Advertisement
Canada markets closed
  • S&P/TSX

    21,947.41
    +124.19 (+0.57%)
     
  • S&P 500

    5,127.79
    +63.59 (+1.26%)
     
  • DOW

    38,675.68
    +450.02 (+1.18%)
     
  • CAD/USD

    0.7307
    -0.0006 (-0.09%)
     
  • CRUDE OIL

    77.99
    -0.96 (-1.22%)
     
  • Bitcoin CAD

    86,450.27
    +5,898.05 (+7.32%)
     
  • CMC Crypto 200

    1,358.64
    +81.66 (+6.40%)
     
  • GOLD FUTURES

    2,310.10
    +0.50 (+0.02%)
     
  • RUSSELL 2000

    2,035.72
    +19.61 (+0.97%)
     
  • 10-Yr Bond

    4.5000
    -0.0710 (-1.55%)
     
  • NASDAQ

    16,156.33
    +315.37 (+1.99%)
     
  • VOLATILITY

    13.49
    -1.19 (-8.11%)
     
  • FTSE

    8,213.49
    +41.34 (+0.51%)
     
  • NIKKEI 225

    38,236.07
    -37.98 (-0.10%)
     
  • CAD/EUR

    0.6787
    -0.0030 (-0.44%)
     

Cyberattacks are on the rise, and that includes small businesses. Here's what to know

NEW YORK (AP) — Cyberattacks on businesses are rising, including small businesses. It's a troubling trend because a breach can be very costly and time consuming if owners don't have a plan to deal with one.

According to the Verizon 2023 Data Breach Investigations Report, the median cost per ransomware attack — which features a type of malicious software designed to block access to a computer system until a sum of money is paid — more than doubled over the past two years to $26,000.

That's partly because there has been a dramatic increase in ransomware attacks, which represent 24% of all breaches.

Small businesses should first have a plan in place to prevent cyberattacks. The human element is the cause of 74% of breaches, so owners should make sure all of their employees use safeguards such as two-factor identification to make it harder to be hacked. Requiring employees to regularly change their passwords can also help.

ADVERTISEMENT

If your business has been breached, it's best to work with a cybersecurity executive within your company or a trusted third party to assess what happened and the damage done. Trying to contain it without having the right technical knowledge can just make things worse.

It's also important to let the authorities know what happened. Attacks must be reported to federal authorities within 72 hours after a company is reasonably sure one has occurred.

Mae Anderson, The Associated Press