Business Wire

FL-KNOWBE4

Share
KnowBe4’s Annual Phishing Benchmarking Report Shows Focusing on the Human Element Still the Best Safeguard Against Cyber Threats

KnowBe4, the provider of the world’s largest security awareness training and simulated phishing platform, today released its new 2024 Phishing by Industry Benchmarking Report to measure an organization’s Phish-prone™ Percentage (PPP), which indicates how many of their employees are likely to fall for phishing or social engineering scams.

This year’s report shows that according to baseline testing conducted across all industries, without security awareness training, 34.3% of employees are likely to click on malicious links or comply with fraudulent requests. This is an increase of over one percent in comparison to the 2023 report and highlights the importance of building a strong security culture within organizations to mitigate the human risk that exists when safeguarding against cyber threats.

KnowBe4 analyzed over 54 million simulated phishing tests across more than 11.9 million users from 55,675 organizations in 19 different industries. The resulting baseline PPP measures the percentage of employees in organizations that had not conducted any KnowBe4 security training, who clicked a simulated phishing email link or opened an infected attachment during testing.

The report highlights a key fact: when simulated phishing security testing is integrated with security awareness training, it works. Organizations that commit to regular security awareness training and testing after the initial baseline test saw an average PPP drop to just 18.9% within 90 days. After 12 months of continuous training and testing, the PPP plummeted even further to 4.6%. These results show that to transform cybersecurity culture, existing habits first need to be broken to make way for more secure ones. As employees start to embrace new behaviors, they become habits, over time evolving into standard practices that shape organizational culture and, in turn, creating a workforce that instinctively makes security a priority in their day-to-day work.

Industries particularly vulnerable to cyber threats, scoring the highest PPP, and in dire need of security awareness training are also discussed in the report. The healthcare and pharmaceutical industry remains in the high-risk category with the highest PPP across small- and large-sized organizations scoring 34.7% and 51.4%, respectively. Across medium-sized organizations, the hospitality industry took top billing for the second time in three years with a score of 39.7%.

This report reinforces the crucial role the human element plays in cybersecurity. Although technology is important for preventing and recovering from cyberattacks, human error is still a big contributing factor to data breaches. In fact, according to Verizon's 2024 Data Breach Investigations report, 68% of data breaches were due to accidental actions, the use of stolen credentials, social engineering and malicious privilege misuse. Even though this is an improvement from last year’s 74%, organizations must continue to focus on strengthening the human firewall to safeguard against cyber threats.

An emerging threat vector highlighted in this year’s report is the rapid adoption of AI in certain industries which presents additional risks if not implemented with strong cybersecurity measures.

"The data does not lie; regular and focused security training reshapes how employees interact with potential threats. Our goals are to educate and change behaviors, for employees to instinctively put security first," says Stu Sjouwerman, CEO of KnowBe4. "Furthermore, we are seeing more sophisticated cyber threats emerge because of AI and the need for training is imperative.”

This year’s report also examines international phishing benchmarks from North America, South America, Europe, United Kingdom & Ireland, Africa, Asia, Australia and New Zealand.

To download a copy of the 2024 KnowBe4 Phishing by Industry Benchmarking Report, click here.

About KnowBe4

KnowBe4, the provider of the world’s largest security awareness training and simulated phishing platform, is used by more than 65,000 organizations around the globe. Founded by IT and data security specialist Stu Sjouwerman, KnowBe4 helps organizations address the human element of security by raising awareness about ransomware, CEO fraud and other social engineering tactics through a new-school approach to awareness training on security. The late Kevin Mitnick, who was an internationally recognized cybersecurity specialist and KnowBe4’s Chief Hacking Officer, helped design the KnowBe4 training based on his well-documented social engineering tactics. Organizations rely on KnowBe4 to mobilize their end users as their last line of defense and trust the KnowBe4 platform to strengthen their security culture and reduce human risk.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240604089157/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

CSC Digital Brand Services Announces Integration into CrowdStrike Falcon Adversary Intelligence’s Recon to Accelerate Detection and Enforcement Against Malicious Domains15.9.2025 23:27:00 CEST | Press release

CSC, the world’s leading enterprise-class domain registrar and online brand protection provider, announced today at Fal.Con 2025 a new integration of CSC’s domain security offerings with the CrowdStrike Falcon® cybersecurity platform. The integration with Recon, a core capability within Falcon Adversary Intelligence, enables organizations to accelerate the detection and takedown of malicious domains, reducing exposure to phishing, fraud, and brand abuse. As cybercrime reaches unprecedented levels, adversaries are increasingly exploiting digital assets, brands, and domain name system (DNS) infrastructure. Traditional defenses often overlook domain portfolios, leaving organizations vulnerable to spoofing, impersonation, and account takeovers. CSC and CrowdStrike are uniting to close this gap with a comprehensive solution that integrates advanced threat intelligence, rapid detection, and global enforcement. Through this integration, clients can: Leverage the Recon capability in Falcon Adv

Celonis Debuts at No. 3 on the 2025 Fortune Future 5015.9.2025 22:58:00 CEST | Press release

Celonis, a global leader in Process Mining, today announced it has been named to No. 3 on the 2025 Fortune Future 50 list, recognized among the world’s most promising companies poised for long-term growth. This marks the company’s first appearance on the list alongside a prestigious group of global innovators, and underscores its leadership in enabling successful AI and business transformation through Process Intelligence. Published annually in collaboration with the Boston Consulting Group, the Fortune Future 50 evaluates more than 2,000 public companies to identify those best positioned for sustained growth based on a proprietary system analyzing market potential, innovation, strategy, and investment in the future. “Being named to the Fortune Future 50 is powerful validation of the mission we’ve been on since day one - to make processes work for people, companies and the planet,” said Alex Rinke, co-CEO and co-founder of Celonis. “This is truly just the beginning of seeing how Proces

ElevenLabs-Powered Chroma Awards Opens Call For Submissions, With November 3 Deadline15.9.2025 15:00:00 CEST | Press release

Creator-Led Global AI Film, Music Video, and Games CompetitionUniting the Global AI Creative Community Chroma Awards, a groundbreaking AI Film, Music Video, and Games competition organized by ElevenLabs, the leading AI audio research and product company, announced today that submissions are open for its inaugural competition, with a November 3 deadline. Competition participants can access free trials of AI tools provided by sponsors starting today at https://pack.chromaawards.com/. The Chroma Awards was established with the mission to educate, empower, and spotlight the next generation of artists and showcase how AI can empower human creativity. The competition is organized by ElevenLabs and presented by Google Cloud, Freepik, fal, Dreamina AI, and CapCut. “Through this initiative we hope to unite creators, communities, and companies across the world to bring emerging technology and creative talent together in dialogue,” said Matty Shimura, Chroma Awards. “We’re incredibly grateful to

33 Innovators Join Morgan Stanley Inclusive & Sustainable Ventures Cohort15.9.2025 14:08:00 CEST | Press release

Accelerator’s expanded focus includes sustainable solutions and support for nonprofits 2025 cohort comprised of 33 early-stage innovators from the Americas and EMEA Five-month program to provide founders with $250,000 (£250,000), as well as mentorship and growth resources Morgan Stanley (NYSE: MS) today announced the global cohort of its Inclusive & Sustainable Ventures (MSISV). With founders from the Americas and Europe, the Middle East and Africa (EMEA), the 2025 MSISV cohort will support 29 startups in its Lab and four emerging nonprofits in its Collaborative, two in-house accelerators that will run over the next five months. Selected from thousands of applications, the 33 organizations will engage in a tailored entrepreneurship curriculum and receive mentorship and business-growth resources from Morgan Stanley’s ecosystem of internal and external partners. The firm will invest $250,000 (£250,000 in EMEA) in each startup and provide each nonprofit with a $250,000 grant. “Morgan Stan

Helmholtz Munich and Parse Biosciences GigaLab Generate World’s Largest Human Lung Tissue Perturbation Atlas15.9.2025 14:00:00 CEST | Press release

Researchers aim to identify cellular circuit mechanisms and generate a dataset to fuel AI-driven foundational research of lung biology Helmholtz Munich and Parse Biosciences today announced a strategic partnership to generate the world’s broadest lung disease perturbation atlas, powered by Parse Biosciences’ GigaLab platform. Using a human lung ex-vivo tissue slice culture model from normal control donor lungs as well as explant lung tissues from patients with chronic lung disease, the study aims to identify novel targets and cell circuits in lung health and disease by characterizing disease-specific responses of cells to 900 pharmacological interventions. Prof Herbert Schiller, Director of Helmholtz Munich’s Precision Regenerative Medicine Research Unit, and a leading researcher on lung biology and disease, will head this ambitious initiative. “Measuring the effects of drug treatments at single cell level directly in human lung tissue at scale, will help us to find strategies that imp

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye