FL-KNOWBE4
KnowBe4, the provider of the world’s largest security awareness training and simulated phishing platform, today released its new 2024 Phishing by Industry Benchmarking Report to measure an organization’s Phish-prone™ Percentage (PPP), which indicates how many of their employees are likely to fall for phishing or social engineering scams.
This year’s report shows that according to baseline testing conducted across all industries, without security awareness training, 34.3% of employees are likely to click on malicious links or comply with fraudulent requests. This is an increase of over one percent in comparison to the 2023 report and highlights the importance of building a strong security culture within organizations to mitigate the human risk that exists when safeguarding against cyber threats.
KnowBe4 analyzed over 54 million simulated phishing tests across more than 11.9 million users from 55,675 organizations in 19 different industries. The resulting baseline PPP measures the percentage of employees in organizations that had not conducted any KnowBe4 security training, who clicked a simulated phishing email link or opened an infected attachment during testing.
The report highlights a key fact: when simulated phishing security testing is integrated with security awareness training, it works. Organizations that commit to regular security awareness training and testing after the initial baseline test saw an average PPP drop to just 18.9% within 90 days. After 12 months of continuous training and testing, the PPP plummeted even further to 4.6%. These results show that to transform cybersecurity culture, existing habits first need to be broken to make way for more secure ones. As employees start to embrace new behaviors, they become habits, over time evolving into standard practices that shape organizational culture and, in turn, creating a workforce that instinctively makes security a priority in their day-to-day work.
Industries particularly vulnerable to cyber threats, scoring the highest PPP, and in dire need of security awareness training are also discussed in the report. The healthcare and pharmaceutical industry remains in the high-risk category with the highest PPP across small- and large-sized organizations scoring 34.7% and 51.4%, respectively. Across medium-sized organizations, the hospitality industry took top billing for the second time in three years with a score of 39.7%.
This report reinforces the crucial role the human element plays in cybersecurity. Although technology is important for preventing and recovering from cyberattacks, human error is still a big contributing factor to data breaches. In fact, according to Verizon's 2024 Data Breach Investigations report, 68% of data breaches were due to accidental actions, the use of stolen credentials, social engineering and malicious privilege misuse. Even though this is an improvement from last year’s 74%, organizations must continue to focus on strengthening the human firewall to safeguard against cyber threats.
An emerging threat vector highlighted in this year’s report is the rapid adoption of AI in certain industries which presents additional risks if not implemented with strong cybersecurity measures.
"The data does not lie; regular and focused security training reshapes how employees interact with potential threats. Our goals are to educate and change behaviors, for employees to instinctively put security first," says Stu Sjouwerman, CEO of KnowBe4. "Furthermore, we are seeing more sophisticated cyber threats emerge because of AI and the need for training is imperative.”
This year’s report also examines international phishing benchmarks from North America, South America, Europe, United Kingdom & Ireland, Africa, Asia, Australia and New Zealand.
To download a copy of the 2024 KnowBe4 Phishing by Industry Benchmarking Report, click here.
About KnowBe4
KnowBe4, the provider of the world’s largest security awareness training and simulated phishing platform, is used by more than 65,000 organizations around the globe. Founded by IT and data security specialist Stu Sjouwerman, KnowBe4 helps organizations address the human element of security by raising awareness about ransomware, CEO fraud and other social engineering tactics through a new-school approach to awareness training on security. The late Kevin Mitnick, who was an internationally recognized cybersecurity specialist and KnowBe4’s Chief Hacking Officer, helped design the KnowBe4 training based on his well-documented social engineering tactics. Organizations rely on KnowBe4 to mobilize their end users as their last line of defense and trust the KnowBe4 platform to strengthen their security culture and reduce human risk.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20240604089157/en/
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Businesses Scale Transformation to Meet Regulatory, Technology and Customer Challenges, Finds Arthur D. Little Global Research16.9.2025 11:45:00 CEST | Press release
Transformation is now a way of life for global companies, with two-thirds (65%) undergoing wide-reaching or expanding organization-wide transformation initiatives. This is driven by regulatory change (including tariffs), technological disruption, and shifting customer needs, all of which are rated at 4.1/5 in importance. Confidence levels are high, with 95% expecting initiatives to deliver success, according to the inaugural Arthur D. Little (ADL) Global Transformation Study. Time frames vary significantly between regions. 71% have a four-to-six-year window for transformation, with 32% focused on five years. However, average timelines range from 3.2 years in North America to 4.9 years in the Middle East and 5.5 years in Asia-Pacific. There are also significant differences between who leads transformation efforts globally. While a third (32%) of companies have a Chief Transformation Officer (CTrO), adoption varies considerably by region. 53% of European companies have a CTrO, compared w
Reply Achieves the AWS Advertising and Marketing Technology Competency Thanks to the Contribution of the Data Reply and Storm Reply Teams16.9.2025 10:40:00 CEST | Press release
Reply [EXM, STAR: REY] has achieved the AWS Advertising and Marketing Technology Competency, the official recognition from Amazon Web Services certifying advanced technical and project expertise in the design and delivery of advertising and marketing solutions on AWS. This milestone was made possible thanks to the joint contribution of Storm Reply and Data Reply, both part of the Reply Group, with solid expertise in implementing cloud-native and data-driven solutions on the AWS platform. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250916374888/en/ With this certification, Reply’s companies specialized in AWS services further consolidate their role as trusted technology partners for organizations looking to evolve their marketing and communication strategies through the advanced use of AWS cloud and AI technologies. The AWS Advertising and Marketing Technology Competency validates the ability of AWS Partners to deliver hig
PayPay Is Now Accepted in South Korea via Ant International’s Alipay+16.9.2025 10:26:00 CEST | Press release
Connecting 70 million PayPay users to over 2 million South Korean merchants A milestone in PayPay’s overseas expansion Starting from late September 2025, Japan's leading cashless payment service PayPay will be accepted at over 2 million merchants across South Korea through Alipay+, a global wallet gateway service operated by Ant International. This will allow its 70 million registered users to make seamless payments during their visit, wherever the Alipay+ logo is displayed. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250915612411/en/ Starting from late September 2025, Japanese travellers will be able to use PayPay to make payments in South Korea at stores displaying the Alipay+ logo. PayPay will show users the payment amount in Korean won and its yen equivalent in real time. This marks a new chapter in PayPay’s overseas expansion. From K-beauty stores and convenience chains to local eateries and cultural hotspots, from m
Talent shortages and AI pressures drive shifting dynamics in global technology leadership, According to Expereo16.9.2025 10:00:00 CEST | Press release
Skills gaps in networking, cybersecurity, and AI are delaying growth and forcing businesses to rethink leadership, training, and investment strategies Global businesses are facing mounting challenges in their growth ambitions due to persistent skills shortages in critical technology areas. As AI becomes more deeply embedded in business strategy, organisations are struggling to find or retain talent in key domains such as networking (39%), cybersecurity (40%), and Data/AI/automation (33%). The findings come from an IDC InfoBrief commissioned by Expereo, titled “Enterprise Horizons 2025: Technology Leaders Priorities: Achieving Digital Agility.” The report reveals that 39% of organisations are struggling to find or retain networking talent, while 33% report similar challenges in data, AI, and automation - figures that remain consistent with 2024 findings. These shortages are not only slowing down AI adoption but also reshaping leadership dynamics and workforce strategies across enterpris
Infobip Achieves GSMA Open Gateway Certifications for Network APIs16.9.2025 10:00:00 CEST | Press release
New credentials strengthen Infobip's role in the global telco ecosystem Global communications platform Infobiphas received two new Network API certifications from the GSMA, as part of the CAMARA project. The SIM Swap and Number Verification certifications demonstrate Infobip's commitment to advancing global standards for Network APIs through the GSMA Open Gateway initiative. The certifications mark a significant milestone for Infobip and its telco partners worldwide. The certifications validate Infobip's expertise and support mobile network operators (MNOs) in achieving their own certifications as part of GSMA's global standardization efforts. Viktorija Radman, Telecom Growth & Strategy Director at Infobip, said:"Achieving GSMA certifications for SIM Swap and Number Verification demonstrates our commitment to building secure, scalable solutions for operators worldwide. As a CPaaS enabler, Infobip is dedicated to helping telcos embrace new global standards and bring the benefits of Netw
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom