|
|
Brian Sims
Editor |
| Home> | Security | >Cyber Crime | >Two-thirds of businesses anticipate COVID-themed phishing surge in 2021 |
| Home> | Security | >IT Security | >Two-thirds of businesses anticipate COVID-themed phishing surge in 2021 |
| Home> | Security Matters | >Security Matters | >Two-thirds of businesses anticipate COVID-themed phishing surge in 2021 |
Two-thirds of businesses anticipate COVID-themed phishing surge in 2021
20 January 2021
NEARLY TWO-thirds (64%) of business decision-makers are anticipating COVID-themed phishing attacks targeting their company to increase in 2021. That’s according to new research commissioned by Centrify, the provider of identity-centric privileged access management solutions.
The research was conducted by independent polling agency Censuswide and the results obtained via a survey of 200 business decision-makers operating within large and medium-sized enterprises here in the UK.
The data reveals that more than half (52%) of business decision-makers are anticipating an increase in cyber attacks facing their organisations, such as those triggered by the national lockdown which ended on Wednesday 2 December.
To protect their organisations, IT security processionals should take proactive measures including the introduction of security awareness training for employees, restricting VPN connections, increasing the use of multi-factor authentication wherever available and applying least privilege access controls.
Despite these concerns, 37% cent of respondents admitted that they currently have no plans to train new employees on data management policies and cyber security risks specific to COVID-related disruption.
Verifying identities
Furthermore, 37% stated that they don’t have sufficient systems in place to verify employee identities and credentials when accessing company data.
Howard Greenfield, chief revenue officer at Centrify, commented: “COVID-themed e-mail, SMS and web-based phishing attacks have not been uncommon over the last year. So far, we’ve seen cyber attack campaigns using the guise of charity, Government financial aid initiatives and business support schemes already lure thousands of victims into leaking sensitive information, such as log-in credentials and payment details.”
Greenfield continued: “In fact, these phishing campaigns have been so sophisticated and widespread that business leaders can only reasonably assume that a colleague or employee has already fallen victim to one and especially so if they’ve been working remotely this year for the first time in their career.”
He added: “Therefore, it’s absolutely imperative for companies to adopt a zero trust approach enforced by least privilege access which will only grant access to certain applications and data once a given user’s identity has actually been verified. This policy will help to ensure that leaked log-in credentials don’t necessarily translate to a breach of data.”
- Fourth edition of Simultaneous Evacuation Guide published by NFCC
- Organisations unite to solve fire safety in buildings
- 21st Century workplace The Hudson protected by latest generation electronic security solutions
- Fire Safety Matters Podcast - Episode 44
- Grenfell Inquiry to examine role of council before fire
- National Sprinkler Week signals “time to rethink fire protection” suggests Plumis
- Police chiefs to tackle sexual harassment
- Information Commissioner makes key appointments
- GMB backs LFB school sprinkler campaign
- National Crime Agency to appeal discharge of Unexplained Wealth Orders









