Phishing affected 90% of global companies in 2019

Nearly 90% of global organizations surveyed were targeted with business email compromise (BEC) and spear phishing attacks in 2019, reflecting cybercriminals’ continued focus on compromising individual end users, according to Proofpoint’s sixth annual global State of the Phish report.

78% also reported that security awareness training activities resulted in measurable reductions in phishing susceptibility.

“Effective security awareness training must focus on the issues and behaviors that matter most to an organization’s mission,” said Joe Ferrara, senior vice president and general manager of Security Awareness Training for Proofpoint. “We recommend taking a people-centric approach to cybersecurity by blending organization-wide awareness training initiatives with targeted, threat-driven education. The goal is to empower users to recognize and report attacks.”

End-user email reporting, a critical metric for gauging positive employee behavior, is also examined within this year’s report.

The volume of reported messages jumped significantly year over year, with end users reporting more than nine million suspicious emails in 2019, an increase of 67 percent over 2018.

The increase is a positive sign for infosec teams, as Proofpoint threat intelligence has shown a trend toward more targeted, personalized attacks over bulk campaigns.

Users need to be increasingly vigilant in order to identify sophisticated phishing lures, and reporting mechanisms allow employees to alert infosec teams to potentially dangerous messages that evade perimeter defenses.

Related posts

The Imperative of Robust Business Continuity Amidst Technology Disruptions

Closing the Cybersecurity Skill Gap: The Crucial Role of GenAI in Training and Supporting Cybersecurity Professionals

Enhancing Supplier Security Monitoring with AI and ML

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Read More