Not all is lost
While it may feel like organizations are under a continuous wave of attacks, most remain unsophisticated. Phishing, exploitation of remote access points, exploiting unpatched software with known vulnerabilities, and weak credentials will continue to be the main causes of cyber incidents. Basic risk mitigation controls will continue to remain effective mitigations:
- Email security, including spam filtering and user training, is important.
- Ensure technical vulnerabilities like old, unpatched software or insecure remote access tools are unavailable for attackers to exploit.
- Backups should be implemented and tested regularly before a cyber incident occurs.
- Never process new requests or change payment requests based on email — implement defined processes with a two-party approval process.
- Create a layered defense for your network with multifactor authentication and endpoint detection and response.
Want to continue reading?
Become a Free PropertyCasualty360 Digital Reader
Your access to unlimited PropertyCasualty360 content isn’t changing.
Once you are an ALM digital member, you’ll receive:
- Breaking insurance news and analysis, on-site and via our newsletters and custom alerts
- Weekly Insurance Speak podcast featuring exclusive interviews with industry leaders
- Educational webcasts, white papers, and ebooks from industry thought leaders
- Critical converage of the employee benefits and financial advisory markets on our other ALM sites, BenefitsPRO and ThinkAdvisor
Already have an account? Sign In Now
© 2025 ALM Global, LLC, All Rights Reserved. Request academic re-use from www.copyright.com. All other uses, submit a request to [email protected]. For more information visit Asset & Logo Licensing.