Most Ransomware Victims Would Pay Up If Attacked Again

Ransomware is one of the fastest growing cyber-crimes in the world. Last year, 37% of businesses were victim to an attack.

In case you didn’t know, a ransomware attack is where cyber criminals infiltrate your network (or device) and steal your data by encrypting it. The data is still there, but you can’t access it.


Then they demand you pay a large ransom fee for the encryption key.


If you don’t pay the demand of tens or hundreds of thousands of dollars, they will delete your data. Even worse, sometimes they will receive the money from a company and still delete the data. 


It’s not just the cost of the ransom fee to worry about. There’s the stress, reputational damage and downtime that goes with it. In 2021, the average downtime suffered after a ransomware attack was 22 days.


The typical advice you’ll get from an MSP company is to not pay any ransomware demands.


However, a new survey has shown that a massive 97% of business leaders who’ve experienced a ransomware attack in the past would pay up quickly if they were attacked again.


A third of them would pay instantly. What does that say about how this is a nightmare situation for a business of any size? 


On average, only 65% of data is restored once a fee is paid, and a company is still vulnerable to further extortion. By letting cyber criminals know that your business pays ransom fees, it’s likely that you’ll face subsequent attacks in the future. 


So, what’s the best way to deal with ransomware? 


First, you should put in place the right security measures to try to prevent an attack:


  • Educate your people on cyber security and best practice
  • Invest in a good anti ransomware service
  • Implement multi-factor authorization across all your applications
  • Use a password manager
  • Make sure all updates are installed quickly
  • And you should always have a working backup in place – ideally one where older data is retained and cannot be changed

Protect Your Business With West Coast IT 


At West Coast IT Group, we highly suggest creating a response and recovery plan that will help in the event of a ransomware attack. Investing in a package that suits your business needs will ensure you get the protection that’s right for you – so you don’t have to suffer the downtime in the event of a ransomware attack. 


This is what we do. We help businesses increase their cyber security to reduce their chances of being affected. That’s why the team at West Coast IT is ready to help. We are here for everything from IT support in Oceanside, computer services in Carlsbad, Del Mar recovery solutions, and repair for laptops and beyond in Encinitas. We are your one-stop shop for everything IT and MSP, so you can get back to running your business worry-free.


Find Ransomware Removal Near Me
Robots in a row with text: “Could AI STOP attacks BEFORE THEY START?”
September 20, 2026
Microsoft's new MDASH platform uses 100+ AI agents to hunt security flaws before attackers do. Here's what it means for your business.
Red circular arrows beside text “The FAKE UPDATE fooling businesses” on a dark red digital background
August 20, 2026
A fake Windows 11 update mimics Microsoft's official site to install malware. Learn how to spot it and keep your updates secure.
Blue ad graphic with a padlock and the text, “AI can do many things, BUT this isn’t one of them.”
July 16, 2026
Think AI-generated passwords are secure? Learn why they may be more predictable than they appear and what to use instead for stronger account security.
July 1, 2026
Cybercriminals are constantly finding new ways to make phishing emails look legitimate, and one of the latest tactics is particularly convincing. Instead of spoofing Microsoft, attackers are using Microsoft Azure Monitor itself to deliver fraudulent alerts, making these emails much harder to spot. Azure Monitor is a legitimate Microsoft tool that businesses use to monitor cloud environments, track system performance, and receive notifications about account activity, billing, and potential issues. For organizations that rely on Microsoft Azure, receiving these alerts is completely normal—which is exactly why this scam is so effective. The fraudulent emails often claim there's a billing problem, suspicious account activity, or even a service suspension that requires immediate attention. They create a sense of urgency and typically instruct recipients to call a phone number or take immediate action to resolve the issue. What makes this attack different is that the email can actually originate from Microsoft's own systems. Rather than creating a fake sender address, attackers abuse Azure Monitor's alerting functionality by setting up legitimate alerts with customized messages. Since the emails are delivered through Microsoft's infrastructure, many email security filters recognize them as legitimate and allow them through. This isn't the first time cybercriminals have exploited trusted platforms. Similar scams have used services like PayPal and Google to distribute phishing messages. The strategy is simple: leverage a platform people already trust so recipients are less likely to question the email's authenticity. If you receive an Azure alert that seems unusual, don't let the urgency pressure you into acting immediately. Instead, open your web browser and sign in to your Azure account directly rather than clicking links in the email. Any legitimate billing issues or account notifications should also appear within your Azure portal. It's also important to be skeptical of emails that ask you to call an unfamiliar phone number or provide sensitive information. When in doubt, contact your IT provider or internal IT team before responding. Phishing attacks have become far more sophisticated than the poorly written emails of the past. Today's scams often use trusted services, polished language, and realistic branding to appear credible. As a result, technical security measures alone aren't enough—employee awareness remains one of the strongest defenses against cybercrime. Taking a few extra moments to verify an unexpected alert can prevent a costly security incident. If you're unsure whether your organization is prepared to recognize evolving phishing tactics like these, now is a good time to review your cybersecurity training and response procedures.
May 18, 2026
AI-powered phishing scams are becoming more convincing and harder to detect. Learn how modern phishing attacks are evolving and how businesses can stay protected.
Magnifying glass over a browser window with the text “Your browser sees everything.”
April 20, 2026
Learn how mobile browsers collect your data and simple steps your business can take to improve privacy and reduce security risks.
Microsoft Edge declares war on scam pop-ups; red jets fly against a yellow-orange background.
February 10, 2026
Microsoft Edge now uses AI to block scareware pop-ups before they can cause harm. Learn how the new feature protects users and businesses.
Robotic hand and human hand interact with glowing
January 16, 2026
Learn how to help your employees embrace AI at work. Build confidence with training, culture, and smart strategies for more productivity and creativity.
A robotic hand holding
December 20, 2025
AI now powers most cyberattacks, from ransomware to phishing. Learn why SMBs are at risk and how layered, AI-driven security can help protect your business.
FBI warning about new ransomware threat. Red triangle with exclamation point on binary code background.
November 20, 2025
Learn how Interlock ransomware targets businesses and discover essential steps to protect your systems, data, and operations from attack.