Incorrect. The ransomware hackers are responsible for this.
Followed by the I.T. Professionals that are responsible to secure the servers, networks and desktops their organizations use.
Problem is that they work nine to five and then go home. These hackers, if I understand correctly, are working in scattered groups around the world? They work 24/7.
Affected companies are going to have to loosen the pursestrings to get the protection they need. If somebody can write the software, somebody can hack it.