PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
May 20, 20260 citationsOpen Access

Cybersecurity Breaches and Shareholder Value: An Event Study of Publicly Traded Companies (2020-2025)

View Full Paper
IMIfeoma Mirian MolokwuVOVictor Ikechukwu OkaforCUChimezie Ada Uchenu-Ibezim

Key Points

  • This research aims to assess the financial impact of cybersecurity breach announcements on shareholder value for publicly traded companies.
  • Analyzed a sample of 412 breach announcements from NYSE and NASDAQ firms between 2020-2025.
  • Employed event study methodology using a market model to measure stock performance around breach announcements.
  • Conducted cross-sectional regression to identify factors influencing market reaction.
  • Observed a negative cumulative average abnormal return (CAAR) of -2.87% over the two-day event window following breach announcements.
  • Breach severity was greater for incidents involving personally identifiable information (PII), smaller firms, and companies in the technology and financial sectors.
  • Prompt and transparent disclosures helped reduce the negative market impact.

Abstract

This study investigates the financial impact of cybersecurity breach announcements on the shareholder value of publicly traded companies in the United States from 2020 to 2025. Background: As corporations have become increasingly reliant on digital infrastructure, the frequency and cost of cybersecurity breaches have escalated, posing a material risk to firm value. This research examines the market's reaction to such events in a period marked by pandemic-accelerated digitalization and evolving cyber threats. Methods: Using a sample of 412 breach announcements from firms listed on the NYSE and NASDAQ, we employ a standard event study methodology to measure the abnormal stock returns around the announcement date. The market model is used to estimate expected returns, and a cross-sectional regression analysis is conducted to identify the determinants of the market's reaction. Results: The event study reveals a statistically significant negative cumulative average abnormal return (CAAR) of -2.87% over the two-day (0, +1) event window following the breach announcement. The negative market reaction is swift and largely completed within two trading days. Our cross-sectional analysis indicates that the negative returns are more severe for breaches involving the compromise of personally identifiable information (PII), for smaller firms, and for companies in the technology and financial sectors. Conversely, a prompt and transparent disclosure appears to mitigate the negative impact. Conclusion: The findings confirm that cybersecurity breaches result in a substantial and immediate destruction of shareholder value. The magnitude of this loss underscores the materiality of cybersecurity risk and highlights the financial imperative for robust corporate governance and investment in information security. The results provide valuable insights for managers, investors, and policymakers regarding the financial consequences of data security failures in the contemporary economy.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Molokwu et al. (2026) studied this question.

synapsesocial.com/papers/6a0d5013f03e14405aa9ba40https://doi.org/10.5281/zenodo.20271072
Ask AI
Helpful
Bookmark
Share
View Full Paper