Zscaler ThreatLabz Report: Ransomware Data Theft Surges to 238 TB in One Year
Zscaler’s 2025 ThreatLabz Ransomware Report reveals a dramatic escalation in global ransomware activity, with data theft volumes skyrocketing 92% year‑over‑year to 238 TB. The report highlights a 146% rise in ransomware attacks blocked by the Zscaler cloud and a 70% increase in public extortion cases, underscoring the shift from encryption toward data exfiltration as the primary pressure tactic. Manufacturing, Technology, and Healthcare remained the most targeted sectors, while the Oil & Gas industry saw a staggering 935% surge in attacks due to its reliance on automated and legacy systems.
The United States accounted for half of all ransomware victims, with incidents doubling to 3,671—more than all other top 15 countries combined. Leading groups such as RansomHub, Akira, and Clop dominated the threat landscape, supported by a growing number of affiliates and initial access brokers. Zscaler emphasized that modern ransomware thrives in fragmented, legacy environments and advocated for Zero Trust Everywhere combined with AI‑powered defenses to minimize attack surfaces, block lateral movement, and prevent exfiltration before extortion demands arise.
#Cybersecurity #Ransomware #Zscaler #ThreatLabz #DataBreach #ZeroTrust #InfoSec #CyberAttack #AIsecurity #DataExfiltration #CyberThreats #CloudSecurity #DigitalRisk #IncidentResponse #EnterpriseSecurity #CyberDefense #HealthcareSecurity #ManufacturingSecurity #TechIndustry #OilAndGas #DataProtection #NetworkSecurity #Malware #Clop #Akira #RansomHub #ThreatIntelligence #SecurityReport #CyberResilience #AIpoweredSecurity
