F
11
c/cybersecurity-tipsmorganl71morganl712d agoTop Commenter

Hit 100 phishing test failures in my company last month - that number shocked me

I run the security training for about 500 employees. We do simulated phishing emails every quarter to see who falls for them. Last month's test had a fake email about a free pizza party in the break room. 100 people clicked the link and entered their login. That's one out of every five people. The worst part is we ran the same exact test six months ago and only 60 people failed. So it's getting worse, not better. What kind of phishing test failures are you all seeing in your workplaces?
3 comments

Log in to join the discussion

Log In
3 Comments
jessica331
Free pizza and people still can't figure it out? Sounds like your employees would walk into a "free paycheck" email from a Nigerian prince too. 100 out of 500 is brutal, especially when it was the same test. Maybe they're just really hungry for pizza and willing to risk their login for a slice. At this rate, next quarter's test should be a fake email about a mandatory all-hands meeting with free donuts. That'll really sort the wheat from the chaff.
6
shanes66
shanes662d ago
Haha brutal but honestly @jessica331 you're not wrong, if free pizza is the bait we've got bigger problems than just phishing tests.
8
martinez.paul
@jessica331 You're right, it's rough watching that many people fall for the same trick twice. @shanes66 called it too, if free pizza is the bait, there's a bigger issue underneath. I've seen places where they try to make the tests funny but half the people still click. It makes you wonder how many of them would actually hand over their password for a coupon code or a "limited time" offer from some random store. Maybe the real problem is they just don't care about security until something bad actually happens.
1