Organisations across Latin America faced an average of 2,640 cyberattacks per week during 2025, approximately 35% above the global average, with ransomware activity rising around 15% across the region.
Attacks Per Week Is A Telemetry Measure
This figure counts events observed by security products — scans, attempted exploits, blocked connections — not incidents. Most of what it counts is automated background noise that reaches every internet-facing organisation everywhere.
A 35% regional difference in that metric can reflect the product mix deployed, the sensor population, or the exposure profile of the estates being monitored. It is the vendor-telemetry caution this desk filed at 26-0513.
The Ransomware Figure Is More Useful
A 15% rise in ransomware activity is a count of incidents rather than of packets, and it is a modest, plausible number of the kind this desk has learned to prefer over dramatic ones.
Set against the fourfold telecom rise at 25-0714 and the 420% growth claim at 25-1108, 15% reads as a measurement somebody made rather than a headline somebody wanted.
And The Corpus Cannot Check Any Of It
This database contains no named Latin American incident. The four filters at 25-0502 apply in full: limited mandatory disclosure across most of the region, no equivalent to US collective redress, thinner research coverage, and reporting predominantly in Spanish and Portuguese.
So the corpus records a regional statistic it cannot verify against a single case file, which is an honest description of the position and not a satisfying one.
Built on published regional research, listed below. Attack-per-week figures are vendor telemetry, not incident counts. Corrections: corrections@forensicpost.com.