Dissent Doe :cupofcoffee:<p>Emsisoft's recent report advocating for a ban on <a href="https://infosec.exchange/tags/ransom" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ransom</span></a> payments has been generating discussion and debate -- and that's a good thing. </p><p>I came across some stats from the UK this morning which are also food for thought on this issue. </p><p>[ If you missed Emsisoft's report it's at <a href="https://www.emsisoft.com/en/blog/44987/the-state-of-ransomware-in-the-u-s-report-and-statistics-2023/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">emsisoft.com/en/blog/44987/the</span><span class="invisible">-state-of-ransomware-in-the-u-s-report-and-statistics-2023/</span></a> ]</p><p><a href="https://infosec.exchange/tags/ITPro" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ITPro</span></a> provides a summary from a Trellix report:</p><p>"One-third of UK-based <a href="https://infosec.exchange/tags/CISOs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CISOs</span></a> have confessed to paying <a href="https://infosec.exchange/tags/ransomware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ransomware</span></a> groups millions of dollars in recent years in a bid to alleviate the impact of an attack, according to new research.</p><p>Analysis from security firm Trellix found four-in-ten UK CISOs have managed a ransomware attack in the last five years – and in every single case, their organization opted to pay.</p><p><a href="https://infosec.exchange/tags/Trellix" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Trellix</span></a> found that one-third of CISOs paid between $5 million and $15 million for a ransom demand while 13% paid between $10 and $15 million.</p><p>The minimum ransom paid by all UK businesses across a five year period stood at around $250,000, the study found."</p><p>ITpro: <a href="https://www.itpro.com/security/ransomware/uk-cisos-are-cowing-to-ransomware-demands-more-than-you-think-heres-why-they-shouldnt-pay-up" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">itpro.com/security/ransomware/</span><span class="invisible">uk-cisos-are-cowing-to-ransomware-demands-more-than-you-think-heres-why-they-shouldnt-pay-up</span></a></p><p><span class="h-card" translate="no"><a href="https://infosec.exchange/@brett" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>brett</span></a></span></p>