STOCK TITAN

Aon's 2025 Global Cyber Risk Report Reveals Reputation Risk Events Can Reduce Shareholder Value by 27 percent

Rhea-AI Impact
(Neutral)
Rhea-AI Sentiment
(Neutral)
Tags
Aon's 2025 Cyber Risk Report reveals that cyber events causing reputational damage can lead to a significant 27% average decline in shareholder value. The study analyzed 1,414 cyber events, with 56 evolving into reputation risk events. This represents a substantial increase from 2023's findings of 9% shareholder value decline. Malware and Ransomware attacks were identified as the most damaging, accounting for 60% of reputation risk events while comprising only 45% of total cyber incidents. The report identified five key drivers for value recovery: preparedness, leadership, swift action, communication, and change. Additionally, the study emphasizes that while cyber insurance can help with financial exposure, reputational risk remains largely uninsurable, highlighting the importance of proactive risk management.
Il Rapporto sul Rischio Cyber 2025 di Aon rivela che gli eventi informatici che causano danni reputazionali possono provocare un calo medio significativo del 27% del valore per gli azionisti. Lo studio ha analizzato 1.414 eventi cyber, di cui 56 si sono trasformati in eventi a rischio reputazionale. Questo rappresenta un aumento considerevole rispetto al calo del 9% del valore per gli azionisti rilevato nel 2023. Gli attacchi di Malware e Ransomware sono stati identificati come i più dannosi, rappresentando il 60% degli eventi a rischio reputazionale pur costituendo solo il 45% del totale degli incidenti cyber. Il rapporto individua cinque fattori chiave per il recupero del valore: preparazione, leadership, azione rapida, comunicazione e cambiamento. Inoltre, lo studio sottolinea che, sebbene l'assicurazione cyber possa aiutare a gestire l'esposizione finanziaria, il rischio reputazionale rimane in gran parte non assicurabile, evidenziando l'importanza di una gestione proattiva del rischio.
El Informe de Riesgo Cibernético 2025 de Aon revela que los eventos cibernéticos que causan daños reputacionales pueden provocar una caída promedio significativa del 27% en el valor para los accionistas. El estudio analizó 1.414 eventos cibernéticos, de los cuales 56 evolucionaron a eventos de riesgo reputacional. Esto representa un aumento considerable en comparación con la caída del 9% en el valor para los accionistas registrada en 2023. Los ataques de malware y ransomware fueron identificados como los más dañinos, representando el 60% de los eventos de riesgo reputacional, aunque solo constituyen el 45% del total de incidentes cibernéticos. El informe identifica cinco factores clave para la recuperación del valor: preparación, liderazgo, acción rápida, comunicación y cambio. Además, el estudio enfatiza que, aunque el seguro cibernético puede ayudar con la exposición financiera, el riesgo reputacional sigue siendo en gran medida no asegurables, destacando la importancia de una gestión proactiva del riesgo.
Aon의 2025년 사이버 위험 보고서는 평판 손상을 초래하는 사이버 사건이 주주 가치에 평균 27%라는 상당한 하락을 가져올 수 있음을 밝혔습니다. 이 연구는 1,414건의 사이버 사건을 분석했으며, 그 중 56건이 평판 위험 사건으로 발전했습니다. 이는 2023년 주주 가치 하락 9%에 비해 크게 증가한 수치입니다. 맬웨어 및 랜섬웨어 공격이 가장 큰 피해를 입힌 것으로 나타났으며, 전체 사이버 사건의 45%에 불과하지만 평판 위험 사건의 60%를 차지했습니다. 보고서는 가치 회복을 위한 다섯 가지 주요 요인으로 준비성, 리더십, 신속한 대응, 소통, 그리고 변화를 꼽았습니다. 또한, 사이버 보험이 재정적 노출에 도움을 줄 수 있지만 평판 위험은 대부분 보험 적용이 어렵다는 점을 강조하며, 적극적인 위험 관리의 중요성을 부각시켰습니다.
Le Rapport sur le Risque Cyber 2025 d'Aon révèle que les événements cybernétiques causant des dommages à la réputation peuvent entraîner une baisse moyenne significative de 27 % de la valeur actionnariale. L'étude a analysé 1 414 événements cyber, dont 56 ont évolué en événements à risque réputationnel. Cela représente une augmentation substantielle par rapport à la baisse de 9 % de la valeur actionnariale constatée en 2023. Les attaques de logiciels malveillants et de rançongiciels ont été identifiées comme les plus dommageables, représentant 60 % des événements à risque réputationnel alors qu'elles ne constituent que 45 % du total des incidents cyber. Le rapport identifie cinq facteurs clés pour la récupération de la valeur : la préparation, le leadership, la rapidité d'action, la communication et le changement. De plus, l'étude souligne que, bien que l'assurance cyber puisse aider à gérer l'exposition financière, le risque réputationnel reste en grande partie non assurable, mettant en avant l'importance d'une gestion proactive des risques.
Der Cyber-Risiko-Bericht 2025 von Aon zeigt, dass Cyber-Ereignisse, die reputationsschädigend sind, zu einem durchschnittlichen Rückgang des Aktionärswerts um 27 % führen können. Die Studie analysierte 1.414 Cyber-Ereignisse, von denen 56 sich zu Reputationsrisiko-Ereignissen entwickelten. Dies stellt einen erheblichen Anstieg gegenüber dem Rückgang von 9 % im Jahr 2023 dar. Malware- und Ransomware-Angriffe wurden als die schädlichsten identifiziert, da sie 60 % der Reputationsrisiko-Ereignisse ausmachen, obwohl sie nur 45 % aller Cyber-Vorfälle darstellen. Der Bericht nennt fünf Schlüsselfaktoren für die Wertwiederherstellung: Vorbereitung, Führung, schnelles Handeln, Kommunikation und Wandel. Zudem betont die Studie, dass Cyber-Versicherungen zwar bei finanziellen Risiken helfen können, das Reputationsrisiko jedoch weitgehend unversicherbar bleibt, was die Bedeutung eines proaktiven Risikomanagements unterstreicht.
Positive
  • Comprehensive analysis of 1,414 global cyber events providing valuable insights for risk management
  • Identification of five critical drivers for value recovery from cyber incidents
  • Development of Cyber Quotient Evaluation platform for streamlined cyber insurance processes
  • Strong positioning to help clients navigate complex cyber threats
Negative
  • Significant increase in shareholder value decline from cyber events (27% vs 9% in 2023)
  • Malware and Ransomware attacks pose heightened reputational risks
  • Reputation risk remains largely uninsurable
  • Only 56 out of 1,414 cyber events developed into reputation risk events, suggesting difficulty in prediction

Insights

Aon's research shows reputation-damaging cyber events can slash shareholder value by 27%, positioning them as leaders in quantifying cyber risk impacts.

Aon's 2025 Cyber Risk Report reveals concerning data about the financial consequences of cyber attacks that evolve into reputation risk events. The research analyzed 1,414 global cyber events, finding that the 56 incidents that developed into reputation risk events caused an average 27% decline in shareholder value—a significant increase from the 9% decline documented in their 2023 research.

What's particularly notable is how certain attack types disproportionately trigger reputational damage. Malware and ransomware attacks comprised 45% of total cyber incidents but accounted for 60% of reputation risk events. This asymmetry highlights a critical risk factor companies must address in their security posture assessments.

The report identifies five key drivers that help companies recover from reputational damage: preparedness, leadership, swift action, communication, and change implementation. These findings represent valuable benchmarking data for organizations developing crisis response frameworks.

From an industry perspective, this research strengthens Aon's market position in cyber risk advisory services. By quantifying the financial impact of cyber events and showcasing their proprietary Cyber Quotient Evaluation platform, Aon is effectively demonstrating their value proposition in helping companies manage increasingly complex cyber threats that extend beyond mere technology concerns into core business and financial risks.

DUBLIN, June 17, 2025 /PRNewswire/ -- Aon plc (NYSE: AON), a leading global professional services firm, today released its 2025 Cyber Risk Report, revealing that cyber events that cause reputation risks can result in an average of 27 percent drop in shareholder value, highlighting the growing financial and reputational stakes of cyber risk.

The findings build on Aon's 2023 research, which showed that major cyber incidents led to an average 9 percent decline in shareholder value over the following year. This year's report goes further, analyzing more than 1,400 global cyber events and identifying which types of attacks are most likely to evolve into reputation risk events and which can be the most damaging when they do.

"Cyber risk is no longer just a technology issue — it's a boardroom issue," said Brent Rieth, global cyber leader at Aon. "Our latest research underscores the importance of proactive risk mitigation. Organizations that invest in preparedness and resilience are far better positioned to avoid the reputational and financial fallout that can follow a cyber event."

Among the report's key findings:

  • Of the 1,414 cyber events analysed, 56 developed into reputation risk events, which are defined as cyber incidents that attract significant media attention and lead to a measurable decline in share price.
  • Companies affected by these reputation risk events experienced an average shareholder value decline of 27 percent.
  • Malware and Ransomware attacks were the most likely to trigger reputational damage, accounting for 60 percent of all reputation risk events, despite making up only 45 percent of total cyber incidents.
  • Five drivers of value recovery — preparedness, leadership, swift action, communication and change — were identified as critical levers for mitigating reputational fallout.

The report also highlights the growing challenge of managing uninsurable risks. While cyber insurance can help transfer some financial exposure, reputation risk remains largely nontransferable, making proactive risk management and crisis response essential.

"As cyber threats grow more complex and interconnected, companies need a clearer view of their exposure, stronger alignment between cybersecurity and insurance strategies, and the tools to make better, data-driven decisions. Aon is uniquely positioned to support clients through these challenges," added Rieth.

Aon's 2025 Cyber Risk Report draws on proprietary data from the firm's Cyber Quotient Evaluation, a patented global e-submission platform that streamlines the cyber insurance intake process and empowers organizations with actionable insights into their cyber exposures and insurability — helping to strengthen both underwriting outcomes and cyber risk management strategies.

About Aon
Aon plc (NYSE: AON) exists to shape decisions for the better — to protect and enrich the lives of people around the world. Through actionable analytic insight, globally integrated Risk Capital and Human Capital expertise, and locally relevant solutions, our colleagues provide clients in over 120 countries with the clarity and confidence to make better risk and people decisions that protect and grow their businesses.

Follow Aon on LinkedInXFacebook and Instagram. Stay up-to-date by visiting Aon's newsroom and sign up for news alerts here.

Media Contact
mediainquiries@aon.com
Toll-free (U.S., Canada and Puerto Rico): +1 833 751 8114
International: +1 312 381 3024

Aon plc (NYSE: AON) exists to shape decisions for the better — to protect and enrich the lives of people around the world. Through actionable analytic insight, globally integrated Risk Capital and Human Capital expertise, and locally relevant solutions, our colleagues in over 120 countries provide our clients with the clarity and confidence to make better risk and people decisions that protect and grow their businesses.

 

Follow Aon on LinkedIn, X, Facebook and Instagram. Stay up-to-date by visiting Aon’s newsroom and sign up for news alerts here. (PRNewsfoto/Aon plc)

Cision View original content to download multimedia:https://www.prnewswire.com/news-releases/aons-2025-global-cyber-risk-report-reveals-reputation-risk-events-can-reduce-shareholder-value-by-27-percent-302482774.html

SOURCE Aon plc

FAQ

What is the impact of cyber events on AON shareholder value according to the 2025 report?

According to Aon's 2025 Cyber Risk Report, cyber events that cause reputation risks can result in an average 27% drop in shareholder value, a significant increase from 9% reported in 2023.

What are the main types of cyber attacks causing reputational damage according to AON's 2025 report?

Malware and Ransomware attacks were the most damaging, accounting for 60% of all reputation risk events while making up only 45% of total cyber incidents.

What are the five drivers of value recovery identified in AON's 2025 Cyber Risk Report?

The report identified preparedness, leadership, swift action, communication, and change as the five critical drivers for mitigating reputational fallout from cyber events.

How many cyber events did AON analyze in their 2025 report?

Aon analyzed 1,414 global cyber events, of which 56 developed into reputation risk events that attracted significant media attention and led to measurable share price declines.

What is AON's Cyber Quotient Evaluation platform?

It is a patented global e-submission platform that streamlines the cyber insurance intake process and provides organizations with actionable insights into their cyber exposures and insurability.
Aon Plc

NYSE:AON

AON Rankings

AON Latest News

AON Stock Data

75.95B
209.49M
3.07%
89.19%
2.56%
Insurance Brokers
Insurance Agents, Brokers & Service
Link
Ireland
DUBLIN 2