Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2026 GBAF Publications Ltd - All Rights Reserved. | Sitemap | Tags | Developed By eCorpIT

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Business > 2017 PONEMON INSTITUTE STUDY FINDS SMBS ARE A HUGE TARGET FOR HACKERS
    Business

    2017 PONEMON INSTITUTE STUDY FINDS SMBS ARE A HUGE TARGET FOR HACKERS

    Published by Gbaf News

    Posted on September 26, 2017

    7 min read

    Last updated: January 21, 2026

    This image illustrates oil tankers, highlighting the expected stabilization of oil prices in 2025 due to ample supply and slow demand, particularly from China. The article discusses how OPEC+ actions and global market trends impact oil pricing.
    Oil tankers transporting crude oil amid expected price stabilization - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Negligent Employees and Poor Password Policies are the Weakest Links

    • Negligent employees are the #1 root cause behind data breaches across the UK and North America
    • Ransomware is hitting SMBs hard with more than 50% experiencing an attack
    • Attacks are becoming costlier to businesses with damage now almost £1M

    Keeper Security, Inc., the world’s leading password manager and secure digital vault, today announced the results of UK and North Amerstudy analyzing the state of cybersecurity in small and medium-sized businesses (SMBs). Sponsored by Keeper Security and conducted by the Ponemon Institute, the 2017 State of SMB Cybersecurity Report involved more than 1000 IT professionals and found that 54% of respondents said negligent employees were the root cause of a data breach.

    The study found that strong passwords and biometrics continue to be an essential part of security defense. However, 59% of respondents say they do not have visibility into their employees’ password practices, such as the use of unique or strong passwords and secure password sharing. Safe password policies are also not strictly enforced by companies. Only 43% of respondents have a password policy in place and 68% said they do not strictly enforce their policy or are unsure.

    “The number one greatest cyber threat to a business is their very own employees,” said Darren Guccione, CEO and Co-founder of Keeper Security, Inc. “Critical data is more accessible via mobile devices in our 24/7-connected, device-filled world. Poor password policies, the rise of mobile-targeted attacks and the influx of Internet of Things devices in the workplace is a recipe for disaster. The best way to reduce these risks is through software that can lock an employee’s device and at the same time, protect their passwords and other sensitive digital assets via a ubiquitous digital vault.”

    The risk of a cyber attack is increasing for companies of all sizes and industries when compared to last year. More than 61% of SMBs have been breached in the last 12 months vs 55% in 2016. The quantity of stolen data in an average breach nearly doubled to 9,350 records from 2016’s average of 5,079 records. Internet of Things devices also stress SMB organizations with 67% very concerned about the impact of these devices in their office. More than half of respondents (56%) believe IoT and mobile devices are the most vulnerable endpoint their organization’s networks.

    The most prevalent attack vectors against smaller businesses were phishing/social engineering (48% of respondents) and web-based (43%). More respondents this year stated their organization had a phishing/social engineering attack, which coincides with the number of ransomware attacks their companies experienced.

    The rise of ransomware is hitting SMBs hard. This year, more than half (51% of respondents) experienced either an unsuccessful or successful ransomware attack within the past 3 months to more than 12 months. Further, 53% of the 51% had more than one ransomware attack during this period. 79% said the ransomware was unleashed through a phishing/social engineering attack.

    “We were alarmed to find that small and mid-sized businesses are becoming a huge target for hackers,” said Dr. Larry Ponemon, Chairman and Founder of the Ponemon Institute. “As both frequency and size of data breaches increases, SMBs must face the reality that a material adverse financial impact on their business is a real possibility. Attacks are becoming more costly with the average cost due to damage or theft of IT assets and infrastructure now exceeding £700,000. The average cost due to disruption to normal operations also increased to over £700,000 compared to the 2016 report. One cyber incident could very well put a small company out of business.”

    The complete study can be accessed at the following link: https://keepersecurity.com/2017-State-Cybersecurity-Small-Medium-Businesses-SMB.html

    Negligent Employees and Poor Password Policies are the Weakest Links

    • Negligent employees are the #1 root cause behind data breaches across the UK and North America
    • Ransomware is hitting SMBs hard with more than 50% experiencing an attack
    • Attacks are becoming costlier to businesses with damage now almost £1M

    Keeper Security, Inc., the world’s leading password manager and secure digital vault, today announced the results of UK and North Amerstudy analyzing the state of cybersecurity in small and medium-sized businesses (SMBs). Sponsored by Keeper Security and conducted by the Ponemon Institute, the 2017 State of SMB Cybersecurity Report involved more than 1000 IT professionals and found that 54% of respondents said negligent employees were the root cause of a data breach.

    The study found that strong passwords and biometrics continue to be an essential part of security defense. However, 59% of respondents say they do not have visibility into their employees’ password practices, such as the use of unique or strong passwords and secure password sharing. Safe password policies are also not strictly enforced by companies. Only 43% of respondents have a password policy in place and 68% said they do not strictly enforce their policy or are unsure.

    “The number one greatest cyber threat to a business is their very own employees,” said Darren Guccione, CEO and Co-founder of Keeper Security, Inc. “Critical data is more accessible via mobile devices in our 24/7-connected, device-filled world. Poor password policies, the rise of mobile-targeted attacks and the influx of Internet of Things devices in the workplace is a recipe for disaster. The best way to reduce these risks is through software that can lock an employee’s device and at the same time, protect their passwords and other sensitive digital assets via a ubiquitous digital vault.”

    The risk of a cyber attack is increasing for companies of all sizes and industries when compared to last year. More than 61% of SMBs have been breached in the last 12 months vs 55% in 2016. The quantity of stolen data in an average breach nearly doubled to 9,350 records from 2016’s average of 5,079 records. Internet of Things devices also stress SMB organizations with 67% very concerned about the impact of these devices in their office. More than half of respondents (56%) believe IoT and mobile devices are the most vulnerable endpoint their organization’s networks.

    The most prevalent attack vectors against smaller businesses were phishing/social engineering (48% of respondents) and web-based (43%). More respondents this year stated their organization had a phishing/social engineering attack, which coincides with the number of ransomware attacks their companies experienced.

    The rise of ransomware is hitting SMBs hard. This year, more than half (51% of respondents) experienced either an unsuccessful or successful ransomware attack within the past 3 months to more than 12 months. Further, 53% of the 51% had more than one ransomware attack during this period. 79% said the ransomware was unleashed through a phishing/social engineering attack.

    “We were alarmed to find that small and mid-sized businesses are becoming a huge target for hackers,” said Dr. Larry Ponemon, Chairman and Founder of the Ponemon Institute. “As both frequency and size of data breaches increases, SMBs must face the reality that a material adverse financial impact on their business is a real possibility. Attacks are becoming more costly with the average cost due to damage or theft of IT assets and infrastructure now exceeding £700,000. The average cost due to disruption to normal operations also increased to over £700,000 compared to the 2016 report. One cyber incident could very well put a small company out of business.”

    The complete study can be accessed at the following link: https://keepersecurity.com/2017-State-Cybersecurity-Small-Medium-Businesses-SMB.html

    More from Business

    Explore more articles in the Business category

    Image for How Commercial Lending Software Platforms Are Structured and Utilized
    How Commercial Lending Software Platforms Are Structured and Utilized
    Image for Oil Traders vs. Tech Startups: Surprising Lessons from Two High-Stakes Worlds | Said Addi
    Oil Traders vs. Tech Startups: Surprising Lessons from Two High-Stakes Worlds | Said Addi
    Image for Why More Mortgage Brokers Are Choosing to Join a Network
    Why More Mortgage Brokers Are Choosing to Join a Network
    Image for From Recession Survivor to Industry Pioneer: Ed Lewis's Data Revolution
    From Recession Survivor to Industry Pioneer: Ed Lewis's Data Revolution
    Image for From Optometry to Soul Vision: The Doctor Helping Entrepreneurs Lead With Purpose
    From Optometry to Soul Vision: The Doctor Helping Entrepreneurs Lead With Purpose
    Image for Global Rankings Revealed: Top PMO Certifications Worldwide
    Global Rankings Revealed: Top PMO Certifications Worldwide
    Image for World Premiere of Midnight in the War Room to be Hosted at Black Hat Vegas
    World Premiere of Midnight in the War Room to be Hosted at Black Hat Vegas
    Image for Role of Personal Accident Cover in 2-Wheeler Insurance for Owners and Riders
    Role of Personal Accident Cover in 2-Wheeler Insurance for Owners and Riders
    Image for The Young Rich Lister Who Also Teaches: How Aaron Sansoni Built a Brand Around Execution
    The Young Rich Lister Who Also Teaches: How Aaron Sansoni Built a Brand Around Execution
    Image for Q3 2025 Priority Leadership: Tom Priore and Tim O'Leary Balance Near-Term Challenges with Long-Term Strategic Wins
    Q3 2025 Priority Leadership: Tom Priore and Tim O'Leary Balance Near-Term Challenges with Long-Term Strategic Wins
    Image for Using Modern Team Management Methods to Improve Collaboration in Hybrid Work Models
    Using Modern Team Management Methods to Improve Collaboration in Hybrid Work Models
    Image for Why Email Deliverability is a Business Risk Your Company Can’t Afford to Ignore
    Why Email Deliverability is a Business Risk Your Company Can’t Afford to Ignore
    View All Business Posts
    Previous Business PostATRADIUS BAROMETER WARNS OF PAYMENT DELAYS IN THE AMERICAS
    Next Business Post65% OF UK BUSINESSES EMBRACE FINTECH