Absolute Security
Reports
All Statistics
58% of enterprise CISOs agree that a ransomware incident left endpoints inoperable.
43% of CISOs report Employee Awareness Training is the top-ranked challenge for ransomware mitigation.
58% of cybersecurity leaders would consider paying cybercriminals to end a ransomware attack.
Across all industries, 30% of connected devices lack encryption.
Across all industries, 20% of connected devices store sensitive data.
Last year, 18% of connected devices stored sensitive data, 35% lacked encryption, and 26% were unaccounted for.
In 2025, 55% of Chief Information Security Officers (CISOs) in the US and UK reported that their organization experienced a cyberattack, ransomware infection, compromise, or data breach that rendered mobile, remote, or hybrid endpoint devices inoperable.
In 2025, 68% of CISOs agreed that their organization currently has a Cyber Resilience strategy in place.
In 2025, 57% of CISOs reported that their organizations took more than 4.5 days on average for full remediation and recovery after a cyber incident.
26% of enterprise PCs are unaccounted for.
35% of enterprise PCs lack encryption.
Enterprise PCs are logging millions of visits to popular generative AI platforms. Thousands of these visits are specifically landing on DeepSeek.
The average Windows endpoint in healthcare is 48 days behind on critical security patches.
15% of healthcare PCs fail security tests.
Critical security controls were found to be either non-compliant with internal security and risk policies or missing from devices 15 percent of the time in the analysed healthcare PCs.
53% of organizations have remote recovery capabilities in place.
46% of cybersecurity leaders rank operational downtime as the most significant impact ransomware is likely to have on their organizations.
57% of CISOs report taking as long as six days to recover from a ransomware attack.
83% of CISOs report being confident in their businesses' ability to recover from ransomware.
42% of CISOs report legacy system patching is the second most challenging ransomware mitigation method.
No CISOs report the ability to recover from ransomware within a day.
59% of organizations agree they must take physical possession of an endpoint to remediate and restore the device after an incident.
20% of CISOs report taking as long as two weeks to recover from a ransomware attack.
Over the past 12–18 months, 57% of enterprise CISOs report their enterprises experienced an attack that originated on a remote, mobile, or hybrid device.
Critical OS patching across PCs running Windows 10 and 11 is behind an average of 127 days, up from 56 days in 2025.
Endpoint security tools fail 20% of the time.
Globally-distributed PCs are vulnerable to AI-driven attacks and cyber incidents up to 76 days per year.
10% of PCs run Windows 10, which Microsoft ended support for in October 2025.
Across all industries, 25% of connected devices are unaccounted for.
In 2025, not a single Chief Information Security Officer (CISO) reported being able to recover from a cyber incident within a day.
67% of CISOs stated they are the primary executive responsible for ensuring Cyber Resilience within their organization.
In 2025, 98% of organizations reported spending between $1 and $5 million to recover from cyber incidents, with the average recovery cost per incident being $2.5 million.
In 2025, 61% of CISOs indicated that their organization’s board and C-suite expect the cybersecurity group to guarantee zero breaches and ransomware incidents.
72% of CISOs agreed that their role has evolved to include leading their organization’s ability to recover continuity following a cyberattack or security incident.
65% of CISOs agreed that their organization prioritizes Cyber Resilience over traditional prevention, detection, and response.
In 2025, 83% of CISOs reported that Cyber Resilience was more critical for their organization than traditional cybersecurity measures, compared to 90% in the previous year.
In 2025, 19% of CISOs indicated that recovery efforts from cyber incidents extended as long as two weeks.
18% of enterprise PCs store sensitive data.
Critical patching for PCs running Windows 10 and 11 is delayed nearly two months on average across organisations.
Top endpoint security controls, including leading Endpoint Protection Platforms (EPP), Security Service Edge (SSE) solutions, and Vulnerability and Patch Management platforms, fail to maintain compliance with internal security and performance policies 22% of the time.