G
21

Heard a podcast claim most breaches start with a phone call, not an email

It was on the 'Darknet Diaries' episode about vishing. They said over 60% of initial access in a recent big breach came from a fake IT support call. I always thought phishing emails were the main threat... has anyone else shifted their focus because of a stat like that?
2 comments

Log in to join the discussion

Log In
2 Comments
rivera.simon
Podcasts love a scary headline, but one episode doesn't rewrite security. Emails still hit way more people at once for almost no cost. That 60% stat probably came from a single weird case, not the normal pattern. Focusing on calls just because of that is like buying a shark cage because you heard about one attack in Nebraska.
7
the_emery
the_emery3h ago
My last pen test report showed the same trend.
2