Watch out for Mobile Phishing

By:  |  Category: Blog, Security Wednesday, May 16th, 2018  |  No Comments
Mobile Phishing

Phishing on mobile devices? Yep, it’s a thing.

According to researchers at Wandera, phishing is the number one mobile threat affecting organizations. New research in Wandera’s Phishing Report 2018 shows that mobile users are 18x more likely to be phished than to download malware, and that 4000 new mobile phishing websites are launched every day.

While corporate devices provide a plethora of data for attackers to target, mobile devices are an easier hack. Many apps are authenticated with only a single sign on service like Okta and OneLogin, and many employees make use of their own user credentials or Facebook and Google logins. The average iOS user has 14 different accounts on their work phone, typically including services such as Amazon, Paypal and AirBnb. On Android, there are even more for the phishers to steal, with the average user having apps requiring 20 unique logins.

“Our research shows that phishers are increasingly leveraging brands that have over a billion users and a higher difficulty to breach. The price of such credentials on the dark web are increasing in price suggesting they are in higher demand,” said Michael Covington, VP of Product Strategy at Wandera.

The growth in Mobile Phishing

  • The average mobile user is 18x more likely to encounter a phishing attack than a malware attack
  • A new mobile phishing page is launched every 20 seconds. That’s more than 4,000 new phishing sites per day
  • 5% of all successful mobile phishing attacks take place on dating apps
  • 90% of cyberattacks start with a phishing attack *1
  • Users are 3x more likely to fall for phishing on mobile *2 than desktop

The applications where mobile phishing attacks originate:

*A huge growth in mobile/social media phishing

  • Messaging (17.3%) (+170% increase on 2017)
  • Social media (16.4%) (+102% increase on 2017)
  • Dating (6.2%)
  • Gaming (11.3%)
  • Email (15.4%)
  • Sports (6.2%)
  • News and weather (3%)
  • Productivity (10.2%)
  • Travel (2.1%)
  • Ecommerce (5.3%)
  • Music (1.3%)
  • Food and drink (2.2%)
  • Finance (1%)
  • Health and fitness (.1%)

    The top 5 apps for messenger phishing

  • Messenger (inbuilt iOS/Android)
  • WhatsApp
  • Facebook Messenger
  • LINE
  • Viber

Top 10 brands targeted by phishing attacks

1. Facebook
2. Apple
3. Google
4. Amazon
5. Paypal
6. Government sites
7. Microsoft
8. Fox News
9. Dropbox
10. WhatsApp

If you need assistance with cybersecurity for your business, contact EnhancedTECH at 714-970-9330 or [email protected]

Samantha Keller

Director of Marketing and PR at EnhancedTECH
Samantha Keller (AKA Sam) is a published author, tech-blogger, event-planner and mother of three fabulous humans. Samantha has worked in the IT field for the last fifteen years, intertwining a freelance writing career along with technology sales, events and marketing. She began working for EnhancedTECH ten years ago after earning her Bachelor’s degree from UCLA and attending Fuller Seminary. She is a lover of kickboxing, extra-strong coffee, and Wolfpack football.Her regular blog columns feature upcoming tech trends, cybersecurity tips, and practical solutions geared towards enhancing your business through technology.
Samantha Keller
Leave a Comment
Read previous post:
Encrypted Email
Encrypted Email Security Flaw

Think your business is safe because your emails are encrypted? Maybe not. A security flaw within email encryption looks like...