CrowdStrike Global Report uncovers organisations paying hacking ransoms

CrowdStrike Inc., have shared the 2019 CrowdStrike Global Security Attitude Survey of 1,900 senior IT decision-makers and IT security professionals…
CrowdStrike Global Report uncovers organisations paying hacking ransoms

Share this article:

CrowdStrike Inc., a leader in cloud-delivered cyber security endpoint protection, have shared the UK story behind the 2019 CrowdStrike Global Security Attitude Survey, which includes the attitudes and beliefs of those in charge of cybersecurity, and how they fare against today’s sophisticated cyberattacks. Commissioned by CrowdStrike and produced by independent research firm Vanson Bourne, the study surveyed 1,900 senior IT decision-makers and IT security professionals across 11 countries, including 200 respondents in the UK.

Attacks and ransom payments on the rise

The number of global organisations paying ransoms from supply chain attacks has more than doubled from 14 to 39% – and in the UK the figure of those who have paid in the past year is now 28%. This is a movement of 100% from last year’s figure (14%).

Whilst globally the number of those experiencing supply chain attacks doubled from 16 to 34%, it stands at 42% in the UK – despite organisations fearing supply chain attacks less than this time last year (2019 28% vs. 2018 33%). However, fewer than half of UK organisations (42%) have vetted all new and existing software suppliers in the past 12 months.

The UK’s biggest threats

The UK is most worried by cyberattacks from groups from Russia (82%), China (74%), and North Korea (67%) – whereas for Germany, for example, China tops the list at 68%.

When it comes to defending the organisation, 19.5% in the UK thinks it is critical to understand who the threats are, and for 50% it ‘highly important’. Only 6% in the UK are able to discover the identity of a threat actor after they have attacked/threatened their organisation.

67.5% in the UK believe that they that a better understanding of cyberattacks and the attackers perpetrating them would speed up the detection of cyber incursions and incidents.

UK leads threat discovery – but still too slow

A brighter note however is that UK organisations average 39 hours to detect an adversary, versus a global average of 120 hours, yet 74% of UK respondents report that in the past year they have been unable to prevent intruders on their networks from accessing their targeted data, with 64% pointing to slow detection as the cause.

It takes a global average of 31 hours to contain a cybersecurity incident once it has been detected and investigated – though the UK is one of the fastest regions with an average of 21 hours reported.

Breakout time is the critical window between when an intruder compromises the first machine and when they can move laterally to other systems on the network. Organisations should look to follow the 1:10:60 rule (one minute to detect an incident, ten minutes to investigate and determine next steps, and 60 minutes to eject the intruder and clean up). Some of the most notable report findings include that currently, 98% of UK respondents fall short of meeting the three-time standards – globally 94% of respondents fall short.

Puzzlingly, only 52% of UK respondents believe they should be placing more emphasis on high-speed detection of cyber security incidents. Challenges such as lack of resources (27%), legacy infrastructure (27%) and a skills gap (25%) were cited as the key factors preventing organisations detecting cyber security incursions and incidents quickly.

What’s worrying UK organisations?

  • Phishing and spear-phishing (59%) remain the top security concern for UK organisations over the next 12 months, followed closely by malware (58%) and ransomware (55%).
  • The UK is most worried by adversaries from Russia (82%), China (74%), and North Korea (67%) – whereas for Germany, for example, China tops the list at 68%.
  • 22% of UK respondents say they cannot rule out being the target of a nation-state sponsored cyberattack by any government, including their own.
  • 37% of UK respondents noted a key motivator for a nation-state attack would be to provoke instability within the organisation’s country.

John Titmus, Sr Director, Sales & Solution Engineering – EMEA Region, CrowdStrike, said: “Reacting with speed to next-generation, persistent and pervasive threats requires the power of the cloud and crowdsourced data on the real threats facing organisations, whether they are malicious files or from file-less behaviours. The solution to these threats lies within the power of the cloud and AI to leverage vast data sets to spot indicators of attack before those attacks break out and become breaches. Then organisations react at the speed required to beat organised cybercriminals and nation-state adversaries.”

For more security news visit here.

About Security Buyer

Security Buyer is the leading authority in global security content, delivering expert news, in-depth articles, exclusive interviews, and industry insights across print, digital, and event platforms. Published 10 times a year, the magazine is a trusted resource for professionals seeking updates and analysis on the latest developments in the security sector.

To submit an article, or for sponsorship opportunities, please contact our team below.

Rebecca Spayne Picture

Rebecca Spayne

Group Managing Editor

Georgina Turner Picture

Georgina Turner

Sales Manager

Afua Akoto Picture

Afua Akoto

Marketing Manager

Related News

Ai Solution of the year - securitybuyer.com

Have your say: vote for AI Solution of the Year

Voting is open for AI Solution of the Year at the Security Buyer Readers’ Awards 2026, with readers invited to select their winner
Access control of the year - securitybuyer.com

Have you voted for Access Control Solution of the Year?

Voting is open for Access Control Solution of the Year at the Security Buyer Readers’ Awards 2026, with readers invited
PaxLock Pro2 - securitybuyer.com

Paxton officially launches PaxLock Pro2

Paxton the security technology manufacturer has launched a brand-new re-engineered PaxLock which is built to protect straight
KentixONE data centre - securitybuyer.com

Data centre security with KentixONE

Prior1 develops container data centers to meet the highest security and energy efficiency standards. Their containers require
Chubbsafes - securitybuyer.com

Chubbsafes explores certified storage for jewellery and precious metals

Chubbsafes, part of Gunnebo Safe Storage, has launched a new technical discussion guide examining when certified
Mercury trends report - securitybuyer.com

New Mercury Research Finds Growing Cybersecurity Gap

2026 Trends in Access Controllers Report finds interoperability, cloud connectivity and AI are reshaping long-term controller strategies.
Chris Carroll - securitybuyer.com

Comelit-PAC Promotes Chris Carroll as Sales Director

Comelit-PAC has appointed Chris Carroll as Sales Director, following an 18 year career with the company, seeing him progress
Jason Bezuidenhout - securitybuyer.com

Zygal Appoints Jason Bezuidenhout

Zygal has appointed Jason Bezuidenhout as Chief Revenue Officer (CRO), strengthening its leadership team as the company continues
Eun-Kyung-Hong_- securitybuyer.com

How AI Manages Mixed Surveillance Workloads

Eun-Kyung Hong, HDD Product Manager at Toshiba Electronics Europe GmbH discusses AI optimisation in mixed surveillance workloads
ASSA ABLOY - securitybuyer.com

ASSA ABLOY Door Group highlights importance of BS 8214:2026

ASSA ABLOY Door Group is supporting Fire Door Safety Week 2026 by raising awareness of the latest update to BS 8214:2026
Scroll to Top