Credential Harvesting Becomes Top Retail Data Threat
Briefly

The KnowBe4 "Global Retail Report 2025" highlights a significant rise in cybercriminal tactics targeting retail, mainly with credential harvesting leading at 38% of compromised data. Attack frequency surged by 56% in 2023, marking retail as a prime industry for cyber threats, alongside a notable increase in breach costs, averaging $3.48 million. The report also shows that structured security awareness programs can greatly reduce employee susceptibility to phishing, dropping from over 42% to below 6% in well-trained organizations, illustrating the effectiveness of continuous training in combating cyber threats.
Credential harvesting through phishing is the foremost threat in retail, compromising 38% of data, with cyberattacks rising 56% and breaches costing $3.48 million on average.
The shift in tactics to credential harvesting signals a growing challenge for retailers, as payment card data theft decreases, emphasizing the need for enhanced security training.
North America leads in retail cyberattacks with a staggering 56% increase in frequency in 2023, underscoring the urgent threat to this sector amid rising costs.
Effective security training drastically reduces employee vulnerability to phishing, with large retailers seeing a drop from 42.4% to 5.2% after one year of ongoing education.
Read at Securitymagazine
[
|
]