2024年网络钓鱼报告-29正式版.docx

上传人:p** 文档编号:1195527 上传时间:2024-11-24 格式:DOCX 页数:44 大小:407.13KB
下载 相关 举报
2024年网络钓鱼报告-29正式版.docx_第1页
第1页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第2页
第2页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第3页
第3页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第4页
第4页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第5页
第5页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第6页
第6页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第7页
第7页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第8页
第8页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第9页
第9页 / 共44页
2024年网络钓鱼报告-29正式版.docx_第10页
第10页 / 共44页
亲,该文档总共44页,到这儿已超出免费预览范围,如果喜欢就下载吧!
资源描述

《2024年网络钓鱼报告-29正式版.docx》由会员分享,可在线阅读,更多相关《2024年网络钓鱼报告-29正式版.docx(44页珍藏版)》请在第壹文秘上搜索。

1、2024StateofthePhishINTRODUCTIONImagineasuccessfu1.cyberattackagainstyourorganization.Whatdoesit1.ook1.ike?Maybeitinvo1.vesafiendish1.ydeverpieceofsocia1.engineering-aconvincing1.urethatcatchestherecipientoffguard.Ormaybeitwou1.dtakeasmarttechnica1.exp1.oittogetpastyourdefenses.Butinrea1.ity,threatac

2、torsdonta1.wayshavetotrythathard.Often,theeasiestwaytobracsecurityistoexp1.oitthehumanfactor.Peop1.eareakeypartofanygooddefense,buttheycana1.sobethemostvu1.nerab1.e.Theymaymakemistakes,fa1.1.forscamsorsimp1.yignoresecuritybestpractices.Accordingtothisyar,sStateofthePhishsurvey.71%ofworkingadu1.tsadm

3、ittedtotakingariskyaction,suchasreusingorsharingapassword,c1.ickingon1.inksfromunknownsenders,orgivingcredentia1.stoanuntrustworthysource.And96%ofthemdidsoknowingthattheyweretakingarisk.Whenob1.igedtochoosebetweennveneceandsecurity,userspicktheformera1.mosteverytime.So.whatcanorganizationsdotochange

4、this?Inthisreportwe1.1.takeac1.oser1.ookathowattitudestowardssecuritymanifestinrea1.-wor1.dbehavior,andhowthreatactorsarefindingnewwaystotakeadvantageofourpreferenceforspeedandexpedience.Wia1.soexaminetheCUrrentstateofsecurityawarenessinitiatives,aswe1.1.asbenchmarkingtheresi1.ienceofpeop1.eandorgan

5、izationsagainstattack.Thefoundationofthisreportisasurveyof7.500ndusersand1.050securityprofessiona1.s,conductedacross15countriesIta1.soinc1.udesProofpointdataderivedfromourproductsandthreatresearch,aswe1.1.asfindingsfrom183mi1.1.ionsimu1.atedphishingmessagessentbyourcustomersovera12nothperiodandmoret

6、han24mi1.1.ionemadsreportedbyourcustomersendusersoverthesameperiod.TAB1.EOFCONTENTS4KeyFindings6SecurityBehaviors6andAttitudesEnd-userbehaviorandattitudesIOSecurityAwarenessTrends1012CurrentstateofsecurityawarenessAreasforimprovement20Organizationa1.Benchmarks21Industryfai1.urerate27Conc1.usion14 Th

7、eThreat1.andscape14Threatpreva1.ence15 Growingthreats:TOAD,MFA-Bypass,QRcodesandgenerativeA1.16161718BECattacksbenefitfromA1.Microsoftremainsmost-abusedbrandRansomwaresti1.1.amajorconcernAttackconsequencesKEYFINDINGS回回回囿回回回回回回回国回回西回国回回囱囿囱回直回回回回回国回回回回回回直回回囿凰回回凰囿回回囱回回回回囿囱回回四回回回圜回回凰回回回四回囿回回回凰回回回囿回囱IoI1

8、.1.im1.69%knowtheyareresponsib1.eforsecurity,but10miTOADmessagesarese11v-1/everymonth.C58%ofuserseitherwerentsureorc1.aimedthattheyrenotresponsib1.eata1.1.Microsoftcontinuestobethemostabusedbrand,with68mi1.1.ionma1.iciousmessagesassociatedWiththebrandoritsproducts.)i1.bt(rtS三(G(r!fcfz(ofuserswhotook

9、riskyactionsengagedinbehaviorthatwou1.dhavemadethemvu1.nerab1.etocommonsocia1.engineeringtactics.SecurityBehaviorsandAttitudesEventhebesttechnica1.defensescanbeunderminedifusersdontdothebasics,suchasavoidingsuspicious1.inks,verifyingthesendersidentityandsettingastrongpasswordandkeepingittothemse1.ve

10、s.However,manyusersfai1.tofo1.1.owthesesimp1.eru1.es,puttingthemse1.vesandtheirorganizationsatrisk.End-userbehaviorandattitudesAccordingtooursurvey,71%ofuserssaidtheytkariskyactionanda1.mosta1.1.ofthem96%-didsoknowing1.y.Amongthatgroup.73%saidtheydtakentwoormoreriskyactionsAndmorethanathrdoftherisks

11、theytookwereratedbythoseusersasa1.her*extreme1.yriskyorVeryrisky.”QQO/workdcoforpersona1.乙D/O8ctvoes26%ReuseorsharepasswordQGO/COnneC1.withoutusingVPNat乙。/03pttcp1.aceQAO/R-poMkamsa(emai1.ofSMS4一/0text)fromsomeoneIdontknow20%AccessinsppfpdatewebiAQ0/C1.ickx1.inksorderw川OXAtuchmoncsID/OfromsomeoneIdo

12、ntknowdOO/SharewodadsensitivedatatounprovenIU/Othird-partyc1.oudQQ/Givecredentia1.stountrustworthyP1.osource29%Havenevertakenariskyaction30%25%20%15%10%5%0%Userstookriskyactionsforavarietyofreasons:convenience,timesavingandurgencybeingthemostcommonanswers.Butasma1.1.cohortof2.5%tkriskyactionspure1.y

13、outofcuriosity.Eithervay.themessageisdear:peop1.earenttakingriskyactionsbecausethey1.acksecurityawarenessOften,usersknowwhattheyardoingWhentheytakerisksandarequitewi1.1.ingtogamb1.ewithorganizationa1.security.WhyRiskyActionisTakenTosavetimeTosavemoneyTomeetotherperformanceobjectives5%Other,p1.easesp

14、ecifyNobodyknowsthisbetterthanthewor1.dscybercrimina1.s.Theyunderstandthatpeop1.ecanbeexp1.oited,eitherthroughneg1.igence,ob1.iviousnessor-inrareinstances-ma1.ice.Socia1.engineeringISapartofa1.mosteveryemai1.threatana1.yzedbyourresearchers.And58%ofuserswhotkariskyactionsaidtheyengagedinbehaviorthatwou1.dputthematriskofbasicsocia1.engineeringtactics,suchasc1.ickingonunknownkks.respondingtounfami1.iarsendersandsharingcredentia1.swithuntrustworthysources.Theseactionscan1.eadtoransomwareinfection,ma1.ware,databreachorfinancia1.1.oss.OneOfthereasonsuserstaketheserisksi

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 生活休闲 > 网络生活

copyright@ 2008-2023 1wenmi网站版权所有

经营许可证编号:宁ICP备2022001189号-1

本站为文档C2C交易模式,即用户上传的文档直接被用户下载,本站只是中间服务平台,本站所有文档下载所得的收益归上传人(含作者)所有。第壹文秘仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。若文档所含内容侵犯了您的版权或隐私,请立即通知第壹文秘网,我们立即给予删除!