Nearly all Data Breaches in Q1 2022 Were the Result of a Cyber Attack

Stu Sjouwerman | Apr 26, 2022

Ransomware Attacks Put Singapore Organizations at RiskNew data from the Identity Theft Resource Center shows rises in the number of data compromises following 2021’s record-setting year, all stemming from cyber attacks.

I don’t like it when reports on attacks and their results use the phrase “record-breaking”. But that’s exactly what we find in ITRC’s latest Q1 2022 Data Breach Analysis report when talking about both the 1862 data compromises reported last year and the 404 compromises reported in the first quarter of this year. These Q1 compromises are the highest we’ve seen in the last three years.

According to the report 92% of these compromises were the result of some form of cyber attack – which can include zero day attacks, software flaws, credential stuffing, malware, ransomware, and phishing.

It’s no surprise to find out that phishing topped the list as the top root cause of the reported data compromises, pointing to external threat actors intent on stealing data – whether as part of a simple data breach, a ransomware / extortion attack, or espionage.

Whatever the attack bent, the use of phishing remains a very specific kink in the cybersecurity armor of most organizations – with cybercriminals demonstrating time and time again that a pure security software solution-based defense is not going to stop every last phishing email from reaching its intended victim recipient.

This is why Security Awareness Training is so imperative; without it, users are uninformed about the social engineering tactics and methods used by scammers to trick your employees into unwittingly aiding in an attack. By putting employees through training, they become a part of the defense strategy, spotting bogus emails as quickly as you do, putting an immediate stop to an attack, before it can do harm.

Discover Your Organization’s Phish-prone™ Percentage

Ninety-one percent of data breaches begin with spear phishing. Launch our Free Phishing Security Test for up to 100 users to uncover your team's vulnerability and see how your security posture stacks up against industry benchmarks.

Get Your Free Phishing Security Test

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.

Get the latest insights, trends and security news. Subscribe to CyberheistNews.