2025 Cyber Risks Report Highlights Third-Party Breach Impact

Article Highlights
Off On

The landscape of cyber threats has evolved significantly over the years, and as businesses venture further into the digital realm, the risks they face become increasingly complex. Coalition’s latest Cyber Claims Report offers a comprehensive analysis of cyber risks and security incidents that unfolded throughout 2024, offering valuable insights into the current threat environment. This report highlights key trends, such as the declining number of ransomware claims and the apparent impact of third-party breaches, which are reshaping cybersecurity strategies across industries. As cybercriminals continue to refine their tactics, organizations must acknowledge new challenges and adapt their defenses to stay ahead of potential threats.

Cyber Claims and Ransomware Trends

Declining Ransomware Losses

In 2024, Coalition customers reported a noticeable decrease in ransomware claims, a promising sign for the future of cyber defenses. These claims represented average losses of $108,000 within the United States, contrasting with a slightly higher global average of $115,000. The drop in average losses underscores effective preventive measures and enhanced detection systems. However, the overall reduction in ransomware claims does not negate the persistent threat of ransomware attacks. Business leaders and cybersecurity experts must remain vigilant, anticipating the ever-evolving tactics of cyber attackers and ensuring their systems are fortified against emerging threats.

Impact of Other Cyber Threats

While ransomware claims saw a decline, funds transfer fraud and business email compromise continued to pose significant challenges, accounting for 60% of claims submitted to Coalition. These incidents demonstrate the necessity of robust security protocols and employee training. The energy industry, in particular, emerged as a sector vulnerable to high-value claims, underscoring the need for increased attention to cybersecurity in industries responsible for critical infrastructure. Furthermore, the insurance funds requested by affected organizations for ransomware coverage decreased by 7% from 2023 to 2024. This reduction suggests an industry-wide shift in risk management strategies, aiming to mitigate losses through enhanced cybersecurity measures and better incident response.

The Rise of Third-Party Breaches

Supply-Chain Security Vulnerabilities

The report reveals a significant trend: the impact of third-party breaches due to supply-chain vulnerabilities. Over 52% of total claims resulted from breaches involving third-party vendors, highlighting the critical importance of securing supply chains. These breaches often stem from inadequate security measures across collaborating companies, making them lucrative targets for cybercriminals. Particular vendors like Change Healthcare and CDK Global were identified as common sources of claims, emphasizing organizations’ vulnerability to attacks through linked networks. As businesses increasingly integrate with various service providers, strengthening supply-chain security has become imperative to reducing potential risks and safeguarding sensitive information.

Consequences of Ignoring Cybersecurity Alerts

Neglecting cybersecurity warnings can prove to be costly, as illustrated by the substantial losses sustained by 614 companies that overlooked flagged vulnerabilities. These businesses incurred $307 million in losses from ransomware attacks, showcasing the dangers of reactive rather than proactive security measures. Coalition’s findings stress the importance of addressing known vulnerabilities promptly, minimizing the likelihood of successful attacks. The opportunity to recover funds from incidents of funds-transfer fraud offers a silver lining; Coalition successfully reclaimed $31 million in 2024, achieving full recovery in 12% of cases where policyholders swiftly reported fraudulent activities. Prompt responses and efficient communication between insurers and organizations can significantly mitigate losses and secure financial assets.

Proactive Measures for Cybersecurity

Importance of Quick Incident Response

The ability to respond quickly and effectively to cyber threats is paramount in minimizing damages and losses. Coalition’s report praises the successes achieved by organizations capable of rapidly identifying vulnerabilities and implementing remediation measures. In a world where attacks can happen in the blink of an eye, preparation and vigilance are essential. Encouraging cyber-awareness and cultivating strong security practices can drastically reduce the likelihood of monetary and reputational damages from cyber incidents.

Future Outlook on Cyber Risk Management

The landscape of cyber threats has undergone significant changes over the years, presenting intricate challenges as businesses increasingly delve into the digital domain. Coalition’s most recent Cyber Claims Report provides a thorough analysis of cyber threats and security incidents throughout 2024, delivering valuable insights into the prevailing threat environment. This report unveils key trends such as the reduction in ransomware claims and the noticeable impact of breaches involving third-party entities, prompting shifts in cybersecurity strategies across various sectors. As cybercriminals continue to enhance their methods, organizations must recognize emerging challenges and modify their defenses accordingly to remain proactive against potential attacks. This adaptation is crucial in the fast-paced world of digital security, ensuring that businesses not only protect their assets but also anticipate future vulnerabilities in the ever-evolving cyber landscape.

Explore more

Your CRM Knows More Than Your Buyer Personas

The immense organizational effort poured into developing a new messaging framework often unfolds in a vacuum, completely disconnected from the verbatim customer insights already being collected across multiple internal departments. A marketing team can dedicate an entire quarter to surveys, audits, and strategic workshops, culminating in a set of polished buyer personas. Simultaneously, the customer success team’s internal communication channels

Embedded Finance Transforms SME Banking in Europe

The financial management of a small European business, once a fragmented process of logging into separate banking portals and filling out cumbersome loan applications, is undergoing a quiet but powerful revolution from within the very software used to run daily operations. This integration of financial services directly into non-financial business platforms is no longer a futuristic concept but a widespread

How Does Embedded Finance Reshape Client Wealth?

The financial health of an entrepreneur is often misunderstood, measured not by the promising numbers on a balance sheet but by the agonizingly long days between issuing an invoice and seeing the cash actually arrive in the bank. For countless small- and medium-sized enterprise (SME) owners, this gap represents the most immediate and significant threat to both their business stability

Tech Solves the Achilles Heel of B2B Attribution

A single B2B transaction often begins its life as a winding, intricate journey encompassing hundreds of digital interactions before culminating in a deal, yet for decades, marketing teams have awarded the entire victory to the final click of a mouse. This oversimplification has created a distorted reality where the true drivers of revenue remain invisible, hidden behind a metric that

Is the Modern Frontend Role a Trojan Horse?

The modern frontend developer job posting has quietly become a Trojan horse, smuggling in a full-stack engineer’s responsibilities under a familiar title and a less-than-commensurate salary. What used to be a clearly defined role centered on user interface and client-side logic has expanded at an astonishing pace, absorbing duties that once belonged squarely to backend and DevOps teams. This is