-

Lookout Survey Highlights Mobile Phishing Risk to Employees Working Remotely Ahead of Labor Day Weekend

BOSTON--(BUSINESS WIRE)--A new survey conducted by Lookout, Inc., the data-centric cloud security company, shows that 85% of enterprise employees who can work remotely are planning to skip the office on Friday, September 1. A significant portion of these individuals are poised to remotely work specifically through their mobile devices, creating a perfect scenario for potential hackers to carry out focused phishing assaults.

This presents a grave cyber threat to businesses, as 80% of survey participants admitted that when working from home on Fridays in the summer months, they are more relaxed and distracted. Another 68% revealed they are more likely to use their personal devices for work, and 13% admitted they’d fallen for a phishing attack while working from home. Most worrying, 21% of employees said that they would continue working business as usual in the event they fell victim to a phishing attack while working remotely on a Friday, with 9% indicating that they’d wait until after the weekend to report it.

However, stopping employees working remotely isn’t a viable option for employers, as 65% said they’d leave their job if the rules around remote work changed.

“We find that when people are working from home they frequently do it from a device that is less likely to be managed by their employer, such as a home PC, a tablet or a personal mobile phone – using personal devices for work greatly increases the risk of falling victim to phishing attacks,” said Aaron Cockerill, Executive Vice President of Product, Lookout. Given the number of people planning to work remotely on September 1, it’s highly likely bad actors will see this as a great opportunity to launch targeted phishing attacks. At this stage we’re unlikely to ever return to the pre-pandemic office working culture, so employees must always be cautious about phishing attempts, and businesses need to adapt their defenses and technology to mitigate against this increased risk.”

The survey follows the 2022 Lookout Global State of Mobile Phishing Report which found:

  • In 2022, more than 50% of personal devices were exposed to a mobile phishing attack every quarter.
  • The percentage of users falling for multiple mobile phishing links in a year is increasing rapidly year over year.
  • Organizations that operate in highly regulated industries – including insurance, banking, legal, healthcare and financial services – were the most heavily targeted enterprises.

The majority of employees working remotely are using personal devices and networks that IT does not control. Here’s what organizations can do to stay safe:

  • Start by implementing consistent policies across the board. These policies should carry forward to principles of zero trust, which can be applied to any user and any data that they try to access, including those using BYOD mobile devices. Continuous validation of users and data is critical — especially as attackers get more discreet about compromising employee credentials. Deviation from baseline behavior should be an immediate reason to have a user reauthenticate, and one of the most obvious deviations is when they access data they shouldn’t be accessing.
  • Organizations should be able to protect any device or user from phishing attacks — including mobile devices. Attackers have set their sights on compromising employee credentials through mobile devices because users can be vulnerable to social engineering across a myriad of apps. In the context of hybrid work, when employees constantly move between work and personal tasks on their mobile devices, then protecting against mobile phishing is a critical first line of defense.
  • Advanced context-aware data protection is essential to every organization. Based on who is trying to access data, where they’re accessing it from, or what device they’re accessing it on, an organization’s security solution should be able to allow, limit or deny access to that data. Doing so minimizes the risk of compliance violations, data leakage and unauthorized access to sensitive data.

Notes to Editors

The data is sourced from independent research company Censuswide which, in August 2023, surveyed 2,810 U.S.-based enterprise employees who could work remotely.

Additional Resources:

About Lookout

Lookout, Inc. is the data-centric cloud security company that delivers zero trust security by reducing risk and protecting data wherever it goes, without boundaries or limits. Our unified, cloud-native platform safeguards digital information across devices, apps, networks and clouds and is as fluid and flexible as the modern digital world. Lookout is trusted by enterprises and government agencies of all sizes to protect the sensitive data they care about most, enabling them to work and connect freely and safely. To learn more about the Lookout Cloud Security Platform, visit www.lookout.com and follow Lookout on our blog, LinkedIn and Twitter.

© 2023 Lookout, Inc. LOOKOUT®, the Lookout Shield Design®, and LOOKOUT with Shield Design® are registered trademarks of Lookout, Inc. in the United States and other countries. DAY OF SHECURITY®, LOOKOUT MOBILE SECURITY®, and POWERED BY LOOKOUT® are registered trademarks of Lookout, Inc. in the United States. Lookout, Inc. maintains common law trademark rights in EVERYTHING IS OK, PROTECTED BY LOOKOUT, CIPHERCLOUD, the 4 Bar Shield Design, and the Lookout multi-color/multi-shaded Wingspan design.

Contacts

Contact Lookout PR: press@lookout.com

Lookout, Inc.


Release Versions

Contacts

Contact Lookout PR: press@lookout.com

More News From Lookout, Inc.

Lookout Introduces Industry’s First AI-Powered Solution to Combat SMS Phishing Attacks

BOSTON--(BUSINESS WIRE)--Lookout, Inc., the leader in mobile threat defense, today announced the launch of Smishing AI—the industry’s first AI-powered solution designed to protect enterprises from the growing threat of SMS phishing (smishing) attacks. SMS phishing, commonly called “smishing,” is a cyberattack where fraudsters send misleading text messages to trick people into giving up personal information. These messages often pretend to be trusted sources—like banks, delivery services, or gov...

Lookout Survey Reveals Critical Gaps in Security Leaders' Confidence and the Actual Vulnerability of Their Organizations

BOSTON--(BUSINESS WIRE)--A new global survey by Lookout, Inc., the leader in mobile endpoint security, today unveiled concerning insights into the state of mobile cybersecurity preparedness, revealing a significant gap between security leaders' confidence and the actual vulnerability of their organizations. The survey of more than 700 security leaders globally exposes a pervasive overconfidence in employees' ability to detect modern mobile-centric threats, leaving businesses significantly more...

Lookout Announces Sale of Its Cloud Security Business to Fortra

BOSTON--(BUSINESS WIRE)--Lookout, Inc., the leader in mobile endpoint security, today announced the sale of its Cloud Security line of business to Fortra, a company dedicated to breaking the cyber attack chain with advanced offensive and defensive security solutions. Under the terms of the agreement, Fortra will acquire all assets, intellectual property, and personnel associated with the business. The divestiture reflects Lookout’s strategic focus on its core strength in Mobile Endpoint Securit...
Back to Newsroom