UK firms turn to back-ups over ransom payments

Ransomware payments by UK businesses have dropped sharply, with just 17% of victims paying attackers in the past year, according to Databarracks’ newly published Data Health Check 2025. This is down from 27% in 2024 and 44% in 2023.

The annual survey of 500 IT decision-makers found organisations are now more than three times more likely to recover from back-ups than to pay. In 2025, 57% of affected organisations recovered from back-ups, supported by improved back-up practices, with 72% now having air-gapped back-ups and 59% using immutable back-ups.

More firms are also taking a hard line, with 24% having a policy never to pay a ransom – double the figure from 2023. The shift coincides with government plans to ban payments by public sector bodies and critical national infrastructure operators, alongside mandatory reporting and pre-payment notification for the private sector.

James Watts, managing director at Databarracks, said: “The government’s new stance is bold – but the data shows the direction of travel was already clear. In some sense, the policy is a formalisation of where UK businesses were already headed. Paying the ransom used to feel like the only option. Now, the best-prepared organisations are recovering faster, more reliably, and without funding criminals. Air-gapped and immutable back-ups are giving organisations the confidence to say no – and back it up.”

The report found improving back-up processes has become the top IT resilience priority for UK organisations, ahead of both continuity planning and recovery testing.



Share Story:

YOU MIGHT ALSO LIKE


Building cyber resilience in a complex threat landscape
Cyber threats are evolving faster than ever. This episode explores how organisations can strengthen defences, embed resilience, and navigate regulatory and human challenges in an increasingly complex digital environment.

The Future of Risk & Resilience with AI & Data
CLDigital's Co-Founder, Tejas Katwala, joins CIR Magazine to discuss how CLDigital is transforming enterprise risk and resilience. By integrating business processes, AI and data-centric strategies, organisations can move beyond compliance to proactive risk management – simplifying operations, strengthening resilience, and driving business performance. Listen now to explore the future of intelligent risk management.