Intelligent CISO Issue 76 | Page 13

Abnormal Security Report reveals email security threats in Europe
ManageEngine strengthens its identity-first security offerings

CISO news

Abnormal Security Report reveals email security threats in Europe

A bnormal Security has released a report focusing on the email security threat landscape in Europe .

The Email Security Threats in Europe : Alarming Attack Trends report reveals that between April 2023 and April 2024 , the volume of phishing attacks targeting organisations in the US and on European enterprises increased by 112.4 % and 91.5 %, respectively . detect . This leaves employees – notoriously the weakest link in the cybersecurity chain – as the last line of defence .”
The report stated that BEC attacks targeting US enterprises rose by 72.2 % year over year .
“ While that ’ s certainly nothing to shake a stick at , organisations in Europe experienced a remarkable 123.8 % increase in BEC attacks in April 2024 compared to April 2023 . Several factors likely contributed to this spike ,” revealed the report .
The report reveals that Business Email Compromise ( BEC ) is showing no signs of slowing .
It states : “ BEC represents one of the top cybersecurity threats to modern enterprises , with US $ 2.9 billion lost in 2023 alone . Because these emails are text-based , rely on social engineering rather than exploiting technical vulnerabilities , and rarely contain obvious indicators of compromise ( such as malicious links or attachments ) they are difficult for legacy security solutions to

ManageEngine strengthens its identity-first security offerings

anageEngine has cemented its stance in identity-first security with the launch of passwordless , phishing-resistant

M

FIDO2 authentication for enterprise applications in ADSelfService Plus .
Attackers are ever striving to breach authentication mechanisms by stealing and misusing identities , predominantly via phishing attacks . Egress ’ 2024 Email Security Risk Report states that 79 % of account takeover ( ATO ) attacks start with phishing .
This is its on-premises identity security solution , and endpoint MFA for Windows machines and elevated system actions in Identity360 , its cloud-native identity management platform .
Unlike other cyberthreats , phishing directly targets unsuspecting end users who often become victims of the attack . Deploying phishing-resistant authentication barricades such attacks , propelling organisations towards an enhanced Zero Trust security environment .
“ As the digital infrastructure of enterprises is expanding due to widespread adoption of cloud services and remote work , network attack surfaces are also correspondingly increasing ,” said Manikandan Thangaraj , Vice President , ManageEngine .
“ Security teams , knowing that this exponentially growing security perimeter cannot be protected effectively anymore with legacy network-based security controls , are shifting their focus to identity-first security , positioning identity as the primary control plane for cybersecurity . With identity as the new security perimeter , the effort to safeguard the entire network is now translated into carefully authenticating every identity requesting entry into the network .”
WWW . INTELLIGENTCISO . COM 13