Cybersecurity experts warned UK organizations not to treat cyber insurance as a substitute for operational resilience after a Cohesity survey found that only 22% of business leaders believed their policy would adequately cover breach costs and lost revenue. Respondents estimated that a cyberattack would cut revenue by an average of 15.17%, while one in five organizations had never modelled the business impact of a cyber incident.
The warning aligns with UK government breach-survey findings on uneven cyber-risk preparedness and insurance coverage across businesses. Although cyber-insurance adoption increased during 2025 and insurers paid £197 million in cyber claims, organizations are urged to review exclusions and coverage limits, maintain tested recovery plans, model attack impacts, and regularly test restoration of critical services.

See attribution, scope, and your downstream exposure.
5 events from the most recent confirmed update back to the earliest known activity.
Marks & Spencer experienced a cyber attack that disrupted its operations.
The Association of British Insurers reported £197 million in cyber-insurance payouts during 2025.
The Association of British Insurers reported that 17% more cyber-insurance policies were taken out in 2025 than in the preceding year.
Cohesity surveyed UK business leaders and found that only 22% believed their cyber-insurance policies would cover breach-related costs and revenue losses. One in five respondents said their organization had never conducted cyber-attack business-impact modelling.
Following its April 2025 cyber attack, Marks & Spencer recovered £100 million from insurers.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.