The statistical analysis we conducted was meant to help us draw insightful conclusions
regarding the “double extortion” tactic. First, we detected that victims who were hit
by both ransomware infection and data exfiltration/leak originated from 63 countries.
Second, the top ten affected countries constitute 87% of the total victims. The top
ten affected countries, as can be seen in the pie chart above, were as follows:
Several conclusions can be drawn from these findings:
+ 8 of the top 10 countries (excluding Brazil and India) are Western countries.
+ The number of victims is the USA – 615, accounts for 56% of the victims, i.e. more
than half of the victims were American.
+ Canada, the second most targeted country, had 83 victims, constituting only 8%
of the total victims.
Chile 2 0.2%
Kenya 2 0.2%
Qatar 2 0.2%
Romania 2 0.2%
Denmark 2 0.2%
Oman 2 0.2%
Costa Rica 2 0.2%
Indonesia 2 0.2%
Luxembourg 2 0.2%
Sri Lanka 2 0.2%
Kosovo 1 0.1%
Montserrat 1 0.1%
Turkey 1 0.1%
Greece 1 0.1%
Croatia 1 0.1%
Czech Republic 1 0.1%
Lebanon 1 0.1%
Zimbabwe 1 0.1%
Bahrain 1 0.1%
Puerto Rico 1 0.1%
Egypt 1 0.1%
North Macedonia 1 0.1%
Panama 1 0.1%
Vietnam 1 0.1%
Guatemala 1 0.1%
Nigeria 1 0.1%
Algeria 1 0.1%
Jamaica 1 0.1%
Pakistan 1 0.1%
Malaysia 1 0.1%
Dominican
Republic 1 0.1%
USA 615 56%
Canada 83 8%
UK 59 5%
France 57 5%
Germany 48 4%
Italy 31 3%
Australia 19 2%
Brazil 19 2%
Spain 16 1%
India 14 1%
Switzerland 9 1%
Japan 9 1%
South Africa 9 1%
Mexico 8 1%
UAE 8 1%
Belgium 6 1%
Austria 6 1%
Israel 5 0.5%
Sweden 4 0.4%
New Zealand 4 0.4%
Norway 4 0.4%
Colombia 4 0.4%
South Korea 3 0.3%
Taiwan 3 0.3%
China 3 0.3%
Saudi Arabia 3 0.3%
Argentina 3 0.3%
Hong Kong 3 0.3%
Thailand 3 0.3%
Singapore 3 0.3%
The Netherlands 3 0.3%
Country Victims Percentage Country Victims Percentage
12 | The Ransomware Landscape