-

KnowBe4 Report Reveals Global Financial Sector Faces Unprecedented Cyber Threat Surge

Research shows financial institutions experience up to 300 times more cyberattacks than other sectors, with large banks reporting 45% of employees susceptible to phishing attacks

TAMPA BAY, Fla.--(BUSINESS WIRE)--KnowBe4, the world-renowned cybersecurity platform that comprehensively addresses human risk management, has released its latest research paper "Financial Sector Threats Report," uncovering critical insights into the escalating cybersecurity crisis facing the global financial sector. The report shows that financial institutions face a perfect storm of AI-enhanced attacks, credential theft and supply chain vulnerabilities that pose systemic risks to the global financial industry.

"Traditional defenses are no longer sufficient and threat actors discovered stealing valid credentials is more effective than ransomware because it allows them to move undetected. The battle comes down to the human level."

Share

The research reveals almost all (97%) of major U.S. banks experienced third-party breaches in 2024, while targeted intrusions against financial institutions increased by 109% year-over-year. Most concerning, tests in large financial institutions found that nearly 45% of employees were likely to click on a malicious link or download an infected file, creating entry points for threat actors. The report highlights how threat actors are leveraging AI tools like FraudGPT and ElevenLabs to create more convincing phishing campaigns, while simultaneously moving away from traditional ransomware encryption toward data exfiltration and multi-stage extortion schemes. This evolution allows attackers to use legitimate credentials, making detection significantly more challenging. According to Federal Reserve Bank of New York Staff Reports, even a single day's disruption in payments by major banks could affect 38% of network banks globally.

Key findings from the report:

  • Financial service firms globally experience up to 300 times more cyberattacks annually than other industries, with a 25% year-on-year increase in intrusion events for 2024.
  • 97% of the largest U.S. banks suffered third-party breaches in 2024, while 100% of Europe's top financial firms suffered supplier breaches, highlighting vulnerabilities in vendor ecosystems.
  • Analysis of over three million dark web posts shows stolen credentials far outpace credit card theft; infostealer infection attempts increased 58% in 2024 and 68% of attacks originating from email.
  • The U.S. accounts for 60% of all ransomware attacks against financial institutions, with the U.S. and U.K. together representing over 70% of attacks, with increasing activity targeting emerging markets in South Asia and Latin America.
  • Large financial institutions show 44.7% Phish-prone™ Percentage (PPP) rates initially, but comprehensive security awareness training reduces phishing susceptibility to below 5%.

"Adversaries are gaining an advantage against the financial sector," said James McQuiggan, security awareness advocate at KnowBe4. “Traditional defenses are no longer sufficient and threat actors discovered stealing valid credentials is more effective than ransomware because it allows them to move undetected. The battle comes down to the human level. Financial institutions must prioritize human risk management to close this critical security gap."

Download the full KnowBe4 report “Financial Sector Threats: The Shifting Landscape” here.

About KnowBe4

KnowBe4 empowers workforces to make smarter security decisions every day. Trusted by over 70,000 organizations worldwide, KnowBe4 helps to strengthen security culture and manage human risk. KnowBe4 offers a comprehensive AI-driven ‘best-of-suite’ platform for Human Risk Management, creating an adaptive defense layer that fortifies user behavior against the latest cybersecurity threats. The HRM+ platform includes modules for awareness & compliance training, cloud email security, real-time coaching, crowdsourced anti-phishing, AI Defense Agents, and more. As the only global security platform of its kind, KnowBe4 utilizes personalized and relevant cybersecurity protection content, tools and techniques to mobilize workforces to transform from the largest attack surface to an organization’s biggest asset. More info at knowbe4.com.

Follow KnowBe4 on LinkedIn and X.

Contacts

Media Contact:
Amanda Tarantino
Sr. Manager of Public Relations
amandat@knowbe4.com

KnowBe4


Release Summary
KnowBe4 study finds financial sector faces 300 times more cyberattacks than other industries, with 45% of large bank employees vulnerable to attacks

Contacts

Media Contact:
Amanda Tarantino
Sr. Manager of Public Relations
amandat@knowbe4.com

More News From KnowBe4

KnowBe4 Celebrates a Decade of AI Innovation with 7 Active AI Agents in Market

TAMPA BAY, Fla.--(BUSINESS WIRE)--KnowBe4, the world-renowned platform that comprehensively addresses human and agentic AI risk management, today celebrates a decade of pioneering Artificial Intelligence (AI) in cybersecurity. This year marks the tenth anniversary of the beta version of AIDA (Artificial Intelligence Defense Agents); a milestone that reinforces KnowBe4’s position training humans and agents, and as the only agentic provider in the industry. With the appointment of Harlan Parrott...

KnowBe4 Releases Q4 2025 Phishing Trends Report Highlighting the Power of Personalized Attacks

TAMPA BAY, Fla.--(BUSINESS WIRE)--KnowBe4, the world-renowned platform that comprehensively addresses human and agentic AI risk management, today released its Q4 2025 Phishing Simulation Roundup, detailing the most-clicked phishing email subjects from simulated phishing tests conducted between October and December 2025. The latest findings underscore how personalization, trusted brands and internal workplace themes continue to be the most effective tools used to prompt user interaction. The rep...

KnowBe4 Honored for Global Employee Experience Across Multiple Workplace Awards

TAMPA BAY, Fla.--(BUSINESS WIRE)--KnowBe4, the world-renowned platform that comprehensively addresses human and agentic AI risk management, today announced it has earned several prestigious workplace awards in Q4 2025. These include Great Place to Work® Certifications across 11 countries, recognition on Computerworld's 2026 Best Places to Work in IT list, and honors from Top Workplaces and America's Most Loved Workplaces®. The awards recognize KnowBe4's ongoing commitment to fostering an except...
Back to Newsroom