Cyber-crime continues to grow exponentially and as a result there has been a real focus and increased spend on information security especially on perimeter based products and services. However, exploiting human vulnerability continues to be the most attractive and successful path for threat actors targeting the assets of organizations and individuals. For this reason, phishing is used prevalently
across the adversary spectrum, from novice cybercriminals to advanced nation-state cyber operations
According to Verizon, 67% of cyber espionage started with a phishing email. 91% of successful breaches start with the more sophisticated spear-phishing attack.
• 70% of IT breaches can be attributed to human elements.
• 90% of all malware requires human interaction before it can infect its target
• 63% of employees admit to using a work computer for personal use every day; and 83% admit to doing it at least sometimes.
• 78% of employees accessed personal email from business computers. This number is approximately double the level of authorized use.
• 91% of targeted attacks involve spear phishing emails. (Spear phishing is an email that appears to be from an individual or business that you know.)
• 76% less is spent on security events when employees are trained, yet… 54% do not provide security training for new hires. Security awareness training is probably best thing a company can invest in to mitigate phishing attempts. However S.A.T whether done by the company themselves or outsourced to a training provider often is not embraced or readily consumed by employees who often go back to bad habits as soon as the training is over. Bait and Phish provides leading class education to make your people more secure. We reinforce this learning through real life simulated testing. We offer this at a price our competitors cannot match and with an industry first money back effectiveness guarantee.