India Is Now the World's Most Targeted Nation for Cyberattacks — Here Is What That Means for Enterprises

Jan 2026
7 min read
India Is Now the World's Most Targeted Nation for Cyberattacks — Here Is What That Means for Enterprises

The World's Most Targeted Nation

In 2024, India overtook the United States to become the world's most targeted country for cyberattacks — a distinction that carries serious implications for every enterprise operating in the country. According to Check Point Research's annual threat intelligence report, Indian organisations faced an average of 3,201 cyberattacks per week in the second half of 2024 — more than double the global average.

Why India Is the Target

The attackers are not random. India's rapid digital economy growth, the proliferation of internet-connected devices, the expansion of digital payments, and the relative immaturity of enterprise cybersecurity posture collectively make Indian organisations attractive targets for both financially motivated criminal groups and state-linked threat actors.

The Headline Incidents Are Instructive

The Star Health and Allied Insurance data breach exposed the personal health records of 31 million customers — later offered for sale on Telegram. BSNL suffered two separate data breaches affecting millions of subscriber records. A ransomware attack on a major Indian hospital chain in 2025 disrupted patient care at 12 facilities for over a week before systems were restored. These are not isolated incidents — they are symptoms of a systemic gap between the speed of India's digital expansion and the maturity of its cybersecurity defences.

A Board-Level Risk, Not an IT Problem

CERT-In's revised reporting mandate — requiring breach notification within six hours, one of the shortest windows globally — has forced enterprises to confront the inadequacy of their incident detection and response capabilities. Many discovered that they could not meet a six-hour reporting requirement because they had no real-time threat monitoring in place.

Key Takeaway

Cybersecurity can no longer be delegated entirely to IT. It is a business continuity risk, a regulatory compliance obligation, and — in regulated industries — a condition of operating licence. The question is not whether your organisation will be targeted, but whether you will know when it happens.

By Grey Platforms

Ready to Build Something That Lasts?

Whether you're looking to modernize your infrastructure, launch a product, or transform your operations — we're ready when you are.

Grey Platforms

Grey Platforms Private Limited
CIN: U62099OD2024PTC047119

Head Office:
Zone C, Ground Floor, Fortune Towers, Chandrasekharpur, Bhubaneswar, Odisha, 751023

© Copyright Grey Platforms 2025