In the holiday spirit, Lookout Inc. is warning employees and businesses that phishing attacks across organizations and personal devices are expected to more than double this week, based on historical data.
This week as the holiday shopping season kicks off, many employees will be working (and shopping) on their mobile devices, and, as this is part of a more modern business model, the mobile devices these employees use are traditionally neglected by corporate cyber security strategies. This creates a perfect environment for hackers to carry out socially engineered phishing attacks leading to credential theft and direct access to sensitive corporate data.
Lookout surveyed 1,515 employees yielding the following notable data points:
- 63% admit that they are more distracted during Thanksgiving week
- 89% will capitalize on Black Friday and Cyber Monday sales
- 57% admit they are more likely to click on unfamiliar links in search of good deals
- 66% will shop on personal mobile phones
- 47% reported their employer provides no mobile security platform
“As employees are distracted by shopping on their mobile device, CISOs face a significant phishing risk. But rather than just focusing on the particular methods attackers may use this Thanksgiving, businesses should take a data-centric approach and monitor for changes in user behavior and anomalous data transfers,” said David Richardson, Vice President of Endpoint and Threat Intelligence, Lookout.
George McGregor, VP, Approov Mobile Security had this to say:
“Half the employees surveyed report that their employers provide no mobile security for their devices!
“Two types of security leaders should read this report with trepidation: Enterprise leaders must ensure the enterprise apps their employees use are protected, and e-commerce app owners must put in place effective mobile security to protect their apps.”
Emily Phelps, Director, Cyware follows with this:
“Phishing emails are like those ugly holiday sweaters: unwanted and sometimes hard to identify. They might promise you a free PlayStation 5 or a lifetime supply of gingerbread cookies, but don’t take the bait and never click on mysterious links or attachments! Always check the legitimacy of websites. A missing padlock icon in the address bar is an indicator to dash away, dash away, dash away all!”
Phishing attacks are dangerous to begin with. But at this time of year, they are insanely dangerous. That means everyone needs to be more focused on spotting these sorts of attacks so that they don’t become a victim.
Lookout Survey Reveals Critical Gaps in Security Leaders’ Confidence and the Actual Vulnerability of Their Organizations
Posted in Commentary with tags Lookout on July 10, 2025 by itnerdA new global survey by Lookout, Inc. today unveiled concerning insights into the state of mobile cybersecurity preparedness, revealing a significant gap between security leaders’ confidence and the actual vulnerability of their organizations. The survey of more than 700 security leaders globally exposes a pervasive overconfidence in employees’ ability to detect modern mobile-centric threats, leaving businesses significantly more exposed than they realize.
The survey’s most critical insights include:
Despite these alarming statistics, the survey revealed pervasive overconfidence: 96% of leaders are confident their employees can spot a phishing attempt that comes via their mobile devices. Yet, over half reported incidents where employees fell victim to executive impersonation scams, leading to financial loss or sensitive data exposure. Furthermore, even with widespread security training efforts, “lack of training” remains the top reason cited for employees clicking suspicious links, suggesting current education may not be keeping pace with the rapidly evolving modern threat landscape.
These findings highlight core issues:
To address these pressing challenges, Lookout emphasizes a multi-faceted approach to secure the “front line” – employees and their mobile devices. This includes:
The report can be found here: https://mms.businesswire.com/media/20250710838048/en/2520234/1/lookout-2025-simplydirect-survey-report-us.pdf?download=1.
About the Survey
The data presented in this report is sourced from the independent research company Censuswide, which conducted the survey in June 2025. More than 700 security leaders globally were polled across various industries. Censuswide is a member of the British Polling Council and abides by and employs members of the Market Research Society and follows the MRS code of conduct and ESOMAR principles.
Leave a comment »