Intelligent CISO Issue 82 | Page 18

cyber

TRENDS

Netskope Threat Labs : Over 1,000 UK banking employees could be clicking phishing links every month

etskope Threat Labs recently

N published its latest research report on the banking industry . It revealed phishing is one of the most common cybersecurity threats in the banking industry , with financial fraud being the main reason for adversaries attacking the sector .

The report focuses on three types of threats in the banking industry – social engineering , malicious content delivery and GenAI data security – and revealed the top adversary groups targeting the industry .
Key findings include : Social engineering
• Phishing is the most significant social engineering tactic , used to steal bank account details and banking login credentials from sector staff . Three out of every 1,000 individuals working in banking click on a phishing link each month . Extrapolated against the 362,000 banking employees in the UK in 2023 , this means over 1,000 banking staff click a phishing link at work each month
• Instead of targeting cloud apps , as is common in other sectors , adversaries create tailored phishing pages designed to mimic the target banking institutions ’ websites and steal bank account information and login credentials to commit financial fraud
Malicious content delivery
• Russian criminal groups are the malicious threat actors most likely to target the banking industry , particularly the TA577 and Indrik Spider groups
18 WWW . INTELLIGENTCISO . COM