← All stories
● Covered by 1 source · 1 reportLow impact1 neutral

Recovery Readiness Becomes New Standard for Cyber Resilience Amidst Evolving Ransomware Threats

🔄 Updated 1d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Over 90% of ransomware attacks attempt to delete or tamper with backups.
  • Nearly 60% of attacks targeting backups are successful.
  • Backup alone is not sufficient for business recovery.
  • Modern resilience requires secure, immutable backups and rapid recovery.

Ransomware Targets Backups

A recent ransomware report indicates that more than 90% of ransomware attacks now attempt to delete or tamper with backups before deploying their main payload. This tactic is often successful, with nearly 60% of attacks that target backups achieving their goal. This trend elevates outages from IT issues to enterprise-wide risks.

Distinction Between Backup and Recovery

Many organizations mistakenly equate backup with recovery. While backup creates duplicate data copies, recovery ensures operations can be restored quickly after an attack or system failure. This distinction is critical for avoiding prolonged downtime, lost revenue, and damage to customer trust.

Flawed Assumptions Exploited by Attackers

Attackers exploit the flawed assumption that backups alone constitute a disaster recovery strategy. Threat groups frequently tamper with backups first before breaching other parts of the IT infrastructure. This means organizations treating backups as their sole disaster recovery plan are only protecting data, not the entire business.

Modern Resilience Strategies

Closing the gap between backup and recovery demands modern resilience strategies. These strategies integrate secure, immutable backups with rapid recovery capabilities. Platforms like Datto exemplify this approach, which is necessary to counter sophisticated ransomware tactics.

Identity-Based Attacks in Hybrid Environments

The shift to hybrid environments, driven by rising on-prem hardware costs, has expanded the identity attack surface. Attackers no longer need to bypass firewalls to access business applications; they log in, often bypassing MFA and hijacking live sessions. Approximately four out of five ransomware attacks now begin with identity-based approaches.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~7 min · 6 stories · Aug 15

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Primary sources

GitHub uuidjs/uuid

Reporting from

Ransomware attacks increasingly target and succeed in deleting or tampering with backups, highlighting that backup alone is insufficient for disaster recovery. Organizations need to adopt modern resilience strategies that combine secure, immutable backups with rapid recovery capabilities to protect their businesses from prolonged downtime and data loss.