Absolute Security
Reports
All Statistics
43% of CISOs report Employee Awareness Training is the top-ranked challenge for ransomware mitigation.
58% of cybersecurity leaders would consider paying cybercriminals to end a ransomware attack.
53% of organizations have remote recovery capabilities in place.
Last year, 18% of connected devices stored sensitive data, 35% lacked encryption, and 26% were unaccounted for.
Critical OS patching across PCs running Windows 10 and 11 is behind an average of 127 days, up from 56 days in 2025.
Endpoint security tools fail 20% of the time.
In 2025, 68% of CISOs agreed that their organization currently has a Cyber Resilience strategy in place.
In 2025, 57% of CISOs reported that their organizations took more than 4.5 days on average for full remediation and recovery after a cyber incident.
In 2025, not a single Chief Information Security Officer (CISO) reported being able to recover from a cyber incident within a day.
35% of enterprise PCs lack encryption.
Enterprise PCs are logging millions of visits to popular generative AI platforms. Thousands of these visits are specifically landing on DeepSeek.
18% of enterprise PCs store sensitive data.
15% of healthcare PCs fail security tests.
Critical security controls were found to be either non-compliant with internal security and risk policies or missing from devices 15 percent of the time in the analysed healthcare PCs.
The average Windows endpoint in healthcare is 48 days behind on critical security patches.
46% of cybersecurity leaders rank operational downtime as the most significant impact ransomware is likely to have on their organizations.
57% of CISOs report taking as long as six days to recover from a ransomware attack.
20% of CISOs report taking as long as two weeks to recover from a ransomware attack.
58% of enterprise CISOs agree that a ransomware incident left endpoints inoperable.
83% of CISOs report being confident in their businesses' ability to recover from ransomware.
42% of CISOs report legacy system patching is the second most challenging ransomware mitigation method.
No CISOs report the ability to recover from ransomware within a day.
59% of organizations agree they must take physical possession of an endpoint to remediate and restore the device after an incident.
Over the past 12–18 months, 57% of enterprise CISOs report their enterprises experienced an attack that originated on a remote, mobile, or hybrid device.
Across all industries, 30% of connected devices lack encryption.
Globally-distributed PCs are vulnerable to AI-driven attacks and cyber incidents up to 76 days per year.
10% of PCs run Windows 10, which Microsoft ended support for in October 2025.
Across all industries, 20% of connected devices store sensitive data.
Across all industries, 25% of connected devices are unaccounted for.
67% of CISOs stated they are the primary executive responsible for ensuring Cyber Resilience within their organization.
In 2025, 98% of organizations reported spending between $1 and $5 million to recover from cyber incidents, with the average recovery cost per incident being $2.5 million.
In 2025, 61% of CISOs indicated that their organization’s board and C-suite expect the cybersecurity group to guarantee zero breaches and ransomware incidents.
72% of CISOs agreed that their role has evolved to include leading their organization’s ability to recover continuity following a cyberattack or security incident.
65% of CISOs agreed that their organization prioritizes Cyber Resilience over traditional prevention, detection, and response.
In 2025, 83% of CISOs reported that Cyber Resilience was more critical for their organization than traditional cybersecurity measures, compared to 90% in the previous year.
In 2025, 19% of CISOs indicated that recovery efforts from cyber incidents extended as long as two weeks.
In 2025, 55% of Chief Information Security Officers (CISOs) in the US and UK reported that their organization experienced a cyberattack, ransomware infection, compromise, or data breach that rendered mobile, remote, or hybrid endpoint devices inoperable.
Critical patching for PCs running Windows 10 and 11 is delayed nearly two months on average across organisations.
Top endpoint security controls, including leading Endpoint Protection Platforms (EPP), Security Service Edge (SSE) solutions, and Vulnerability and Patch Management platforms, fail to maintain compliance with internal security and performance policies 22% of the time.
Top endpoint security controls, including leading Endpoint Protection Platforms (EPP), Security Service Edge (SSE) solutions, and Vulnerability and Patch Management platforms, fail to maintain compliance with internal security and performance policies 22% of the time.
Critical patching for PCs running Windows 10 and 11 is delayed nearly two months on average across organisations.
Enterprise PCs are logging millions of visits to popular generative AI platforms. Thousands of these visits are specifically landing on DeepSeek.
26% of enterprise PCs are unaccounted for.