The leading cybersecurity vendor warns about the most damaging consequences of cyber‑attacks, uncovers the primary motives of threat actors, and the departments most frequently targeted. Findings from the new global survey of small‑ and medium‑size businesses (SMBs) underscore the growing need for advanced and purpose-built protection.
As small and medium-sized businesses increasingly become a battleground for digital threat actors, understanding the true operational and financial impact of security breaches has never been more critical. A new global survey by Kaspersky draws attention to the key security gaps of companies below 500 employees and highlights critical risk areas.
According to a poll of IT and IT security professionals in the SMB sector, an overwhelming 86% of respondents stated they had experienced at least one cyber incident in the last year. Among them, the top threats cited as the most damaging were phishing attacks, software exploits, mass malware, ransomware, and attacks targeting AI vulnerabilities.
Specifically, financial loss emerged as the leading consequence of the most harmful incident, cited by 22% of respondents. Other major impacts followed closely, each affecting nearly one-fifth of companies: theft of customer data, temporary disruption to client-facing services like websites and online stores, loss of control over IT infrastructure, and general business process disruption.
The survey also highlights the irreversible nature of some of the damage: 16% of companies reported irrecoverable data loss, while 13% suffered irreversible damage to corporate assets. This underscores the long‑term risks that cyber incidents pose to SMBs.

Global Kaspersky B2B Market Pulse survey: What was the result of the most harmful incident your organization experienced over the past 12 months? (Multiple choice)
Adversaries’ Primary Objectives
Respondents indicated that, beyond the immediate financial impact, attackers focused heavily on data theft. The most frequently targeted information included clients’ data (32%), sensitive internal information such as financial credentials, legal documents, etc (28%), employees’ credentials (25%), and the organization’s business strategy (23%). This pattern reflects a strategic shift toward extracting valuable data that can be monetized or leveraged for further attacks.
Most Targeted Departments
The data shows that cybercriminals concentrate their efforts on IT and IT‑security teams, with 50% of the most harmful attacks directed at IT and 46% at IT‑security departments. Accounting and finance departments were the third most targeted area (24%). On average, three departments were compromised simultaneously during the most severe incidents. Notably, SMBs experience a higher incidence of attacks through customer‑service channels (21%) compared with mid‑market (15%) and large enterprises (17%).
Actions taken
Recent breaches have compelled companies to implement additional cybersecurity measures across processes, people, and technologies. The top priority is deploying IT security monitoring solutions (24%), followed by hardening third-party compliance requirements (23%) and upgrading credential management practices (23%). An almost equal share of organizations focused on deploying security software across all employee devices and investing in specialized training to boost IT staff expertise (22%).
“Cyber incidents often inflict far more devastating consequences on small and medium-sized companies than high-profile breaches do on large corporations. Sometimes, it can threaten the very survival of these resource-constrained businesses”, comments Ilya Markelov, Head of Unified Platform Product Line at Kaspersky. “Faced with diverse and intense threats, operational constraints, and specific growth objectives, SMBs urgently need scalable, purpose-built protection. Kaspersky Next Optimum, our flagship offering for this segment, is engineered to bring expert and flexible security within reach for growing businesses. With the new suite of customizable, add-on Security Modules, users can further extend capabilities of its core products and strengthen defenses as new needs or challenges evolve.





