Cybersecurity Statistics 2026: 55+ Data Points on Breach Costs, Attack Trends, and Market Growth

55+ cybersecurity statistics for 2026: $4.44M average breach cost (IBM), $244.2B security spending (Gartner), ransomware in 44% of breaches (Verizon DBIR), and $16.6B in cybercrime losses (FBI IC3).

The average data breach now costs $4.44 million globally — and $10.22 million in the United States (IBM, Cost of a Data Breach Report 2025). That global figure actually fell 9% year-over-year, the first decline in five years, driven almost entirely by AI-assisted detection. The threat picture underneath it did not improve: ransomware appeared in 44% of breaches (Verizon, DBIR 2025), the FBI logged $16.6 billion in reported cybercrime losses (FBI IC3, 2024 Internet Crime Report), and global security spending is set to hit $244.2 billion in 2026 (Gartner, February 2026). We aggregated data from the IBM Cost of a Data Breach Report 2025, the Verizon 2025 Data Breach Investigations Report, Gartner press releases, the FBI IC3 2024 report, the CrowdStrike 2026 Global Threat Report, the ISC2 2025 Workforce Study, ENISA, and dozens of other primary sources to build the reference set below.

Key Takeaways

  • The global average data breach cost is $4.44 million, down 9% from $4.88 million the prior year (IBM, Cost of a Data Breach Report 2025).
  • US breach costs hit an all-time high of $10.22 million — 2.3x the global average (IBM, Cost of a Data Breach Report 2025).
  • Worldwide information security spending will reach $244.2 billion in 2026, up 13.3% (Gartner, February 2026).
  • Ransomware was present in 44% of all breaches analyzed, up 37% year-over-year (Verizon, DBIR 2025).
  • The FBI logged $16.6 billion in reported cybercrime losses across 859,532 complaints in 2024, a 33% jump (FBI IC3, 2024 Internet Crime Report).
  • 60% of breaches involved a human element such as phishing or stolen credentials (Verizon, DBIR 2025).
  • AI was used in 16% of breaches, mostly for phishing and deepfakes (IBM, Cost of a Data Breach Report 2025).
  • Healthcare remains the costliest sector at $7.42 million per breach — the highest for 15 consecutive years (IBM, Cost of a Data Breach Report 2025).
  • The median eCrime breakout time fell to 29 minutes, with the fastest observed at 27 seconds (CrowdStrike, 2026 Global Threat Report).
  • 95% of organizations reported at least one cybersecurity skills gap on their teams (ISC2, 2025 Cybersecurity Workforce Study).
  • Global deepfake fraud losses reached $1.65 billion in 2025 (Surfshark Research, 2026).
  • Cybersecurity Ventures projects global cybercrime costs of $10.5 trillion for 2025 (Cybersecurity Ventures, 2026 Cybersecurity Market Report).

1. Market Size and Security Spending

Defensive budgets are climbing fast, but not as fast as the threat. Gartner forecasts worldwide end-user spending on information security at $244.2 billion in 2026, a 13.3% increase over 2025’s $213 billion (Gartner, February 2026). The standout detail: enterprises spend roughly 17x more on AI tooling than on securing the AI they deploy — a gap that defines the 2026 risk surface.

Worldwide information security spending (USD billions) $250B $190B $125B $65B $0 $183B $213B $244B 2024 2025 2026
Figure 1 — Worldwide end-user information security spending, 2024–2026. Source: Gartner press releases, July 2025 and February 2026.
MetricValueSource
Information security spending, 2026$244.2 billion (+13.3%)Gartner, February 2026
Information security spending, 2025$213 billionGartner, July 2025
Security software segment, 2026$121 billion (up from $106B in 2025)Gartner, 3Q25 Forecast
Managed security services growth, 202611.1% — fastest in servicesGartner, 3Q25 Forecast
Broader cybersecurity market, 2026 (range across firms)$197B–$306BMordor Intelligence; Fortune Business Insights; 2026
Projected global cybercrime cost, 2025$10.5 trillion annuallyCybersecurity Ventures, 2026 Cybersecurity Market Report

Source: Gartner — Top Cybersecurity Trends for 2026

Market-size estimates diverge widely because firms scope “cybersecurity” differently — some count only software, others include services and hardware. We cross-referenced Gartner, Mordor Intelligence, and Fortune Business Insights; treat any single market number as a directional estimate, not a precise figure.

2. Data Breach Costs

The global average breach cost dropped for the first time in half a decade — but the relief is uneven. The global average is now $4.44 million, down 9% year-over-year, while US breaches hit an all-time high of $10.22 million (IBM, Cost of a Data Breach Report 2025). The split tells the real story: organizations that deployed AI and automation extensively cut costs, while those facing heavy regulatory exposure (concentrated in the US) saw expenses climb.

MetricValueSource
Global average breach cost, 2025$4.44 million (down 9%)IBM, Cost of a Data Breach Report 2025
US average breach cost, 2025$10.22 million (all-time high)IBM, Cost of a Data Breach Report 2025
Savings from extensive AI/automation~$1.9 million per breachIBM, Cost of a Data Breach Report 2025
Extra cost from high “shadow AI” exposure+$670,000 per breachIBM, Cost of a Data Breach Report 2025
Breached orgs lacking AI access controls97% of AI-related incidentsIBM, Cost of a Data Breach Report 2025
Orgs with no AI governance policy63%IBM, Cost of a Data Breach Report 2025
Most common breach attack vectorPhishing (16% of breaches)IBM, Cost of a Data Breach Report 2025

Source: IBM — Cost of a Data Breach Report 2025

The cost decline is not a sign that defenders won — it reflects faster containment, not fewer attacks. Shadow AI (unsanctioned employee use of AI tools) is now a measurable cost driver. For the offense side of the AI equation, see our generative AI statistics for 2026.

3. Attack Types and Frequency

Ransomware and phishing remain the dominant entry points, and both are accelerating. Ransomware appeared in 44% of breaches analyzed by Verizon, up 37% year-over-year (Verizon, DBIR 2025). The DBIR’s 2025 edition drew on 22,000+ incidents and 12,195 confirmed breaches — its largest dataset ever.

Share of breaches by contributing factor (Verizon DBIR 2025) Human element 60% Ransomware present 44% Vuln. exploitation 34% Credential abuse 22% Phishing 16% 0% 50% 100%
Figure 2 — Contributing factors in confirmed data breaches. Categories overlap; a single breach can involve multiple factors. Source: Verizon, 2025 Data Breach Investigations Report.
MetricValueSource
Breaches involving the human element60%Verizon, DBIR 2025
Breaches involving ransomware44% (up 37% YoY)Verizon, DBIR 2025
Increase in vulnerability exploitation+34% YoYVerizon, DBIR 2025
Breaches starting with credential abuse22%Verizon, DBIR 2025
Breaches starting with phishing16%Verizon, DBIR 2025
Third-party involvement in breaches30% (doubled YoY)Verizon, DBIR 2025
Median ransom payment, 2025$115,000Verizon, DBIR 2025
Ransomware victims who refused to pay64%Verizon, DBIR 2025
Daily phishing emails sent worldwide~3.4 billionHoxhunt, Phishing Trends Report 2026

Source: Verizon — 2025 Data Breach Investigations Report

The 64% refusal rate is a defender’s win — payment compliance has dropped from roughly 50% two years ago. Voice-channel attacks are the fast-rising vector: vishing (voice phishing) surged 442% in CrowdStrike’s tracking, a reminder that audio is now an attack surface. VoxBooster builds consumer voice software, which is why we track deepfake statistics for 2026 closely.

4. Breach Costs and Threats by Industry

Sector exposure varies by an order of magnitude. Healthcare breaches cost $7.42 million on average — the highest of any industry for 15 straight years (IBM, Cost of a Data Breach Report 2025). Healthcare also takes the longest to recover: 279 days to identify and contain a breach, 38 days past the global average.

Industry / SectorMetricValueSource
HealthcareAverage breach cost$7.42 millionIBM, Cost of a Data Breach Report 2025
Financial servicesAverage breach cost$5.56 millionIBM, Cost of a Data Breach Report 2025
HealthcareBreach lifecycle279 daysIBM, Cost of a Data Breach Report 2025
Manufacturing & HealthcareRising motiveEspionage-driven attacksVerizon, DBIR 2025
EU public administrationShare of reported incidents38%ENISA, Threat Landscape 2025
EU transport (maritime/logistics)StatusEmerging high-value targetENISA, Threat Landscape 2025
Critical infrastructureRansomware impactIncreasingly targetedFBI IC3, 2024 Internet Crime Report

Source: IBM — Cost of a Data Breach: Healthcare Industry

Healthcare’s persistent lead is structural: medical records sell at a premium, legacy systems resist patching, and uptime requirements limit how aggressively teams can isolate compromised systems. Note that healthcare’s 2025 cost actually fell $2.35 million from 2024 — still the highest, but moving in the right direction.

5. AI in Cybersecurity — Offense and Defense

AI now sits on both sides of the conflict, and the data lets us measure each. On defense, organizations using AI and automation extensively saved roughly $1.9 million per breach and shortened the breach lifecycle by 68 days (IBM, Cost of a Data Breach Report 2025). On offense, AI-enabled adversaries increased their operations 89% year-over-year (CrowdStrike, 2026 Global Threat Report).

MetricValueSource
Breach cost with extensive AI/automation$3.62 millionIBM, Cost of a Data Breach Report 2025
Breach cost without AI/automation$5.52 millionIBM, Cost of a Data Breach Report 2025
Breaches in which attackers used AI16%IBM, Cost of a Data Breach Report 2025
Increase in AI-enabled adversary operations+89% YoYCrowdStrike, 2026 Global Threat Report
Phishing campaigns using AI-generated content80%+ENISA, Threat Landscape 2025
Orgs using or planning AI-enabled security tools97%IBM / industry survey, 2025
Top critical skill cited by security teamsAI (41% of respondents)ISC2, 2025 Cybersecurity Workforce Study
AI-amplified security market by 2029$160 billion (from $49B in 2025)Gartner, 4Q25 Forecast

Source: IBM — 2025 Cost of a Data Breach: Navigating the AI Rush

The asymmetry is the concern. Defenders use AI to compress detection time; attackers use it to compress attack time — and CrowdStrike clocked the median eCrime breakout time at 29 minutes, with one observed intrusion exfiltrating data four minutes after initial access. Autonomous attacker agents are no longer hypothetical. For the broader picture on autonomous systems, see our AI agents statistics for 2026.

6. The Workforce Gap and Future Projections

The talent story shifted in 2025: the shortage is now about skills, not just headcount. 95% of organizations reported at least one cybersecurity skills gap on their teams, and 59% called those gaps critical or significant — up from 44% the prior year (ISC2, 2025 Cybersecurity Workforce Study). For the first time, ISC2 declined to publish a single workforce-gap headcount, because survey respondents consistently rank skill needs above raw staffing.

Cybersecurity workforce indicators, 2025 (% of respondents) 100% 75% 50% 25% 0% 95% 88% 59% 41% Report a skills gap Incident tied to gap Gap is critical AI = top skill
Figure 3 — Workforce indicators from 16,029 cybersecurity practitioners surveyed. Source: ISC2, 2025 Cybersecurity Workforce Study.
MetricValueSource
Orgs reporting at least one skills gap95%ISC2, 2025 Cybersecurity Workforce Study
Gaps rated critical or significant59% (up from 44% in 2024)ISC2, 2025 Cybersecurity Workforce Study
Orgs with an incident linked to a skills shortage88%ISC2, 2025 Cybersecurity Workforce Study
Most-cited critical skillAI (41%), then cloud security (36%)ISC2, 2025 Cybersecurity Workforce Study
Global breach lifecycle, 2025241 days — 9-year lowIBM, Cost of a Data Breach Report 2025
Median eCrime breakout time29 minutes (fastest: 27 seconds)CrowdStrike, 2026 Global Threat Report
Projected global cybercrime cost by 2031$12.2 trillion annuallyCybersecurity Ventures, 2025
Global deepfake fraud losses, 2025$1.65 billionSurfshark Research, 2026

Source: ISC2 — 2025 Cybersecurity Workforce Study

The forward signal is a widening gap between attacker speed and defender capacity. Breakout time has compressed to 29 minutes while teams lack the skills to respond in kind — automation closes part of that gap, but not the judgment-dependent part. Cybersecurity Ventures expects cybercrime cost growth to plateau near 2.5% annually, reaching $12.2 trillion by 2031.

Cybersecurity by the Numbers (Summary)

MetricValueSource
Global average breach cost, 2025$4.44 million (down 9%)IBM, Cost of a Data Breach Report 2025
US average breach cost, 2025$10.22 million (record high)IBM, Cost of a Data Breach Report 2025
Healthcare average breach cost$7.42 million (highest 15 years running)IBM, Cost of a Data Breach Report 2025
Financial services average breach cost$5.56 millionIBM, Cost of a Data Breach Report 2025
Information security spending, 2026$244.2 billion (+13.3%)Gartner, February 2026
Projected global cybercrime cost, 2025$10.5 trillionCybersecurity Ventures, 2026 Market Report
FBI-reported cybercrime losses, 2024$16.6 billion (+33%)FBI IC3, 2024 Internet Crime Report
IC3 complaints filed, 2024859,532FBI IC3, 2024 Internet Crime Report
Business email compromise losses, 2024$2.77 billionFBI IC3, 2024 Internet Crime Report
Breaches involving ransomware44% (up 37% YoY)Verizon, DBIR 2025
Breaches involving the human element60%Verizon, DBIR 2025
Third-party involvement in breaches30% (doubled YoY)Verizon, DBIR 2025
Breaches in which attackers used AI16%IBM, Cost of a Data Breach Report 2025
Savings from extensive AI/automation~$1.9 million per breachIBM, Cost of a Data Breach Report 2025
Global breach lifecycle, 2025241 days (9-year low)IBM, Cost of a Data Breach Report 2025
Median eCrime breakout time29 minutesCrowdStrike, 2026 Global Threat Report
Malware-free detections, 202582%CrowdStrike, 2026 Global Threat Report
Orgs reporting a cybersecurity skills gap95%ISC2, 2025 Cybersecurity Workforce Study
EU incidents that were DDoS attacks77%ENISA, Threat Landscape 2025
Global deepfake fraud losses, 2025$1.65 billionSurfshark Research, 2026

Methodology and Sources

We aggregated data from primary research published by security vendors, government agencies, and analyst firms. Where estimates diverged — particularly on market size and average ransom payments — we cross-referenced at least two sources and flagged the range rather than picking one number.

Last updated: May 2026 Refresh cadence: We update this page quarterly as new earnings reports and industry research land.

The data points one direction: attacks scale faster than defenses, and AI is widening the gap on both sides. Voice is now part of that attack surface — vishing surged 442% and deepfake audio drove a meaningful share of 2025’s fraud losses. VoxBooster builds Windows voice software with security as a first-class concern; see how our plans are structured, or read our companion roundup on SaaS statistics for 2026 for the broader software-market context.

Try VoxBooster — 3-day free trial.

Real-time voice cloning, soundboard, and effects — wherever you already talk.

  • No credit card
  • ~30ms latency
  • Discord · Teams · OBS
Try free for 3 days