U.K. Sees an Increase in Sophisticated Phishing Attacks Targeting Educational Institutions

Stu Sjouwerman | Jul 19, 2019
UK_Flag_shutterstock_1054452542Using a mix of identity deception, domain spoofing, credential theft, and bank fraud, scammers are taking advantage of soft targets in the U.K.’s education sector. 
 
The U.K.’s Education and Skills Funding Agency (EFSA) has released a new update that includes details around both increases in phishing attacks against education providers and phishing scam specifics.
 
According to the update, the scam is focused on tricking users into giving up credentials to cloud-based applications with the intent of repurposing those credentials to commit fraud against a vendor doing business with the educational institution.
 
The EFSA recommends being “alert to emails containing seemingly legitimate or secure links” and checking “the sender of an email is genuine before, for example, sending passwords, data or payment.”
 
These recommendations are just the tip of the iceberg when it comes to educating users to be vigilant against phishing attacks. Organizations should look to employ Security Awareness Training to elevate the user’s understanding of attack techniques and how to spot malicious web or email content. Continual training with phishing testing enhances training by providing a feedback loop to IT and executives, helping them to better understand what parts of the organization are putting them most at risk.

Find out how affordable new-school security awareness training is for your organization. Get a quote now.

 
Get A Quote
Request A Demo
 

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.