< Back to all clusters
[TECHNOLOGY] · Germany · 2 sources

Corporate Backup Strategies to Counter Ransomware and Wiper Attacks

A recent study of German enterprises shows that most companies lack the technical foundation to recover from ransomware without paying a ransom. While 60 % of firms that pay regain access to their data, one‑third must make additional payments and 8 % never recover their files. Overall, 84.5 % of affected organizations restore operations without any ransom payment.

Effective backup protection requires three core principles: immutable storage (e.g., WORM‑enabled object storage with Object‑Lock), strict isolation of backup environments from production systems, and role‑based access controls that prevent even privileged administrators from deleting backups. Yet only 41 % of surveyed firms isolate backups, 47 % test them regularly, and 35 % consider their tools adequate.

Separately, destructive wiper attacks—often state‑sponsored—are emerging as a major threat, capable of erasing massive volumes of data (a recent case involved an estimated 12 petabytes). To build cyber resilience, companies should adopt a comprehensive process covering preparation, identification, containment, eradication, and recovery. This includes using immutable, isolated backups, enforcing least‑privilege principles, employing separate authentication mechanisms, and leveraging a “clean‑room” workflow for forensic analysis and system rebuilding. Modern data‑management platforms can support these steps while remaining invisible to attackers.