The cyber security spending paradox: unravelling the enigma of escalating threats in the face of increased investment in the USA (2010-2023)
Esra Merve Çalışkan
What the paper says
This study examines the paradoxical relationship between increasing United States of America (USA) cybersecurity investment and rising cyberattacks from 2010-2023. Despite over $20 billion in cybersecurity spending, attack frequency and complexity continue escalating. Through mixed-methods analysis utilising comprehensive statistical techniques, including time-series decomposition, correlation analysis, and regression modeling with gross domestic product (GDP), internet usage, and technological advancement controls, this research reveals that traditional reactive spending strategies, asymmetric offence-defence dynamics, and inadequate measurement frameworks better explain this paradox than simple investment ineffectiveness. Using official data from Cybersecurity and Infrastructure Security Agency (CISA), FBI IC3 (Federal Bureau of Investigation Internet Crime Complaint Center), and National Institute of Standards and Technology (NIST), the analysis demonstrates that spending-security relationships are more complex than previously understood. Traditional security models prove insufficient against current threats. The study advocates for fundamental policy shifts toward adaptive, intelligence-driven approaches prioritising proactive defence, cross-sector coordination, and dynamic resource allocation, urging radical cybersecurity strategy reassessment.
Evidence weight
Balanced mode · F 0.40 / M 0.15 / V 0.05 / R 0.40
| F · citation impact | 0.50 × 0.4 = 0.20 |
| M · momentum | 0.50 × 0.15 = 0.07 |
| V · venue signal | 0.50 × 0.05 = 0.03 |
| R · text relevance † | 0.50 × 0.4 = 0.20 |
† Text relevance is estimated at 0.50 on the detail page — for your query’s actual relevance score, open this paper from a search result.