A recent ransomware report indicates that more than 90% of ransomware attacks now attempt to delete or tamper with backups before deploying their main payload. This tactic is often successful, with nearly 60% of attacks that target backups achieving their goal. This trend elevates outages from IT issues to enterprise-wide risks.
Many organizations mistakenly equate backup with recovery. While backup creates duplicate data copies, recovery ensures operations can be restored quickly after an attack or system failure. This distinction is critical for avoiding prolonged downtime, lost revenue, and damage to customer trust.
Attackers exploit the flawed assumption that backups alone constitute a disaster recovery strategy. Threat groups frequently tamper with backups first before breaching other parts of the IT infrastructure. This means organizations treating backups as their sole disaster recovery plan are only protecting data, not the entire business.
Closing the gap between backup and recovery demands modern resilience strategies. These strategies integrate secure, immutable backups with rapid recovery capabilities. Platforms like Datto exemplify this approach, which is necessary to counter sophisticated ransomware tactics.
The shift to hybrid environments, driven by rising on-prem hardware costs, has expanded the identity attack surface. Attackers no longer need to bypass firewalls to access business applications; they log in, often bypassing MFA and hijacking live sessions. Approximately four out of five ransomware attacks now begin with identity-based approaches.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Ransomware attacks increasingly target and succeed in deleting or tampering with backups, highlighting that backup alone is insufficient for disaster recovery. Organizations need to adopt modern resilience strategies that combine secure, immutable backups with rapid recovery capabilities to protect their businesses from prolonged downtime and data loss.