I was just responding to an email from Microsoft regarding my password expiring.. was that the wrong thing to do?
Breach publications and industry sources estimate that up to 74% of breaches include a human element, where people are involved in the error, misuse, stolen credentials, or social engineering used in the breach. The percentage of breaches that include a human element will increase even further each year due to the impact of genAI and the prevalence of communication channels that make social engineering attacks simpler and faster.
Culturally, it’s great to have confidence in your employees and their abilities, but it’s equally important to recognise that phishing attacks are becoming increasingly sophisticated and convincing. Even well-informed team members can let their guard down and fall victim to these attacks. Below are some examples of phishing attacks that the most vigilant employees might be susceptible to.
Phishing attacks are becoming increasingly sophisticated. Attackers may use tactics such as spear phishing, where they tailor a message to specific individuals based on detailed research. These targeted attacks can be a lot harder to spot.
Attackers often use social engineering techniques to manipulate individuals into revealing information that they shouldn’t. This will typically involve creating a sense of urgency, impersonation of a trusted authority figure, or exploiting emotions to provoke a response quickly.
These e-mails can appear to come from trusted sources, colleagues or superiors, or well-known brands. An attacker may go as far as creating a fake website that closely resembles a legitimate one or manipulate an already compromised e-mail account.
Employees may unintentionally click on malicious links or download infected attachments, especially when they are busy or distracted. More than 80% of cyber-attack victims originate from a phishing attack.
Do you have, or have you ever had a disgruntled member of staff, they might just be that security risk that you didn’t expect?
Talk to one of our experts to understand how Xperience can help protect your staff from becoming a victim, and mitigate the business risks associated with the human element, with our Targeted Phishing Campaigns and Cyber Awareness Training.
Want to learn more?