39 Percent of Organizations Were Victims of a Mobile Attack Despite Improved Security



Hand holding smartphone with hand drawn media icons and symbols conceptBrand new data from Verizon shows businesses sacrificed when it comes to mobile security; a decision that caused compromises with impacts well-beyond just a simple breach.

With so many possible attack vectors for IT to protect against, often times IT needs to cut corners in the name of simply “getting the job done.” According to Verizon’s newly released 2020 Mobile Security Index, 43 percent of organizations felt they sacrificed mobile security for reasons of speed, convenience, profitability, budget constraints, and lack of expertise. Despite this segment of organizations being lower than last year (48% in 2019), the percentage of organizations suffering a security compromise from their mobile and IoT devices increased 18 percent year-over-year (from 33 percent of organizations in 2019 to 39 percent in 2020).

These attacks weren’t minimally impactful either; according to Verizon, of those organizations suffering an attack, nearly two-thirds (66%) considered the compromise to have major impacts:

  • 59% suffered downtime
  • 56% suffered a loss of data
  • 46% saw the compromise of additional devices
  • 37% suffered reputation damage
  • 29% incurred regulatory penalties
  • 19% experienced a loss of business

So, where’s this all coming from? How are these bad guys getting in?

Easy. Mobile phishing.

The user’s oh-so-trusted mobile device increases their sense of security and lowers their sense of vigilance. And it’s not just email – in fact, it’s mostly not email that is the source of mobile phishing.

2-25-20 Image

According to Verizon, 85% of mobile phishing comes from messaging, social networks, gaming, and other apps – with only 15% of attacks coming from email.

Your users need to be taught that anytime a device with access to any corporate resources is being used, they need to be security-minded. This can be achieved using continual Security Awareness Training, which teaches employees about the kinds of attacks, social engineering scams, and methods of trickery that are used to con them into engaging with malicious links and attachments.

Mobile looks to be a growing security concern – and the reason is your users.


Free Phishing Security Test

Would your users fall for convincing phishing attacks? Take the first step now and find out before bad actors do. Plus, see how you stack up against your peers with phishing Industry Benchmarks. The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.

PST ResultsHere's how it works:

  • Immediately start your test for up to 100 users (no need to talk to anyone)
  • Select from 20+ languages and customize the phishing test template based on your environment
  • Choose the landing page your users see after they click
  • Show users which red flags they missed, or a 404 page
  • Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management
  • See how your organization compares to others in your industry

Go Phishing Now!

PS: Don't like to click on redirected buttons? Cut & Paste this link in your browser:

https://www.knowbe4.com/phishing-security-test-offer



Subscribe to Our Blog


Comprehensive Anti-Phishing Guide




Get the latest about social engineering

Subscribe to CyberheistNews