The scary numbers on security from 2015
Summary
This blueAPACHE post reports: A recent presentation by the CEO of Microsoft, Satya Nadella, revealed the impact of hackers on the global business community. He illustrated that in 2015, cybercrime resulted in: * More than 160 million customer records were compromised by the top eight reported breaches in 2015. It concerns emPOWER Security, Microsoft Practice, emPOWER Cloud. It names Microsoft in connection with the announcement. Published in 2016. Figures, product names and event details reflect that time; for current information see the linked service pages.
Key facts
| Label | Value |
|---|---|
| Publication year | 2016 |
| Services referenced | emPOWER Security, Microsoft Practice, emPOWER Cloud |
| Named products or vendors | Microsoft |
| Cited figure | ...data breaches be reported by all businesses with revenue over $3 million. The impact a breach has when announced into the public domain... |
Article
A recent presentation by the CEO of Microsoft, Satya Nadella, revealed the impact of hackers on the global business community. He illustrated that in 2015, cybercrime resulted in:
- More than 160 million customer records were compromised by the top eight reported breaches in 2015.
- Around $3 trillion of market value was destroyed. The lost productivity, lost growth and business impact caused by cybercrime led to the $3 trillion estimate.
He also highlighted that it was 229 days on average between infiltration and detection. The exploits were remaining undetected for well over 6 months on average, which highlights businesses’ lack of security audit and process. You may already be breached, and simply haven’t identified it yet.
This isn’t a new phenomenon as Nadella explained; “if you look at the history of computing or history of all information technology, starting from when we started to store data, transmit data and communicate, we’ve always had attacks on trust. With mail came mail fraud. With the telegraph, radio and television came wire fraud. And now with the Internet we have cybercrime.”
Technology has moved from our IT environment which we control, to be an extended global network. Security has not kept up with the changing nature of how business is done. Today however, like the speed of transactions, is that the speed of fraud and the damage done has increased exponentially. Microsoft saw more businesses suffering security breaches last year than ever before. They also saw more irretrievable destruction of data and more lost productivity amongst their clients than in any year previously.
Nadella continued “there isn’t any aspect of our life, how we entertain ourselves, how we do commerce, how we educate our boys and girls, there isn’t a part of the economy from retail to healthcare to energy that is not using digital technology today to drive innovation and transform itself. So it’s become the core of not just tech industry but the core of every industry. But customers are not going to use this technology if they can’t trust it”.
And here lies the technology key. Creating environments (whether they be cloud or on-premises) that deliver the security to meet regulatory privacy requirements and the continuity businesses demand, is no longer a ‘nice to have’ – it is essential. This is further amplified by the proposed Australian legislation demanding data breaches be reported by all businesses with revenue over $3 million. The impact a breach has when announced into the public domain presents a wrath of trust and technology challenges that some will struggle to overcome.
To better understand your security profile, contact the blueAPACHE Consulting Team.
Related
- emPOWER Security
- emPOWER Security (pillar)
- Microsoft Practice (pillar)
- emPOWER Cloud
- emPOWER Cloud (pillar)
Frequently asked questions
What breach figures did Microsoft CEO Satya Nadella cite for 2015, according to the article?
The article says Nadella's presentation revealed more than 160 million customer records were compromised by the top eight reported breaches in 2015, and around $3 trillion of market value was destroyed globally.
What average detection time does the article cite for security breaches?
The article cites an average of 229 days between infiltration and detection, meaning exploits often went undetected for well over six months.
What Australian legislation does the article reference in relation to data breach reporting?
The article references proposed Australian legislation that would require businesses with revenue over $3 million to report data breaches.
How does Nadella frame cybercrime in the historical context described in the article?
Nadella is quoted comparing cybercrime to earlier eras of attacks on trust, noting that mail brought mail fraud and the telegraph and radio brought wire fraud, with the internet now bringing cybercrime.
Is the information in this post still current?
No. It reports 2015 breach statistics from a Microsoft presentation and then-proposed Australian legislation; for blueAPACHE's current security services, see the emPOWER Security pillar page rather than this post.
Source
https://www.blueapache.com/blog/the-scary-numbers-on-security-from-2015/
Knowledge Base
Who revealed the 2015 statistics on cybercrime discussed in this blueAPACHE article?
The statistics were revealed by Satya Nadella, CEO of Microsoft, in a presentation about cybercrime's impact on the global business community.
How many customer records were compromised by the top eight reported breaches in 2015?
More than 160 million customer records were compromised by the top eight reported breaches in 2015.
What was the estimated market value destroyed by cybercrime in 2015?
Around $3 trillion of market value was destroyed in 2015, an estimate driven by lost productivity, lost growth, and business impact caused by cybercrime.
On average, how long did it take businesses to detect a cyber infiltration in 2015?
According to Satya Nadella's presentation, it took 229 days on average between infiltration and detection, meaning exploits often remained undetected for well over 6 months.
What did the 229-day detection gap suggest about businesses' security practices?
The article states this gap highlights businesses' lack of security audit and process, and suggests that a business may already be breached without having identified it yet.
How did Satya Nadella frame cybercrime in the context of historical fraud?
Nadella explained that attacks on trust are not new: mail led to mail fraud, the telegraph, radio and television led to wire fraud, and now the Internet has led to cybercrime.
What did Microsoft observe about security breaches among its clients in the year referenced?
Microsoft saw more businesses suffering security breaches than ever before, along with more irretrievable destruction of data and more lost productivity among their clients than in any previous year.
What proposed Australian legislation is mentioned in relation to data breaches?
The article references proposed Australian legislation demanding that data breaches be reported by all businesses with revenue over $3 million.
What does the article say about the growing role of digital technology across industries?
Nadella noted that there isn't any part of the economy—retail, healthcare, energy, or education—that isn't using digital technology to drive innovation and transform itself, making trust in that technology essential since customers won't use technology they can't trust.
What does the article recommend businesses do to understand their security profile?
The article recommends contacting the blueAPACHE Consulting Team to better understand your security profile.
Images on This Page
-
https://cdn.prod.website-files.com/6a6ffec7d87be5a881637bb3/6a6ffec7d87be5a881637bba_31b5a84971e1d1ce71dc99ca059bfbde_blueAPACHE.svg
blueAPACHE logo on a dark blue background
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701c03b153d68a8eeb8f30_Nadella.avif
(no alt text)
-
https://cdn.prod.website-files.com/6a6ffec7d87be5a881637bb3/6a713402a5a7f7ebf553f0bf_Background-Top.avif
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701c06b153d68a8eeb8ffa_data-breaches.jpeg
Top 10 data breaches
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701b59b153d68a8eeb0e36_BBanner-1-Windows-10-is-out.-AI-is-in.-.avif
You’ve Invest in Security. So Why Are Breaches Still Happening?
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bb807b7741bf53e298a_BBanner-1-Windows-10-is-out.-AI-is-in.-8.avif
EOFY 2026: The Reset Is Done – Now It’s About Getting Ahead
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbb07b7741bf53e29d0_BBanner-2-When-support-ends-risk-begins-4.avif
Why Every Business Needs AI Guardrails
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbb07b7741bf53e29d7_BBanner-2-When-support-ends-risk-begins-3.avif
Ransomware Incident Response: Why Paying the Ransom Is a Failure of Preparation
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bb707b7741bf53e297d_BBanner-2-When-support-ends-risk-begins-1.avif
The 7 Cyber Truths Boards Must Act On In 2026
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbc07b7741bf53e29f9_BBanner-1-Windows-10-is-out.-AI-is-in.-7.avif
Reflecting on an Outstanding 2025 – Thank You for Your Partnership
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbc07b7741bf53e2a0c_Procurement-Portal.avif
The blueAPACHE e-Store: IT purchasing made simple
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a701bbc07b7741bf53e29ec_BBanner-1-Windows-10-is-out.-AI-is-in.-5.avif
Building Our Cyber Safe Culture: A Practical Guide for CSAM 2025
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fbfad31fa678fefd51a_6a704f395a0a01b8e482853a_support-monitor.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc4563e_6a704f3a400fc8e661400519_support-user.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc45639_6a704f3a91ffd7d0dbc40847_support-phone.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc4562f_6a704f3747d60bd3f65b7a31_support-globe.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc45636_6a704f38eb60992797acf5d9_support-mail.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a70181278f802e23979d547/6a704fd991ffd7d0dbc45633_6a704f3a07b7741bf54f2122_support-speech-bubble.svg
(no alt text)
-
https://cdn.prod.website-files.com/6a6ffec7d87be5a881637bb3/6a707520ca872d1b5a69a518_Sensiba.avif
Sensiba ISO/IEC 27001 Certified badge with a diamond-shaped logo below the text.