Cyber Liability: The Rising Risk of Social Engineering

September 17, 2020

Comments

Cyber-security has already been a subject of increasing importance in the UK for years, but one type of cyber-attack that has recently become a more frequent threat is that which uses social engineering. But what is Social Engineering, and how can you protect against it?

With the coronavirus pandemic forcing many organisations to implement remote work, the threat of cyber-attacks must be taken even more seriously.

Cyber-criminals conduct social engineering attacks by manipulating people in ways that result in the perpetrator gaining access to property or information that they should not be privy to.

Their tactics might include persuasion, impersonation or even intimidation.

Perpetrators may deploy social engineering tactics through a number of different types of cyber-attacks, such as phishing emails, fraudulent online offers or prizes, or telephone scams.

 

Social Engineering During Lockdown

Most employees working remotely will not have the same level of cyber-security in their homes as an employer would have in its physical workspace. As such, cyber-crime has become an even more ominous threat for organisations of all sizes and across all industries.

The frequency of cyber-attacks has noticeably increased since the beginning of the coronavirus pandemic, and new reports suggest that cyber-criminals are specifically upping their usage of coronavirus-themed attacks. These attacks may come in the form of phishing emails attempting to manipulate recipients into revealing sensitive information by preying on fear or apprehension related to COVID-19.

Given the lack of efficient cyber-security protections as employees work remotely, and the rising threat of social engineering and cyber-attacks related to COVID-19, employers should be especially cautious.

One example of a social engineering attack occurred earlier this year, when a cyber-attack campaign targeted Italian email addresses with a phishing email.

This email claimed to have an attachment from the World Health Organization with advice pertaining to the prevention of COVID-19. However, after opening the attachment and following the email’s instructions, malicious software would then be installed on the user’s device, providing cyber-criminals with access to confidential information and the ability to install even more malware.

 

Staying Cyber-secure

With employees working remotely, there are far more potential exposures to an organisation’s network and data. Organisations should take the time to assess and address these risks. Precautionary measures that should be highly considered include:

  • Provide formal employee training, including guidance regarding specific types of social engineering threats and how to recognise them.
  • Limit employees’ ability to access USB ports on company equipment in order to reduce the chance of a virus or malware infecting the device.
  • Use layers of protection, such as multi-factor authentication. In the event that a password is compromised, having additional layers that cyber-criminals must penetrate reduces an organisation’s risk.
  • Implement a virtual private network (VPN) in order to mask organisational data, such as web traffic.
  • Review user accounts and their level of access to sensitive information. Limiting accounts to information relevant to employees’ duties will help limit potential damage in the event that any accounts are compromised.

For more information on social engineering and cyber-security, contact us today. https://www.turnerinsurance.co.uk/commercial/cyber-liability/

 

Related Posts

Young Van Drivers Premiums Reduce, but are still High

Young Van Drivers Premiums Reduce, but are still High

The nation’s young van drivers have seen the largest fall in insurance premiums, but overall, premiums still remain high, as this report from Consumer Intelligence shows. Drivers aged under 25 saw their premiums fall 16.9% in the last 12 months, yet their premiums...

Rebuild Sums Insured – How do you work it out?

Rebuild Sums Insured – How do you work it out?

Rebuild sums insured of a property is a difficult thing to work out, and if it’s wrong, you could be left out of pocket in the event of a claim. So, what is a ‘rebuild sums insured’ and how can you ensure that yours is right for you?   Rebuild Sums Insured – What...