dilemma Pay up or not? Ransomware surge has victims facing tough choices Governments look at banning ransom payments in face of increasingly sophisticated threats. Hannah Murphy, Financial Times β Jul 20, 2026 10:00 am | 15 Credit: Suebsiri Srithanyarat / EyeEm / Getty Images Credit: Suebsiri Srithanyarat / EyeEm / Getty Images Text settings Story text Size Small Standard Large Width * Standard Wide Links Standard Orange * Subscribers only Β Β Learn more Minimize to nav Nearly half of companies that are targets of a ransomware cyber attack end up paying a ransom to release their data or systems, according to 2025 research from cyber security group Sophos, while the median amount demanded is rising. Globally, some jurisdictions are responding by banning payments to hackers. In the UK, for example, the government is advancing plans to prohibit public sector bodies and critical national infrastructure groupsβincluding the National Health Service, local councils and schoolsβfrom making payouts. The potential veto comes as ransomware hackers have become more advanced and meticulous in their targeting of companies, particularly vulnerable small and medium-sized businesses, over time.
βIn 2026, the ransomware landscape has evolved into a highly sophisticated, corporate-style ecosystem,β says Haydn Brooks, chief executive of supply chain security group Risk Ledger. βWhile ransomware groups operate like smart B2B operations to ensure data return, the legal and sanction risks of paying are at an all-time high.β This has been powered by the rise of malicious AI hacking tools such as WormGPT, FraudGPT and BruteForceAI, according to Dave Spillane, systems engineering director at Fortinet, who notes that confirmed ransomware victims rose 389 percent year-on-year in 2025, from around 1,600 in 2024 to 7,831 globally. βIn the time it would have previously taken to commit one ransomware attack, hackers can now target four separate organizations simultaneously,β he says. βThe cost per attack has dramatically decreased, commoditising sophisticated attacks, whereas the cost to defend is increasing,β agrees Shashi Kiran, chief marketing officer of tech group Nile.
Source: https://arstechnica.com/security/2026/07/pay-up-or-not-ransomware-surge-has-victims-facing-tough-choices/
βIn 2026, the ransomware landscape has evolved into a highly sophisticated, corporate-style ecosystem,β says Haydn Brooks, chief executive of supply chain security group Risk Ledger. βWhile ransomware groups operate like smart B2B operations to ensure data return, the legal and sanction risks of paying are at an all-time high.β This has been powered by the rise of malicious AI hacking tools such as WormGPT, FraudGPT and BruteForceAI, according to Dave Spillane, systems engineering director at Fortinet, who notes that confirmed ransomware victims rose 389 percent year-on-year in 2025, from around 1,600 in 2024 to 7,831 globally. βIn the time it would have previously taken to commit one ransomware attack, hackers can now target four separate organizations simultaneously,β he says. βThe cost per attack has dramatically decreased, commoditising sophisticated attacks, whereas the cost to defend is increasing,β agrees Shashi Kiran, chief marketing officer of tech group Nile.
Source: https://arstechnica.com/security/2026/07/pay-up-or-not-ransomware-surge-has-victims-facing-tough-choices/