网络钓鱼受到网络犯罪分子的欢迎主要有三个原因。
Firstly, unlike traditional attack approaches, this time round the attack surface is much larger. Secondly, the attack is targeting unsuspecting victim, the organization’s untrained non cyber-aware employees. Thirdly, it is easy to execute and the success rate is high.
欺骗员工下载恶意代码的成功机会很高,因此恶意犯罪分子使用的方法网络钓鱼仍然很高。
以应对这种威胁。公司必须通过网络安全教育将毫无戒心的员工从受害者转变为先锋守护者。通过意识到这种威胁的特征,他们不太可能成为知情的同谋。
However, people have proved to sometime forget their training.
为了让这些员工保持警惕,最好开展临时的反网络钓鱼活动。这将有助于识别不保持警惕和不合规的员工。一旦确定了这些人,他们可能会被送去接受网络威胁意识的再培训。
We provide anti-phishing campaign tools so that organizations could do internal ad hoc campaigns to sieve out the non-vigilant indvidual before they put the entire company at risk.
If you would like to know more of such a solution, do feel free to联系我们 for a discussion.