We’d like to think the good guys are winning the war against cyberattacks. With improved solutions, better best practices, layered security strategies, and more, one would expect to see declines in attacks.
But, according to Proofpoint’s latest Quarterly Threat Report, the bad guys aren’t giving up; in fact, they’re stepping up their game:
- Email CEO Fraud / BEC attacks rose 226% over the previous quarter and 476% year-over-year
- Social Engineering attacks rose 150% over the previous quarter
- Email containing malicious software designed to steal credentials or retrieve payloads increased 230% year-over-year
- Fraudulent social media support account phishing rose 442%
So, in short, it’s bad… really bad…
Now, some of this increase can be attributed to the good guys stopping more and more attacks (requiring more cyberattacks to achieve a desired revenue result for the bad guys). But, if your organization doesn’t have an appropriate security strategy in place (and we’re not talking just AV on the endpoint here…), it’s reasonable to assume that these massive increases will result in a higher number of successful attacks.
What’s needed is a layered approach to preventing, detecting, and thwarting online attacks. This includes scanning of email, web, and DNS, along with endpoint protection. But software only addresses some of the attacks, as many still get past software-based defenses. Users need to become a part of the defense strategy, undergoing continuous Security Awareness Training to educate them on the kinds of attacks currently being used, how to identify them, and how not to make themselves – and the organization – a victim.
Free Phishing Security Test
Find out what percentage of your employees are Phish-prone™
Would your users fall for CEO Fraud and other social engineering attacks? Take the first step now and find out before the bad guys do. Plus, see how you stack up against your peers with phishing Industry Benchmarks. The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.
Here’s how it works:
- Immediately start your test for up to 100 users (no need to talk to anyone)
- Customize the phishing test template based on your environment
- Choose the landing page your users see after they click
- Show users which red flags they missed, or a 404 page
- Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management
- See how your organization compares to others in your industry
PS: Don’t like to click on redirected buttons? Cut & Paste this link in your browser:
No tags for this post.
Based Blockchain Network