惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

B
Blog
量子位
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Last Week in AI
Last Week in AI
酷 壳 – CoolShell
酷 壳 – CoolShell
人人都是产品经理
人人都是产品经理
Jina AI
Jina AI
雷峰网
雷峰网
博客园_首页
WordPress大学
WordPress大学
博客园 - 司徒正美
爱范儿
爱范儿
博客园 - 聂微东
IT之家
IT之家
美团技术团队
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
博客园 - 三生石上(FineUI控件)
有赞技术团队
有赞技术团队
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
T
Tailwind CSS Blog
博客园 - Franky
V
V2EX
GbyAI
GbyAI
阮一峰的网络日志
阮一峰的网络日志

Help Net Security

ChatGPT advanced account security adds passkeys and hardware keys Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for months Automating Pentest Delivery: A Step-by-Step Guide - PlexTrac Open-source privacy proxy masks PII before prompts reach external AI services Shadow AI risks deepen as 31% of users get no employer training Identity is the control plane for distributed infrastructure AI traffic is getting bigger, louder, and less predictable New infosec products of the month: April 2026 cPanel zero-day exploited for months before patch release (CVE-2026-41940) Cisco releases open-source toolkit for verifying AI model lineage Met Police face criticism for using AI to spy on their own officers Nine-year-old Linux kernel flaw enables reliable local privilege escalation (CVE-2026-31431) Hacker with a special interest in breaching sports institutions ends behind bars - Help Net Security IP Fabric MCP server adds governance and control to enterprise AIOps workflows - Help Net Security Aqua Compass MCP server enables real-time investigation and containment of runtime threats - Help Net Security Google brings instant email verification to Android, no OTP needed - Help Net Security If cyber espionage via HDMI worries you, NCSC built a device to stop it - Help Net Security Apple fixes iPhone bug that let FBI retrieve deleted Signal messages(CVE-2026-28950) - Help Net Security GopherWhisper APT group hides command and control traffic in Slack and Discord - Help Net Security OpenAI tackles a bad habit people have when interacting with AI - Help Net Security A year in, Zoom's CISO reflects on balancing security and business - Help Net Security Scenario: Open-source framework for automated AI app red-teaming - Help Net Security GDPR works, but only where someone enforces it - Help Net Security Ransomware, fraud, and lawsuits drive cyber insurance claims to new peaks - Help Net Security Google’s Workspace Intelligence promises privacy while running on your data - Help Net Security Cyberattack on French government agency triggers phishing alert - Help Net Security Claude Mythos finds 271 Firefox flaws, Mozilla believes zero-days are numbered - Help Net Security Prove Identity Platform connects verification, authentication, and fraud prevention - Help Net Security New Mirai variants target routers and DVRs in parallel campaigns - Help Net Security Acronis GenAI Protection gives MSPs control over AI usage and data risks - Help Net Security
Downtime has become a $600 billion business problem
Anamarija Po · 2026-05-22 · via Help Net Security

The average cost of downtime has reached $600 billion for the Global 2000, a 50% increase in two years. According to Splunk’s The Hidden Costs of Downtime report, unplanned outages and service degradation cost each company an average of $300 million.

average downtime cost

Percentage of technology executives who consider a direct cost very or prohibitively disruptive (2024 versus 2026) (Source: Splunk)

The consequences of an outage

Delayed product launches, brand damage, and stock declines continue to affect companies after systems return online. Customer expectations, cybersecurity threats, rising incident costs, and regulatory pressure have made downtime a priority for technology leaders.

Internal vulnerabilities, cyber threats, AI-related complexity, and growing reliance on third-party services contribute to an average of 60 downtime and service degradation incidents each year.

Costs have also increased since 2024. Lost revenue reached $95 million, nearly double the previous figure, while regulatory fines and ransomware payouts rose to $51 million and $40 million. Technology leaders say regulatory fines create the greatest disruption, with 57% identifying them as highly disruptive.

Regulatory and ransomware costs are increasing

Regulatory fines have increased as enforcement has become stricter. Rules such as GDPR and DORA place stronger requirements on financial institutions and impose penalties for outages, weak resilience, poor incident reporting, and third-party risks.

Although most finance executives say they advise against paying ransomware demands, ransomware payments remain one of the largest direct expenses, with about 40% of finance leaders admitting they pay attackers.

Ransomware attacks have become more targeted, with attackers focusing on revenue-generating systems, disabling backups, and setting demands based on downtime costs.

Downtime creates long-term business impact

When systems fail, customer support requests rise, complaints spread on social media, and security, IT, and engineering teams move to incident response. Marketing teams prepare public statements while executives monitor financial impact.

The effects continue after services recover, delaying product work, increasing investor concerns, and weakening brand trust. Rebuilding trust can take months.

Almost 20% of marketing professionals say brand reputation takes a quarter to recover after an incident. Companies also report an average stock decline of 3.4% following downtime events, up from 2.5% in 2024.

Investors are paying closer attention to operational resilience. Nearly half of technology leaders say shareholders raised concerns about downtime during the past year, viewing it as a sign of broader issues such as weak risk management and outdated infrastructure.

Third-party dependencies increase outage risk

Human error causes most downtime incidents, while phishing, malware, and ransomware often create the greatest impact. AI has also made phishing attacks more convincing and harder to detect.

Third-party services, including SaaS platforms, APIs, and cloud providers, have become a major source of outages. For ITOps and engineering leaders, downtime caused by third parties increased from 24% in 2024 to 63% in 2026.

“When an issue originates from a SaaS or third-party application, security teams must navigate a complex web of cloud, on-premises environments, and other infrastructure they often have no visibility into,” said Peter Sprenger, Splunk Field CTO. “The problem is intensified by siloed ownership and a lack of visibility into critical dependencies.”

Poor coordination between security, IT, and engineering teams can also delay responses and increase the impact of incidents.

Organizations rank end-to-end visibility as their top investment priority for improving resilience, ahead of infrastructure spending.

AI tools are transforming downtime

Organizations are spending a median of $24.5 million annually on AI tools designed to prevent and respond to outages, while 44% of technology respondents already use agentic AI.

The most common use case is incident triage and root cause analysis. 54% of respondents use generative AI and 27% use AI agents for these tasks. AI tools help teams correlate data, summarize incidents, recommend next steps, diagnose problems, and execute fixes such as code rollbacks.

Industry downtime

Information services and technology recorded the highest downtime costs at $402 million, driven by disruptions involving cloud, SaaS, and API providers. Energy and utilities followed at $364 million, while retail reached $357 million.

Downtime costs in financial services, manufacturing, and transportation and logistics stem from regulatory, contractual, and legal penalties.

EMEA records the highest downtime costs because of compliance failures and security-related expenses. In APAC, lost revenue remains the largest cost driver. North America records the highest staffing and productivity costs, while LATAM reports lower overall costs.

Security expenses remain a major source of downtime costs worldwide, while system upgrades account for a smaller share, suggesting organizations still spend more on responding to incidents than preventing them.