However, recent research shows that as many as 46% of cyber attacks target small and medium-sized businesses. According to data from the World Economic Forum, 95% of cybersecurity incidents are due to human error.
Many hackers target small and medium-sized businesses. |
According to Kaspersky's 2022 IT Security Economy survey, which included interviews with more than 3,000 IT security managers in 26 countries, about 22% of data breaches at small and medium-sized businesses originate from employees.
Employee actions can unintentionally lead to serious security incidents and impact the cybersecurity posture of small and medium-sized businesses. Some of the main causes include:
- Weak passwords: Using simple or easily guessable passwords makes it easy for cybercriminals to crack, ultimately leading to unauthorized access to sensitive data.
- Phishing traps: Employees may accidentally click on fraudulent links in emails, leading to malware infection and unauthorized access to the network. Most scammers can spoof legitimate company email addresses and send emails with document or archive attachments, which are malware samples.
- Lack of patches: If employees use personal devices, IT teams may not be able to monitor the security of those devices or troubleshoot security issues. Furthermore, employees may not regularly apply patches or updates to systems and software, leaving vulnerabilities that cybercriminals can exploit.
- Ransomware: In the case of a ransomware attack, it is important to back up data so that you have access to encrypted information even if cybercriminals have taken over your company's systems.
To help businesses feel truly secure about their company's cybersecurity, Kaspersky has made a number of recommendations:
- Use anti-phishing protection solutions for endpoints and email servers to minimize the risk of infection via phishing emails.
- Take some important data protection measures. Always protect your company's data and devices, such as enabling password protection, encrypting work devices, and ensuring data is backed up.
- Even small businesses should protect themselves from cyberthreats, regardless of whether employees work on company or personal devices. Kaspersky Small Office Security can be installed remotely and managed from the cloud, requiring little time, resources or specific knowledge to deploy and manage.
- Look for a solution designed for small and medium-sized businesses with proven protection and simple management features, such as Kaspersky Endpoint Security Cloud. Alternatively, outsource cybersecurity maintenance to a service provider that can provide the right protection.
Source
Comment (0)