Personal Emergency Response System (PERS)

    Climax Mobile Lite: Advanced Personal Emergency Response System (PERS)

    Hanwha Vision OnCAFE: Cloud-Based Access Control for Modern Enterprises

    Hanwha Vision OnCAFE: Cloud-Based Access Control for Modern Enterprises

  • Companies
    Companies
    • Manufacturers
    • Distributors
    • Resellers / Dealers / Reps
    • Installers
    • Consultants
    • Systems integrators
    • Events / Training / Services
    • Manned guarding
    Companies by Product area
    • CCTV
    • Access control
    • Intruder alarm
    • IP networking products
    • Biometrics
    • Software
    • Digital video recording
    • Intercom systems
    One system, one card
    One system, one card
  • News
    News
    • Product news
    • Corporate news
    • Case studies
    • Events news
    Latest
    • Suprema BioStation 3 sets global sales record
    • A landmark gathering shaping the future of real estate, investment, sustainability & design
    • IDIS launches new AI PTZ cameras for enhanced security
    • Leuze AI elevates optical sensor precision
    One system, one card
    One system, one card
  • Insights
    Insights
    • Expert commentary
    • Security beat
    • Round table discussions
    • Round Table Expert Panel
    • eMagazines
    • Year in Review 2023
    • Year in Review 2022
    Featured
    • What are emerging applications for physical security in transportation?
    • What is the most overlooked factor when installing security systems?
    • Amid rising certificate demands, stricter compliance and quantum threats, PKIaaS is a necessity
    • How should security adapt to the unique aspects of healthcare?
    One system, one card
    One system, one card
  • Markets
    Markets
    • Airports & Ports
    • Banking & Finance
    • Education
    • Hotels, Leisure & Entertainment
    • Government & Public Services
    • Healthcare
    • Remote Monitoring
    • Retail
    • Transportation
    • Industrial & Commercial
    One system, one card
    One system, one card
    Alamo enhances security with Alcatel-Lucent solutions

    Alamo enhances security with Alcatel-Lucent solutions

    The University of Dundee implements HID for modern access control

    The University of Dundee implements HID for modern access control

    The Camp: Enhance security with ASSA ABLOY Aperio wireless locks

    The Camp: Enhance security with ASSA ABLOY Aperio wireless locks

    SBB upgrades surveillance with Hanwha Vision cameras

    SBB upgrades surveillance with Hanwha Vision cameras

  • Events
    Events
    • International security
    • Regional security
    • Vertical market
    • Technology areas
    • Conferences / seminars
    • Company sponsored
    Virtual events
    • Video Surveillance
    • Access Control
    • Video Analytics
    • Security Storage
    • Video Management Systems
    • Integrated Systems
    One system, one card
    One system, one card
    Gartner IT Infrastructure, Operations & Cloud Strategies Conference 2025

    Gartner IT Infrastructure, Operations & Cloud Strategies Conference 2025

    Technology Summit International 2025

    Technology Summit International 2025

    G2E Philippines 2025

    G2E Philippines 2025

    IFSEC India 2025

    IFSEC India 2025

  • White papers
    White papers
    • Video Surveillance
    • Access Control
    • Video Analytics
    • Video Compression
    • Security Storage
    White papers by company
    • HID
    • ASSA ABLOY Opening Solutions
    • Milestone Systems
    • Eagle Eye Networks
    • Hanwha Vision America
    Other Resources
    • eMagazines
    • Videos
    One system, one card

    One system, one card

    Aligning physical and cyber defence for total protection

    Aligning physical and cyber defence for total protection

    Understanding AI-powered video analytics

    Understanding AI-powered video analytics

    Modernizing access control

    Modernizing access control

About us Advertise
  • Wire-free locks
  • AI special report
  • Cyber security special report
  • Casino security & surveillance
  • 6
Electronic access control
  • Home
  • News
  • Expert commentary
  • Security beat
  • Case studies
  • Round table
  • Products
  • White papers
  • Videos

Check out our special report on casino security

Get it now!

Sophos reveals the education sector had the highest rate of ransomware attacks

26 Jul 2023

Sophos reveals the education sector had the highest rate of ransomware attacks
Contact company
Contact Sophos
icon Add as a preferred source Download PDF version
Related Links
  • Efficacious K-12 solutions in a challenging, fluid world

Sophos, a global pioneer in innovating and delivering cybersecurity as a service, released a new sectoral survey report, “The State of Ransomware in Education 2023,” which found that education reported the highest rate of ransomware attacks in 2022.

Over the past year, 79% of higher educational organisations surveyed reported being hit by ransomware, while 80% of lower educational organisations surveyed were targeted, an increase from 64% and 56% in 2021, respectively.

Rates of ransom payment

Additionally, the sector reported one of the highest rates of ransom payment with more than half (56%) of higher educational organisations paying and nearly half (47%) of lower educational organisations paying the ransom.

However, paying the ransom significantly increased recovery costs for both higher and lower educational organisations.

Recovery costs

For lower educational organisations, the average recovery costs were $2.18 million

Recovery costs (excluding any ransoms paid) for higher educational organisations that paid the ransom were $1.31 million when paying the ransom versus $980,000 when using backups.

For lower educational organisations, the average recovery costs were $2.18 million when paying the ransom versus $1.37 million when not paying.

Backup for recovery

Paying the ransom also lengthened recovery times for victims. For higher educational organisations, 79% of those that used backups recovered within a month, while only 63% of those that paid the ransom recovered within the same timeframe.

For lower educational organisations, 63% of those that used backups recovered within a month versus just 59% of those that paid the ransom.

Factor in victim selection

Unfortunately, the data doesn’t support that paying ransoms resolves these attacks more quickly"

“While most schools are not cash-rich, they are very highly visible targets with immediate widespread impact in their communities. The pressure to keep the doors open and respond to calls from parents to ‘do something’ likely leads to pressure to solve the problem as quickly as possible without regard for cost."

"Unfortunately, the data doesn’t support that paying ransoms resolves these attacks more quickly, but it is likely a factor in victim selection for the criminals,” said Chester Wisniewski, field CTO, of Sophos.

Root causes of ransomware attacks

For the education sector, the root causes of ransomware attacks were similar to those across all sectors.

There was a significantly greater number of ransomware attacks involving compromised credentials for both higher and lower educational organisations (37% and 36% respectively versus 29% for the cross-sector average).

Additional findings

Additional key findings from the report include:

  • Exploits and compromised credentials accounted for more than three-fourths (77%) of ransomware attacks against higher educational organisations; these root causes accounted for more than two-thirds (65%) of attacks against lower educational organisations.
  • The rate of encryption stayed about the same for higher educational organisations (74% in 2021 versus 73% in 2022), but increased from 72% to 81% across lower educational organisations during the past year.
  • Higher educational organisations reported a lower rate of using backups than the cross-sector average (63% versus 70%). This is the third lowest rate of backup use across all sectors. Lower educational organisations, on the other hand, had a slightly higher rate of using backups than the global average (73%).

Lack of MFA use

MFA sets a good example and is a simple way to avoid many of these attacks from getting in the door"

“Abuse of stolen credentials is common across sectors for ransomware criminals, but the lack of adoption of multifactor authentication (MFA) technology in the education sector makes them even more at risk of this method of compromise."

"Like the U.S. federal government’s initiative to mandate all agencies use MFA, it is time for schools of all sizes to employ MFA for faculty, staff, and students. It sets a good example and is a simple way to avoid many of these attacks from getting in the door,” said Wisniewski.

Best practice recommendation

Sophos recommends the following best practices to help defend against ransomware and other cyberattacks:

1) Strengthen defensive shields with:

  • Security tools that defend against the most common attack vectors, including endpoint protection with strong anti-exploit capabilities to prevent exploitation of vulnerabilities, and Zero Trust Network Access (ZTNA) to thwart the abuse of compromised credentials.
  • Adaptive technologies that respond automatically to attacks, disrupt adversaries and buy defenders time to respond.
  • 24/7 threat detection, investigation and response, whether delivered in-house or by a specialist Managed Detection and Response (MDR) provider.

2) Optimise attack preparation, including making regular backups, practicing recovering data from backups, and maintaining an up-to-date incident response plan.

3) Maintain good security hygiene, including timely patching and regularly reviewing security tool configurations.

Survey details

The State of Ransomware 2023 survey polled 3,000 IT/cybersecurity pioneers in organisations with between 100 and 5,000 employees, including 400 from the education sector, across 14 countries in the Americas, EMEA, and Asia Pacific.

This includes 200 from lower education (up to 18 years) and 200 from higher education (above 18 years) and both public and private sector education providers.

Discover how AI, biometrics, and analytics are transforming casino security

Download PDF version Download PDF version
Google logo Add as a preferred source on Google
  • Network / IP
  • Biometrics
  • Remote surveillance
  • Digital video surveillance
  • Campus security systems
  • Application security
  • Physical security
  • Industrial security
  • Remote security
  • Commercial security
  • Private sector security
  • Public sector security
  • Security management
  • Security devices
  • Security installation
  • Security monitoring system
  • Security access systems
  • Radio frequency Identification
  • Network monitoring
  • Video analytics
  • Electronic access control
  • Intrusion detection
  • Identity management
  • School security
  • Institute security
  • Public security
  • Industrial security systems
  • Network cameras
  • Door access control
  • Security software
  • Industrial surveillance
  • Mobile surveillance
  • Green security
  • Visitor management systems
  • Indoor surveillance
  • Day/Night surveillance
  • Testing & Approvals
  • Integration software
  • Cyber security
  • Crime prevention
  • Mobile communications
  • Internet of Things (IoT)
  • Corporate Security
  • Indoor Security
  • Central Monitoring
  • Data Security
  • Network Video Recorders
  • Digital Video Recorders
  • Warning Devices
  • Incident Management
  • Cloud security
  • Mobile access
  • Related links
  • Card Access control cards/ tags/ fobs
  • Access Control Software Access control software
  • Card Access control software
  • Proximity Access control cards/ tags/ fobs
  • IP Surveillance Software CCTV software
  • Central Monitoring Option Access control software
  • Management Software CCTV software
  • Monitoring Software CCTV software
  • Surveillance Software CCTV software
  • RFID Access control readers
  • Management Systems Upgrade Access control software
  • Remote software for telecode door entry phone system Access control software
  • Server software for MSDE Access control software
  • Visitor Management tool Access control software
  • Related categories
  • CCTV software
  • Access control software
  • Access control readers
  • Access control cards/ tags/ fobs
Related white papers
One system, one card

One system, one card

Download
Aligning physical and cyber defence for total protection

Aligning physical and cyber defence for total protection

Download
Modernizing access control

Modernizing access control

Download
Related articles
TDSi by Hirsch: Reinventing UK access control

TDSi by Hirsch: Reinventing UK access control

HiveWatch boosts board with James Segil appointment

HiveWatch boosts board with James Segil appointment

Securitas Technology acquires Sonitrol Ft. Lauderdale

Securitas Technology acquires Sonitrol Ft. Lauderdale

Follow us

Sections Products CCTV Access Control Intruder Alarms Companies News Insights Case studies Markets Events White papers Videos AI special report Cyber security special report Casino security & surveillance RSS
Topics Artificial intelligence (AI) Mobile access Healthcare security Counter terror Cyber security Robotics Thermal imaging Intrusion detection Body worn video cameras
About us Advertise About us 10 guiding principles of editorial content FAQs eNewsletters Sitemap Terms & conditions Privacy policy and cookie policy
  1. Home
  2. Topics
  3. Electronic access control
  4. News
  5. Corporate news
See this on SecurityInformed.com

Subscribe to our Newsletter

Stay updated with the latest trends and technologies in the security industry
Sign Up

DMA

SourceSecurity.com - Making the world a safer place
Copyright © Notting Hill Media Limited 2000 - 2025, all rights reserved

Our other sites:
SecurityInformed.com | TheBigRedGuide.com | HVACinformed.com | MaritimeInformed.com | ElectricalsInformed.com

Subscribe to our Newsletter


You might also like
One system, one card
One system, one card
Understanding AI-powered video analytics
Understanding AI-powered video analytics
Security and surveillance technologies for the casino market
Security and surveillance technologies for the casino market
Modernizing access control
Modernizing access control
SourceSecurity.com
SecurityInformed.com

Browsing from the Americas? Looking for our US Edition?

View this content on SecurityInformed.com, our dedicated portal for our Americas audience.

US Edition International Edition
Sign up now for full access to SourceSecurity.com content
Download Datasheet
Download PDF Version
Download SourceSecurity.com product tech spec