Prøve GULL - Gratis

CYBERATTACKS - The Ransomware Dilemma

MIT Sloan Management Review

|

Summer 2022

The decision on whether to pay up when cybercriminals hold data hostage is shaped by choices leaders made long before an attack.

- PHILIPP LEO, ÖYKÜ IŞIK, AND FABIAN MUHLY

CYBERATTACKS - The Ransomware Dilemma

The ransomware business is booming: In the United States alone, this form of cyberattack increased in frequency by 200% between 2019 and 2021. It’s an urgent threat, but too many leaders are caught flat-footed when it happens to them. Ransomware is malicious software that uses encryption to prevent access to data on the infected machine, effectively paralyzing the computer system. The culprits behind the attack then demand payment in exchange for decrypting the files and restoring access to the infected systems. The tactic dates to the 1980s, but it became a prominent threat to businesses after 2010 with the rise of cryptocurrency, criminals’ preferred mode of payment.

It’s a threat riddled with uncertainties, which makes planning a response difficult. Many organizations just want to find the quickest way out, and that often means paying the ransom, even though the financial burden may be considerable and the outcome far from certain. In a recent study of 300 companies, 64% revealed that they had experienced a ransomware attack within the previous 12 months, and a staggering 83% of those paid the ransom. On average, only 8% of organizations that paid up recovered all of their data, while 63% got about half of it back.

Some organizations receive a demand for a second (and perhaps even higher) ransom, despite having paid the first one on time, but the worst-case scenario is when the victim pays but either never receives the decryption key or it doesn’t work as intended.1

Organizations that decide not to pay also bear costs in terms of business downtime and lost revenues. And organizations that are caught unprepared, without a reliable backup system or an incident response plan, end up suffering the most — not only financially but also reputationally.

FLERE HISTORIER FRA MIT Sloan Management Review

MIT Sloan Management Review

MIT Sloan Management Review

Assess What Is Certain in a Sea of Unknowns

Understanding what won't change clarifies what might — and strengthens decision-making in volatile times.

time to read

13 mins

winter 2026

MIT Sloan Management Review

MIT Sloan Management Review

Ask Sanyin: Why Is It So Hard to Pull the Plug on a Project?

We're finding it difficult to wind down projects that no longer serve our priorities.

time to read

2 mins

winter 2026

MIT Sloan Management Review

MIT Sloan Management Review

Integrate Sustainability and Innovation to Find New Opportunities

Five common innovation practices can help leaders pursue sustainability as a growth strategy.

time to read

12 mins

winter 2026

MIT Sloan Management Review

MIT Sloan Management Review

The Case for Quiet Corporate Activism

Leaders concerned that they will be penalized for championing sustainability and diversity can still sustain their commitments.

time to read

11 mins

winter 2026

MIT Sloan Management Review

MIT Sloan Management Review

The Perils of Algorithmic Pricing

Some revenue management systems based on algorithms may lead to unintended collusion and antitrust violations.

time to read

9 mins

winter 2026

MIT Sloan Management Review

MIT Sloan Management Review

Broadening Future Perspectives at the Bank of England

Leaders at the U.K’s central bank sought to broaden their thinking about future risks and opportunities. Here’s how they built longer-term horizon-scanning capabilities and what they learned along the way.

time to read

9 mins

winter 2026

MIT Sloan Management Review

MIT Sloan Management Review

How Nesting Changes Platform Strategy

Should your platform host another platform — or be hosted by one? Here's how to think through the choices.

time to read

14 mins

winter 2026

MIT Sloan Management Review

Are You an Authentic Leader or an Authentic Jerk?

Leaders who are true to their values can inspire trust and respect, but not if \"being yourself\" becomes the problem.

time to read

13 mins

winter 2026

MIT Sloan Management Review

MIT Sloan Management Review

How to Make Scenario Planning Stick

Developing future scenarios can deepen leaders’ strategic insights. Establishing scenario planning as an ongoing capability and reaping its full benefits require linking it to other processes.

time to read

16 mins

winter 2026

MIT Sloan Management Review

MIT Sloan Management Review

A Faster Way to Build Future Scenarios

This streamlined approach to scenario planning incorporates AI and helps managers navigate future uncertainties more efficiently.

time to read

13 mins

winter 2026

Translate

Share

-
+

Change font size