Skip to main content
VendorsKnowBe4

KnowBe4

Cybersecurity reports and statistics published by KnowBe4

8 categories10 reports

Recent Statistics & Reports

Small and medium-sized retailers saw significant declines in phishing susceptibility due to training, dropping from 29.3% to 3.7% for small retailers and from 33.3% to 4.2% for medium-sized retailers

4/23/2025
EnergyPhishingSecurity awareness training

Job application-related phishing attacks are not only sent to individual accounts (24%) but also shared mailboxes (52%) and individual inboxes with activated delegate functions (21%) (e.g. a personal assistant has access to an executive’s inbox).

3/20/2025
Phishing

81.9% of phishing victims had their emails leaked in previous breaches.

3/20/2025
PhishingData breachData leak

There was a 22.6% increase in ransomware payloads.

3/20/2025
Ransomware

The top cryptocurrencies demanded during extortion are: Bitcoin, Monero, XRP.

3/20/2025
ExtortionCryptocurrencies

There has been a 57.9% increase in phishing attacks being sent from compromised accounts getting through traditional detection.

3/20/2025
PhishingEvasion

The top three words used in phishing emails: Urgent, Review, Sign.

3/20/2025
Phishing

Most polymorphic phishing emails are sent from compromised accounts (52%), followed by phishing domains (25%), and webmail (20%).

3/20/2025
PhishingPolymorphic

New starters typically received a phishing email after 3 weeks.

3/20/2025
Phishing

76.4% of all phishing campaigns now use polymorphic phishing tactics.

3/20/2025
PhishingPolymorphic

On average, phishing emails contained 1058 characters (~188 words)

3/20/2025
Phishing

Ransomware payloads in phishing attacks have risen by 22.6% over six months, with a sharp 57.5% increase in just three months.

3/20/2025
RansomwarePhishing

25.9% of phishing emails between September 15, 2024 and February 14, 2025 contained attachments.

3/20/2025
Phishing

64% of phishing attacks are focused on engineering roles.

3/20/2025
Phishing

Of 512 job application-related phishing emails, attackers targeted engineering (64%) roles, followed by finance (12%), HR (10%), IT (10%), product (2%), and others (2%).

3/20/2025
Phishing

20% of phishing emails between September 15, 2024 and February 14, 2025 relied solely on social engineering.

3/20/2025
PhishingSocial engineering

The phishing hyperlink, malware, and social engineering payloads getting through traditional detection have surged, with phishing hyperlinks increasing by 36.8%, malware by 20%, and social engineering tactics by 14.2% compared to the previous six months.

3/20/2025
Phishing

82.6% of all phishing emails analysed exhibited some use of AI.

3/20/2025
PhishingAI

There was a 17.3% increase in phishing emails between September 15, 2024 and February 14, 2025 compared to the previous six months.

3/20/2025
Phishing

In 2024, there was a 47% increase in phishing emails evading detection by Microsoft’s native security and secure email gateways.

3/20/2025
PhishingEvasionMicrosoft

Showing 81-100 of 175 results