Proofpoint

118 stats4 reports

All Statistics

28% of global organizations that experienced a ransomware attack report that AI significantly increases the attack's effectiveness.

RansomwareAI

37% of global organizations that experienced a ransomware attack report that AI somewhat increases the attack's effectiveness.

RansomwareAI

Only 9% of global organizations affected by ransomware report no evidence of AI use in the attack.

RansomwareAI

Resolving a data loss incident can take between one and four weeks for more than one in five organizations (21%).

Proofpoint2025 Data Security Landscape·9mo ago
Data loss

Just 1% of users are responsible for 76% of data loss events.

Proofpoint2025 Data Security Landscape·9mo ago
Data loss

31% of organizations say redundant or obsolete data poses significant risk.

Proofpoint2025 Data Security Landscape·9mo ago
Redundant dataObsolete dataData risk

Supply chain attacks against healthcare organizations decreased significantly from 68% in 2024 to 44% in 2025.

HealthcareSupply chain attack

Healthcare organizations that experienced cloud/account compromises had an average of 21 such compromises in the past two years.

HealthcareCloud compromiseAccount compromise

25% of healthcare organizations cite employees sending PII or PHI to an unintended recipient via email as a primary root cause of incidents.

HealthcareInsider threat

In the U.S., 80% of CISOs express concern over potential customer data loss via public GenAI platforms.

Proofpoint2025 Voice of the CISO·12mo ago
CISOsGen AIData lossUS

Despite this, 68% of CISOs believe employees understand cybersecurity best practices.

Proofpoint2025 Voice of the CISO·12mo ago
CISOsEmployees

Despite near-universal adoption of Data Loss Prevention (DLP) tools, one-third say their data remains inadequately protected.

Proofpoint2025 Voice of the CISO·12mo ago
CISOsData lossDLPData protection

54% of organizations affected by ransomware pay a ransom.

Ransom PaymentsRansomwareExtortion

37% of organizations that pay a ransom face a second extortion demand.

RansomwareExtortion

60% of US organizations confirm sensitive data theft during ransomware incidents.

Data TheftUSer BehaviorRansomware

40% of organizations say employees did not suspect the attack because it appeared authentic.

Social EngineeringRansomwareHuman Factors

Credential harvesting is identified as the initial threat in 36% of ransomware incidents.

Credential TheftRansomwareThreat Vectors

93% of US organizations affected by ransomware pay a ransom.

Ransom PaymentsRansomwareUS

Phishing emails and other email-based social engineering are the initial entry vector in 34% of ransomware incidents.

PhishingRansomwareEmail Security

US organizations report AI-enhanced attack effectiveness at 81%.

AI SecurityRansomwareUS

User interaction as a bypass factor is highest in Japan (49%), India (49%), and Singapore (48%).

User InteractionRansomwareRegional Comparison

Malicious links are identified as the initial threat in 47% of ransomware incidents.

RansomwareMalicious LinksThreat Vectors

38% of organizations report that employees interact with malicious content.

Malicious ContentUser Behavior

34% of ransomware incidents begin with phishing emails or other email-based social engineering.

PhishingSocial EngineeringRansomware

65% of global organizations affected by ransomware report that AI increases the attack's effectiveness.

RansomwareAI

Malicious links are identified as the initial threat in 47% of incidents, malicious attachments in 46%, credential harvesting in 36%, and Business Email Compromise in 35%.

RansomwareCredential TheftBECMalicious AttachmentsCredential Harvesting

Almost two-thirds of organizations confirm that data is stolen during ransomware incidents.

Data TheftRansomware

49% of organizations in Japan report user interaction as the reason ransomware bypassed controls.

User BehaviorJapanRansomware

49% of organizations in India report user interaction as the reason ransomware bypassed controls.

User BehaviorIndiaRansomware

48% of organizations in Singapore report user interaction as the reason ransomware bypassed controls.

User BehaviorSingaporeRansomware

38% of organizations attribute ransomware incidents to users interacting with malicious content.

RansomwareMalicious ContentUser Interaction

28% of organizations that experienced a ransomware attack say AI significantly increased the attack’s effectiveness.

AI SecurityRansomwareAttack Effectiveness

37% of organizations that experienced a ransomware attack say AI somewhat increased the attack’s effectiveness.

AI SecurityRansomwareAttack Effectiveness

65% of global organizations affected by ransomware say AI increased the effectiveness of the attack.

AI SecurityRansomwareAttack Effectiveness

Only 9% of organizations report no evidence of AI use in their ransomware incidents.

AI SecurityRansomware

Malicious attachments are identified as the initial threat in 46% of ransomware incidents.

RansomwareMalicious AttachmentsThreat Vectors

60% of US organizations confirm sensitive data theft in ransomware incidents.

Data TheftRansomwareUnited States

40% of organizations report that employees trust AI-powered attacks.

Social EngineeringAI Threats

93% of US organizations affected by ransomware pay the ransom.

RansomwareUnited StatesExtortion

Business Email Compromise is identified as the initial threat in 35% of ransomware incidents.

BECRansomwareEmail Security

37% of organizations that paid a ransom face a second extortion demand.

Ransom PaymentsExtortionRansomware

81% of US organizations report AI-enhanced attack effectiveness in ransomware incidents.

RansomwareUnited StatesAI

40% of organizations report that employees do not suspect the ransomware attack because it appears authentic.

Social EngineeringUser Behavior

46% of organizations cite cloud and SaaS data sprawl as a top challenge. ).

Proofpoint2025 Data Security Landscape·9mo ago
Data sprawlCloudSaaS

32% of organizations flag unsupervised data access by agents as a critical threat.

Proofpoint2025 Data Security Landscape·9mo ago
Data lossGenAI

Over a quarter (29%) of organizations saw their data grow 30% or more over the past year.

Proofpoint2025 Data Security Landscape·9mo ago
Data growth

32% of organizations attribute their most significant data loss events to malicious insiders.

Proofpoint2025 Data Security Landscape·9mo ago
Data lossMalicious insiders

Among enterprises with over 10,000 employees, 41% manage more than a petabyte of data.

Proofpoint2025 Data Security Landscape·9mo ago
Data

44% of organizations lack sufficient visibility and controls over GenAI tools.

Proofpoint2025 Data Security Landscape·9mo ago
GenAIVisibility

Respondents reported an average of 11 data loss incidents per year, with some organizations experiencing multiple incidents each month.

Proofpoint2025 Data Security Landscape·9mo ago
Data loss