Email Security Blog

Spear Phishing – The Scale of The Problem

Agari February 26, 2016 Email Security
Fallback Featured Image

The rise of highly targeted email attacks – known as spear phishing or business email compromise – is one of the most worrying developments in cyber attacks over the last year.

The well researched threat
Sophisticated threat actors are increasingly investing time in getting to know their victims – their names, email addresses and even the business processes within their organizations.

In fact, Trend Micro research revealed that nearly half of the total number of spear phishing recipient email addresses can be found through Google search.

With such information readily available online, savvy cyber criminals are equipped with the resources to create carefully engineered emails that successfully trick users into handing over confidential information or making fraudulent payments.

A growing problem
According to a recent FBI investigation, this type of crime is on the rise and 7000 companies have had their business email compromised by successful spear phishing attacks within the last three years.

Top targets by sector
Investigations by Trend Micro have shown that the government sector and activist groups are the most targeted sectors of advanced persistent threats (APT) related spear phishing attacks.

Avenues of attack
The dominance of email within businesses means that it continues to be the main attack vector for distributing spear-phishing attacks. According to Trend Micro, 91% of targeted attacks involve spear phishing emails.

The cost and impact
While estimates about the cost of spear phishing attacks vary, experts agree that it’s now in the billions.

The FBI claims that the loss from business email compromise has now reached over $2 billion within the last two years. In total, there have been 12,000 victims globally that have experienced an average loss of $120,000 each.

Given the scale of the problem, it’s no surprise that organizations rank preventing targeted email attacks, data breaches and financial loss as their biggest priorities for 2016.

More must be done to restore trust to the email ecosystem and prevent fraudulent emails from even making it into the inbox.

To find out more, listen to our webinar on Email Security Protection: Predictions and Pivots for 2016.

Leave a Reply

Your email will not be published. All fields are required.

Agari Blog Image

July 16, 2019 Seth Knox

Microsoft Office 365 + Agari Secure Email Cloud: All You Need in a Cloud-First World

You’ve heard the statistics… more than 70% of all business users will be provisioned with…

Agari Blog Image

July 11, 2019 Armen Najarian

Restoring Trust to Digital Communications: How Smart Communities Model the Good

Legacy email security systems are failing, as more enterprises migrate their emails to the cloud…

Agari Blog Image

June 27, 2019 Siobhan McNamara

The 4 Fundamentals of AI-Based Email Security

Predictive, AI-based email security is proving to be remarkably effective at protecting against today's most…

Agari Blog Image

June 20, 2019 Michael Cichon

Email Security: Using ML to Prevent Advanced Attacks

The statistics are astounding. Email remains the number one threat vector for data breaches, the…

Agari Blog Image

June 19, 2019 Patrick Peterson

From Secure Email Gateway to Secure Email Cloud

The secure email gateway (SEG) worked for decades, no doubt. It was truly the first…

mobile image