Whilst staff are enjoying their holidays, cybercriminals deliberately exploit the quieter summer months to launch attacks on businesses. Small and medium-sized enterprises, in particular, often underestimate this risk.
Fewer staff, more vulnerabilities
During the holiday season, many teams operate with reduced staffing levels. Stand-ins take on tasks with which they are not familiar on a day-to-day basis. This increases the likelihood of poor decisions or security breaches.
Cybercriminals are aware of this and adapt their attacks accordingly.
Social engineering during the holidays
Fake emails sent in the name of managing directors or colleagues are particularly common. These emails instruct staff to pay invoices, disclose login details or make urgent bank transfers.
When under time pressure and with fewer opportunities to seek clarification, such requests are more likely to be accepted.
Making preparations before the holidays
Companies should check the following in good time:
- Are all systems up to date?
- Are the backups working?
- Is multi-factor authentication enabled?
- Are there clear rules on who stands in for whom?
- Have emergency contacts been specified?
A quick safety check before the holidays can help avoid high costs later on.
Raising staff awareness
Technical security measures alone are not enough. Regular training helps staff to spot suspicious emails or unusual enquiries at an early stage.
It’s worth taking a moment to refresh your memory on the most important safety rules, especially before the holiday season.
Cyberattacks don’t take a break. Companies that prepare well in advance and raise awareness amongst their staff significantly reduce the risk and can enjoy a more relaxed summer.
Your partner for cybersecurity – Flying Supporter
Do you have any questions?
We will be happy to help you.