Nearly two-thirds (64 per cent) of business decision makers are anticipating Covid-themed phishing attacks targeting their companies to increase in 2021, according to new research from Centrify, a globally renowned provider of identity-centric privileged access management solutions.

Phishing attacks research

The research was conducted by independent polling agency, Censuswide and obtained via a survey of 200 business decision makers in large- and medium-sized enterprises in the UK.acc

The data also revealed that more than half (52 per cent) of business decision makers have anticipated an increase in cyber-attacks facing their organizations, as triggered by the most recent national lockdown in the United Kingdom, which ended on the 2nd of December, 2020.

Security awareness training for employees

To protect their organizations, IT security processionals should take proactive measures

To protect their organizations, IT security processionals should take proactive measures, including security awareness training for employees, restricting VPN connections, increasing the use of multi-factor authentication (MFA) wherever available, and applying least privilege access controls. 

Despite these concerns, 37 per cent of respondents admitted that they currently have no plans to train new employees on data management policies and cyber security risks specific to Covid-related disruption. Furthermore, 37 per cent also stated that they do not have sufficient systems in place to verify employee identities and credentials, when accessing company data.

Rise in Covid-themed email, SMS and phishing attacks

Howard Greenfield, Chief Revenue Officer at Centrify, commented “Covid-themed email, SMS and web-based phishing attacks have not been uncommon over the last year, and so far we’ve seen cyber-attack campaigns using the guise of charity, government financial aid initiatives, and business support schemes already lure thousands of victims into leaking sensitive information, such as log-in credentials and payment details.

He adds, “In fact, these phishing campaigns have been so sophisticated and widespread in 2020 that business leaders can only reasonably assume that a colleague or employee has already fallen victim to one, especially if they have been working remotely this year for the first time in their career.

Adopting a zero trust approach

Howard continues, “Therefore, it is absolutely imperative for companies to adopt a zero trust approach enforced by least privilege access, which will only grant access to certain applications and data once a user’s identity has been verified. This will ensure that leaked log-in credentials do not necessarily translate to a breach of data.

Learn why leading casinos are upgrading to smarter, faster, and more compliant systems

In case you missed it

Which Vertical Markets Have The Greatest Growth Potential For Security?
Which Vertical Markets Have The Greatest Growth Potential For Security?

To serve various vertical markets and industries effectively, security professionals must recognize that each sector has unique assets, risks, compliance requirements, and operatio...

eCLIQ Enhances Security At Marin Hospital Of Hendaye
eCLIQ Enhances Security At Marin Hospital Of Hendaye

The Marin Hospital of Hendaye in the French Basque Country faced common challenges posed by mechanical access control. Challenges faced Relying on mechanical lock-and-key technol...

What’s Behind (Perimeter) Door #1?
What’s Behind (Perimeter) Door #1?

A lot has been said about door security — from reinforced door frames to locking mechanisms to the door construction — all of which is crucial. But what security measur...