REPORTS

Ransomware 2025 survey — in partnership with YouGov Australia A shift from payment dependent strategies

November 17, 2025

The 2025 McGrathNicol Ransomware Report reveals a fundamental shift in how Australian businesses are approaching ransomware risk.

The survey included a sample of over 800 decision makers across Australian businesses with 50 or more employees. It was designed to reflect the current Australian business landscape, one dominated by small to medium-sized enterprises (SMEs). With 89% of organisations that have experienced an attack in the past 12 months falling within this category, the financial and operational burden on SMEs is substantial.

In positive news, the findings revealed some of the largest year-on-year changes in the study’s history: the average amount that businesses say they are willing to pay has declined significantly from $1.42 million in 2024 to $906,000 in 2025. This points to a change in payment attitudes, the effectiveness of governance and reporting changes, and a shift away from paymentdependent strategies. The change also coincides with 96% of organisations feeling prepared to respond to cyber attacks—up from 93%. Almost a third (32%) of respondents say their business was able to successfully defend against an attack, which signals maturing market approaches with greater emphasis on resilience.

The survey reveals three critical payment drivers: insurance coverage amounts continue to decline, regulatory and reputational pressure is increasing; and there is growing scepticism of ransom payments as then ‘default’ or most viable recovery option.

SHARE:
Price: FREE

About the Provider

McGrathNicol
McGrathNicol is a specialist Advisory and Restructuring firm, with a reputation for helping businesses improve performance, manage risk, and achieve stability and growth. All businesses face unique challenges, and we tailor our approach to meet the needs of our clients. We provide accountable and actionable advice, and we pride ourselves on delivering the results our clients need.

TOPICS

Ransomware