Report by Resilience
The State of Cybersecurity In Manufacturing
Key Findings
The manufacturing sector experienced a 61% year-over-year surge in ransomware attacks in 2025, the sharpest growth of any industry.
Connected IoT device counts in manufacturing facilities are projected to more than double between 2025 and 2030.
Ransomware represented only 12% of claim volume among manufacturers despite accounting for the majority of incurred losses.
Wrongful data collection caused 12% of manufacturing claims, driven primarily by website tracking and pixel-related litigation.
MFA misconfiguration accounted for approximately 26% of all incurred losses in Resilience's manufacturing portfolio.
Phishing and transfer fraud accounted for roughly 30% of all manufacturing claims.
The average transfer fraud event costs roughly ten times more than the average email compromise in manufacturing claims.
Fewer than one in fifteen internet-accessible SSH servers globally have adopted quantum-resistant encryption.
Having no MFA at all accounted for approximately 8% of incurred losses in Resilience's manufacturing portfolio.
Ransomware accounted for about 90% of total incurred losses in Resilience's manufacturing insurance portfolio over the past five years.
Software vulnerability exploits account for approximately 13% of incurred losses in Resilience's manufacturing portfolio.
Manufacturing accounted for more than one in four of all global cyberattacks in 2025 and had been the most targeted industry for five consecutive years.