Serious cyberattacks on the rise, report shows

The number of organisations hit with cyberattacks is rising, according to a new report focused on US and UK businesses.

Please note: This item is from our archives and was published in 2022. It is provided for historical reference. The content may be out of date and links may no longer function.

About 75% of organisations have experienced a serious cyberattack in the past three years — up from 60% last year — according to the 2022 Cyber Security Insights Report conducted by S-RM, a global intelligence and cybersecurity consultancy.

The report, using information from 600 C-suite and IT budget holders from organisations with more than $500 million in revenue, also found that US businesses were slightly more likely to experience a serious cyberattack (77%) than those in the UK (73%), although both markets saw an increase in attacks.

“This is a growing problem and one with serious ramifications for affected organisations,” S-RM board director Jamie Smith said.

The attacks averaged almost $3.4 million in damage, with a reported average direct loss from a serious cyber incident of $1.5 million — which doesn’t take into account the long-term fallout of further financial losses.

“Often businesses will focus on the direct financial impact of a cyber incident, but the indirect impact can be even higher and far more difficult for them to accurately quantify,” Smith said.

Indirect losses, such as reputation damage or ransoms paid by an insurer, were often costlier than the initial incident, averaging $1.87 million. They were higher amongst UK IT leaders ($1.95 million) than US IT leaders ($1.79 million).

The most common impacts of cyber incidents were the result of operational downtime (reported by 40% of respondents), increased insurance premiums (36%), reputational damage (34%), and legal costs (34%).

— To comment on this article or to suggest an idea for another article, contact Kevin Brewer at Kevin.Brewer@aicpa-cima.com.

Up Next

Organisational design, not skills, limits AI adoption

By Steph Brown
June 4, 2026
A new global report finds that organisational design might be limiting the potential of AI tools more than skills gaps.
Advertisement

LATEST STORIES

How to determine what you’re worth

People power keeps productivity growing with AI

4 steps for businesses to establish an AI governance policy

Organisational design, not skills, limits AI adoption

Optimism mixed among US finance leaders

Advertisement
Read the latest FM digital edition, exclusively for CIMA members and AICPA members who hold the CGMA designation.
Advertisement

Related Articles

4 steps for businesses to establish an AI governance policy