Report by Black Kite

Mid-Market Is the Routine Target: Ransomware, Third-Party Risk, and the Widening AI Gap

10 FINDINGSPublished Aug 18, 2026
View Original Report →

Key Findings

73% of ransomware attacks in North America and Europe hit companies with $10M to $1B in annual revenue from 2023 through the first half of 2026.

RansomwareMid-Market

Mid-market organizations accounted for 74.6% of ransomware incidents in 2023, 72.1% in 2024, 74% in 2025, and 72.3% in the first half of 2026.

RansomwareMid-Market

More than half of mid-market ransomware victims generate less than $50M in annual revenue.

RansomwareMid-Market

Mid-market organizations accounted for approximately 72–75% of ransomware victims each year.

RansomwareMid-Market

Manufacturing represented more than 25% of mid-market ransomware victims.

RansomwareManufacturingMid-Market

54.7% of mid-market organizations have at least one significant patch management finding on public-facing software.

Patch ManagementVulnerabilitiesMid-Market

48.1% of mid-market organizations carry at least one disclosed vulnerability with a CVSS score of 8.0 or higher.

VulnerabilitiesCVSSMid-Market

32.3% of mid-market organizations have at least one stealer log finding.

Credential TheftStealer LogsMid-Market

46.8% of mid-market organizations have missing or insufficient DMARC protection.

Email SecurityDMARCMid-Market

28.3% of mid-market organizations carry at least one known exploited vulnerability (KEV).

VulnerabilitiesKEVMid-Market