TMCnet News
Black Kite Research Reveals That Ransomware's Primary Target Is the Mid-Market, Not Enterprises as Widely AssumedBlack Kite's first mid-market study finds that from 2023 through H1 2026, 73% of ransomware attacks in North America and Europe hit companies with $10M to $1B in annual revenue BOSTON, Aug. 18, 2026 /PRNewswire/ -- Black Kite, the leader in third-party cyber risk management, today released its newest report, Mid-Market Is the Routine Target: Ransomware, Third-Party Risk, and the Widening AI Gap. Assessing 120,128 mid-market organizations across North America and Europe from an attacker's perspective, the report examines why these companies bear the brunt of ransomware attacks, and draws on disclosed incident data and external attack-surface scans to understand the pattern and what mid-market companies can do to protect themselves.
"This is the first time we examined the mid-market as a segment in its own right, rather than a set of companies scattered through larger studies," said Ferhat Dikbiyik, Chief Research & Intelligence Officer (CRIO), Black Kite. "The report is only the beginning. We're continuously expanding Black Kite with capabilities designed specifically for mid-market organizations, helping smaller security teams identify, prioritize, and reduce cyber risk without requiring enterprise-sized teams or budgets." Black Kite's analysis of 13,336 ransomware incidents with verifiable revenue across North America and Europe from January 2023 to June 2026 found that 73% of those incidents struck mid-market organizations with annual revenues between $10M and $1B. This concentration has proven highly consistent over time: 74.6% in 2023, 72.1% in 2024, 74% in 2025, and 72.3% during the first half of 2026. Even as the absolute number of incidents grew by 44%, surging from 2,320 in 2023 to 3,340 in 2025, the proportion of mid-market targets held firm. Additional findings from the report:
Mid-market organizations face a growing challenge. They are increasingly targeted by ransomware while also exposed to cyber risk across hundreds of third-party vendors. Both require continuous visibility and rapid response, stretching even well-resourced security teams. Mid-market companies also sit inside the vendor profile of the larger organizations they serve. Regulation on both sides of the Atlantic, from the EU's NIS2 Directive to U.S. rules like NYCRR 500 and HIPAA, increasingly makes a customer responsible for its suppliers' security, which puts mid-market vendors under direct pressure to prove their posture. AI Is Widening the Gap The report findings point to a clear conclusion: mid-market exposure is measurable, the obligation to address it is real, and the constraint is capacity. Organizations need security capabilities that help them identify, prioritize, and reduce cyber risk without requiring enterprise-sized teams or budgets. To help mid-market organizations understand their own exposure, Black Kite is offering a complimentary Ransomware Susceptibility Index® (RSI™) Briefing. Based on Black Kite's industry-leading ransomware intelligence, the briefing provides:
Request your complimentary RSI™ Briefing at: https://blackkite.com/free-rsi-rating Organizations ready to go further can gain ongoing access to Black Kite's intelligence, including RSI™, FocusTags®, and Digital Breach Intelligence (DBI), and integrate AI into their security program with Black Kite's AI Agent. Organizations can manage the Black Kite platform either directly or through a trusted Managed Security Service Provider (MSSP). To read the report, visit https://blackkite.com/reports/2026-mid-market-report/ Methodology About Black Kite Media Contact:
SOURCE Black Kite
|
