Ifrah Yousuf graphic of computer

Cyber-Insurance Rates Soaring Thanks to Rise in High-Cost Ransomware Attacks

Insurers have made “dramatic” increases in premiums for cyber-insurance and are considering lowering the ransom amounts they will pay.

Cyber-insurance rates are set to increase by as much as 25 percent thanks to insurance companies having to pay out expensive claims related to ransomware attacks, according to a Reuters report.

While ransomware attacks happened slightly less frequently in 2019 as compared to the year before, hackers are beginning to ask for higher payoffs and are doing more damage when they attack businesses or governments. Some cybersecurity experts have even gone so far as to blame insurance companies for exacerbating the problem, as many insurers would rather pay the ransom than deal with ongoing cybersecurity costs for their clients.

“The onus isn’t on the insurance company to stop the criminal, that’s not their mission,” Loretta Worters, a spokeswoman for the Insurance Information Institute, told ProPublica in August. “Their objective is to help you get back to business. But it does beg the question, when you pay out to these criminals, what happens in the future?”

Cyber-insurance premiums began to rise 5 percent to 25 percent late in 2019, Robert Parisi, the U.S. cyber product leader at Marsh & McLennan Companies, told Reuters. Policies often cover data recovery, legal liabilities and negotiators who can translate from hackers’ native languages, according to the report. Insurers have made “dramatic” increases but have not scaled back coverage, Parisi said.

Some insurers, like Sompo, are considering lowering the amounts they will pay for ransomware attacks against high-risk companies and require clients to pay 20 to 30 percent of ransomware claims, according to Reuters. Other insurance companies are thinking about making ransomware a separate product from general cyber-insurance coverage.

The high costs associated with ransomware attacks are also associated with the increasing amount of attacks on managed service providers responsible for the IT services of several companies, particularly hospitals and medical businesses. This means that one successful attack can encrypt sensitive data for dozens of facilities or companies at once, incentivizing the managed service provider to pay the ransom so that their clients can get access to crucial data as fast as possible.

In turn, malicious actors see that they can continue to raise ransoms and be rewarded by insurers and the desperate companies themselves.

While ransom payment can encourage attackers, it’s up to insurers to decide the cost-benefit analysis and make the right decision for all involved, according to Michael Lee, the city spokesman for Lake City, Florida, which was a ransomware attack victim in 2019.

“The insurer is the one who is going to get hit with most of this if it continues,” Lee told ProPublica. “It’s kind of hard to argue with them because they know the cost-benefit of [paying ransoms]. I have a hard time saying it’s the right decision, but maybe it makes sense with a certain perspective.”

Illustration courtesy of Ifrah Yousuf, via the Cybersecurity Visuals Challenge

About the Author

Haley Samsel is an Associate Content Editor for the Infrastructure Solutions Group at 1105 Media.

Featured

  • Survey: 60 Percent of Organizations Using AI in IT Infrastructure

    Netwrix, a cybersecurity provider focused on data and identity threats, today announced the release of its annual global 2025 Cybersecurity Trends Report based on a global survey of 2,150 IT and security professionals from 121 countries. It reveals that 60% of organizations are already using artificial intelligence (AI) in their IT infrastructure and 30% are considering implementing AI. Read Now

  • New Research Reveals Global Video Surveillance Industry Perspectives on AI

    Axis Communications, the global industry leader in video surveillance, has released its latest research report, ‘The State of AI in Video Surveillance,’ which explores global industry perspectives on the use of AI in the security industry and beyond. The report reveals current attitudes on AI technologies thanks to in-depth interviews with AI experts from Axis’ global network and a comprehensive survey of more than 5,800 respondents, including distributors, channel partners, and end customers across 68 countries. The resulting insights cover AI integration and the opportunities and challenges that exist with regard to security, safety, business intelligence, and operational efficiency. Read Now

  • SIA Urges Tariff Relief for Security Industry Products

    Today, the Security Industry Association has sent a letter to U.S. Trade Representative Jamieson Greer and U.S. Secretary of Commerce Howard Lutnick requesting relief from tariffs for security industry products and asking that the Trump administration formulate a process that allows companies to apply for product-specific exemptions. The security industry is an important segment of the U.S. economy, contributing over $430 billion in total economic impact and supporting over 2.1 million jobs. Read Now

  • Report Shows Cybercriminals Continue Pivot to Stealthier Tactics

    IBM recently released the 2025 X-Force Threat Intelligence Index highlighting that cybercriminals continued to pivot to stealthier tactics, with lower-profile credential theft spiking, while ransomware attacks on enterprises declined. IBM X-Force observed an 84% increase in emails delivering infostealers in 2024 compared to the prior year, a method threat actors relied heavily on to scale identity attacks. Read Now

  • 2025 Security LeadHER Conference Program Announced

    ASIS International and the Security Industry Association (SIA) – the leading membership associations for the security industry – have announced details for the 2025 Security LeadHER conference, a special event dedicated to advancing, connecting and empowering women in the security profession. The third annual Security LeadHER conference will be held Monday, June 9 – Tuesday, June 10, 2025, at the Detroit Marriott Renaissance Center in Detroit, Michigan. This carefully crafted program represents a comprehensive professional development opportunity for women in security this year. To view the full lineup at this year’s event, please visit securityleadher.org. Read Now

    • Industry Events

New Products

  • ResponderLink

    ResponderLink

    Shooter Detection Systems (SDS), an Alarm.com company and a global leader in gunshot detection solutions, has introduced ResponderLink, a groundbreaking new 911 notification service for gunshot events. ResponderLink completes the circle from detection to 911 notification to first responder awareness, giving law enforcement enhanced situational intelligence they urgently need to save lives. Integrating SDS’s proven gunshot detection system with Noonlight’s SendPolice platform, ResponderLink is the first solution to automatically deliver real-time gunshot detection data to 911 call centers and first responders. When shots are detected, the 911 dispatching center, also known as the Public Safety Answering Point or PSAP, is contacted based on the gunfire location, enabling faster initiation of life-saving emergency protocols.

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file.