Newsletter Subscribe
Enter your email address below and subscribe to our newsletter

Ransomware has been around for 35 years, with the first known case involving the AIDS Trojan. This malware was spread using physical disks, pretending to be software to assess people’s risk of developing AIDS.
Since then, ransomware has become a major cyber threat, with up to 150 attacks reported each year in the Netherlands, according to Cyberveilig Nederland’s Ransomware Year in Review.
In the pre-internet era, spreading malware like the AIDS Trojan and collecting payments proved challenging. Today, networked computers have made ransomware a significant criminal enterprise.
Key developments include:
The IT landscape in 2025 is far more advanced than in 1989 or 2004. Groups like Conti now operate as professional businesses, complete with support services, help desks, and ”customer service” for victims.
Organisations are now extorted in 3 ways:
Reports from Cyberveilig Nederland and the NCSC indicate that approximately 150 organisations fell victim to ransomware in 2023. Criminals now even threaten to report data breaches to compliance auditors. This adds pressure on companies to pay, but doing so funds future attacks.
Fortunately, organisations have better tools to defend against attacks, leveraging AI to mitigate vulnerabilities. Improved software engineering and patching make it harder for ransomware to infect systems. However, humans remain the weakest link in cybersecurity.
Our reliance on devices makes disruption easier to cause. I foresee a rise in mobile ransomware, as smartphones are often under protected. Still, we’re not powerless. Defences and enforcement are improving. Last year, with the Dutch police, we dismantled the Babuk ransomware network.
New techniques will emerge to improve criminal operations and evade detection. However, collaboration offers hope. Initiatives like Europol’s No More Ransom Project and partnerships between security companies make it increasingly difficult for ransomware gangs to operate.
By Jan Heijdra, Field CTO Security at Cisco.