{"id":52225,"date":"2023-06-06T22:08:00","date_gmt":"2023-06-06T22:08:00","guid":{"rendered":"https:\/\/www.darkreading.com\/threat-intelligence\/verizon-dbir-social-engineering-breaches-spiraling-ransomware-costs"},"modified":"2023-06-06T22:08:00","modified_gmt":"2023-06-06T22:08:00","slug":"verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/","title":{"rendered":"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt9afbf689fbbe5274\/647fa1bd683d3aeb88419853\/hole_in_fence-Joseph_Poulter-Alamy.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>A full three-quarters of data breaches in the last year (74%) involved the human element, mainly caused by employees either falling for social engineering attacks or making errors, with some misusing their access maliciously.<\/p>\n<p>Social engineering incidents have <a href=\"https:\/\/www.darkreading.com\/edge-threat-monitor\/most-common-threats-in-dbir\" target=\"_blank\" rel=\"noopener\">almost doubled since last year<\/a> to account for 17% of all breaches,&nbsp;according to Verizon&#8217;s 2023 Data Breach Investigations Report (DBIR) released June 6 (which analyzed more than 16,312 security incidents, of which 5,199 were confirmed data breaches).&nbsp;The report noted that this preponderance of human fallacy within incidents comes along with findings that the median cost of a ransomware attack <a href=\"https:\/\/www.darkreading.com\/attacks-breaches\/ransomware-alarming-growth-verizon-dbir\" target=\"_blank\" rel=\"noopener\">has doubled since last year,<\/a> reaching into the million-dollar range. The evidence taken together points to a gaping need for organizations to get in control of the security basics \u2014 or else face a spiraling cycle of inflation when it comes to data breach costs.<\/p>\n<p>Chris Novak, managing director of cybersecurity consulting at Verizon Business, noted that in order to rein in the trend, organizations need to focus on three things: employee security hygiene, implementing true multifactor authentication, and collaboration across organizations on threat intelligence. The first is perhaps the most impactful issue, he said.<\/p>\n<p>&#8220;The fundamentals need to improve, and organizations need to be focusing on cyber hygiene,&#8221; he said, during a press event in Washington DC. &#8220;It&#8217;s probably the least sexy recommendation I can give you, but it is one of the most fundamentally important things that we see organizations still missing, and of all shapes and sizes. And it&#8217;s usually because they want to focus on the new flashy technology in the industry, and they forget the basics.&#8221;<\/p>\n<h2 class=\"regular-text\">Financially Motivated External Attackers Double Down on Social Engineering<\/h2>\n<p>In addition to social engineering growing in volume, the median amount stolen from these attacks hit $50,000 this past year, <a href=\"https:\/\/www.verizon.com\/business\/resources\/reports\/dbir\/\" target=\"_blank\" rel=\"noopener\">according to the DBIR<\/a>. Overall, there were 1,700 incidents that fell into the social media&nbsp;bucket, 928 with confirmed data disclosure.<\/p>\n<p>Phishing and &#8220;pretexting,&#8221; i.e. impersonation of the sort commonly used in <a href=\"https:\/\/www.darkreading.com\/endpoint\/travel-themed-phishing-bec-campaigns-smarter-summer-season\" target=\"_blank\" rel=\"noopener\">business email compromise (BEC) attacks<\/a>, dominated the social engineering scene, the report found. In fact, pretexting gambits have almost doubled since last year and now represent 50% of all social engineering attacks.<\/p>\n<p>Verizon analysts found that the vast majority of social engineering incidents were driven by financially motivated external threat actors, who were involved in 83% of breaches. In contrast, insider threats represented about a fifth of the incidents (19%, both actively malicious and inadvertent) and state-sponsored actions (usually involving espionage instead of financial gain) were involved less than 10% of the time.<\/p>\n<p>Further, external actors stuck with the classics when it came to gaining initial access into organizations, with the top three avenues being using stolen credentials (49% of breaches); phishing (12%); and exploiting vulnerabilities (5%).<\/p>\n<p>No wonder the report found&nbsp;that three-quarters of the data compromised in social engineering attacks last year were credentials to fuel additional attacks (76%) followed by internal organizational information (28%) and personal data.<\/p>\n<h2 class=\"regular-text\">Ransomware Has Yet to Hit a Wall in Growth<\/h2>\n<p>What&#8217;s the end game for these social engineers? All too often it&#8217;s an answer that&#8217;s easy to guess: ransomware and extortion. It&#8217;s the same story as it has been for the past few years, and, in fact,&nbsp;ransomware events held steady in this year&#8217;s report&nbsp;in terms of share of breaches, accounting, like last year, for about a quarter of incidents overall (24%). This may seem like good news on the outside, but the report noted that the stat actually flies in the face of the conventional wisdom that ransomware would, sooner or later, hit a wall thanks to organizations wising up on defenses, entities refusing to pay, or <a href=\"https:\/\/www.darkreading.com\/threat-intelligence\/revil-revival-ransomware-gangs-gone\" target=\"_blank\" rel=\"noopener\">law enforcement scrutiny<\/a>.<\/p>\n<p>None of that seems to have moved the needle \u2014 and, in fact, there&#8217;s still plenty of upside for ransomware going forward, the report noted, since it hasn&#8217;t hit a saturation level.<\/p>\n<p>&#8220;That almost a quarter of breaches involve a ransomware step continues to be a staggering result,&#8221; the report read. &#8220;However, we had been anticipating that ransomware would soon be hitting its theoretical ceiling, by which we mean that all the incidents that could have ransomware, would have. Sadly there is still some room for growth.&#8221;<\/p>\n<p>Overall, financial motives provided the impetus for 94.6% of breaches in the year, with ransomware present in 59% of them. A full 80% of system intrusion incidents involved ransomware, according to the DBIR, and 91% of industries have ransomware as one of their top varieties of incidents.<\/p>\n<p>The <a href=\"https:\/\/www.darkreading.com\/risk\/cybercrime-ecosystem-spawns-lucrative-underground-gig-economy\" target=\"_blank\" rel=\"noopener\">ransomware economy also continues to professionalize<\/a>, according to the report. When it comes to the external actors responsible for the majority of breaches, most were affiliated with organized crime; ransomware, in fact, represented 62% of all organized crime-related incidents.<\/p>\n<h2 class=\"regular-text\">Battling the Rising Tide of Ransomware &amp; Breaches<\/h2>\n<p>To prevent further ransomware growth and stem the tide of breaches in general, Verizon&#8217;s Novak says that organizations can focus on fairly achievable steps, given that social engineering is a linchpin to both.&nbsp;To wit, in addition to encouraging basic security hygiene and awareness on the part of employees, organizations need to also forge ahead with MFA and focus on honing a range of cybersecurity partnerships.<\/p>\n<p>When it comes to MFA, he said that moving away from simple two-factor authentication using one-time passwords, in favor of <a href=\"https:\/\/www.darkreading.com\/endpoint\/without-fido2-mfa-falls-short\" target=\"_blank\" rel=\"noopener\">strong authentication like FIDO2<\/a>, will be game changing. FIDO2 presents authentication challenges to the user via a browser, which adds context about the challenge and then delivers it to an attached FIDO2 authenticator, which allows detection of man-in-the-middle snooping and more.<\/p>\n<p>&#8220;If we can make significant strides in that, I think we can substantially knock down a lot of the belly-button [basic] breaches in terms of the human factor involvements,&#8221; Novak said. &#8220;We need to be looking at other mechanisms for doing strong mutual or multifactor authentication.&#8221;<\/p>\n<p>Even so, he said, &#8220;I think we&#8217;re nowhere near where we would love to be on FIDO2. But I think that the biggest challenge we really face in getting large scale adoption is changing the human behavior. We say &#8216;Look, do this and you&#8217;ll protect your data, you&#8217;ll protect your systems, and protect your business, your livelihood.&#8217; And even still, lots of individuals are going to struggle to move in that direction.&#8221;<\/p>\n<p>However, the good news is that Novak noted that organizations are a bit further along on the cyber-partnership front.<\/p>\n<p>&#8220;The previous mentality was that organizations really tried to do everything all in house, and I think now we are seeing the need for a higher degree of collaboration and progression,&#8221; he explained. &#8220;The threat actors are doing it because it&#8217;s an effective way to communicate and share information, and we can do that too. It&#8217;s time to get plugged into something like a broad multiparty threat intelligence effort, helping organizations with incident response but also cultivating a strong ecosystem of partners. I think it will be extraordinarily beneficial.&#8221;<\/p>\n<p>This last effort can also help organizations share tips and approaches for shoring up defenses, says Bhaven Panchal, senior director of service delivery at Cyware.<\/p>\n<p><strong>&#8220;<\/strong>It is imperative for organizations to accelerate their security processes and plug visibility gaps in their environments,&#8221; he notes. &#8220;The operationalization of threat intelligence, threat response automation, and security collaboration are going to help drive this change toward a more resilient cyberspace for all.&#8221;<\/p>\n<h2 class=\"regular-text\">Sidebar: Industry Segments Most at Risk for Data Breaches<\/h2>\n<p>In terms of how different industries were targeted, the Verizon DBIR found that the finance and insurance segment was targeted most often, followed closely by manufacturing. Vertical stats are as follows:<\/p>\n<ul>\n<li>Accommodation and Food Services <span>\u2022 <\/span>254 incidents, 68 with confirmed data disclosure<\/li>\n<li>Education \u2022 497 incidents, 238 with confirmed data disclosure<\/li>\n<li>Financial and Insurance \u2022 1,832 incidents, 480 with confirmed data disclosure<\/li>\n<li>Healthcare \u2022 525 incidents, 436 with confirmed data disclosure<\/li>\n<li>Information \u2022 2,110 incidents, 384 with confirmed data disclosure<\/li>\n<li>Manufacturing \u2022 1,817 incidents, 262 with confirmed data disclosure<\/li>\n<li>Mining, Quarrying, and Oil and Gas Extraction + Utilities \u2022 143 incidents, 47 with confirmed data disclosure<\/li>\n<li>Professional, Scientific, and Technical Services \u2022 1,398 incidents, 423 with confirmed data disclosure<\/li>\n<li>Retail \u2022 406 incidents, 193 with confirmed data disclosure<\/li>\n<\/ul>\n<p>Read More <a href=\"https:\/\/www.darkreading.com\/threat-intelligence\/verizon-dbir-social-engineering-breaches-spiraling-ransomware-costs\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ransomware continues its runaway growth with median payments reaching $50,000 per incident.Read More <a href=\"https:\/\/www.darkreading.com\/threat-intelligence\/verizon-dbir-social-engineering-breaches-spiraling-ransomware-costs\">HERE<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[151],"tags":[],"class_list":["post-52225","post","type-post","status-publish","format-standard","hentry","category-darkreading-ti"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2023-06-06T22:08:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt9afbf689fbbe5274\/647fa1bd683d3aeb88419853\/hole_in_fence-Joseph_Poulter-Alamy.jpg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"6 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs\",\"datePublished\":\"2023-06-06T22:08:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/\"},\"wordCount\":1338,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt9afbf689fbbe5274\\\/647fa1bd683d3aeb88419853\\\/hole_in_fence-Joseph_Poulter-Alamy.jpg\",\"articleSection\":[\"DarkReading |TI\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/\",\"name\":\"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt9afbf689fbbe5274\\\/647fa1bd683d3aeb88419853\\\/hole_in_fence-Joseph_Poulter-Alamy.jpg\",\"datePublished\":\"2023-06-06T22:08:00+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/#primaryimage\",\"url\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt9afbf689fbbe5274\\\/647fa1bd683d3aeb88419853\\\/hole_in_fence-Joseph_Poulter-Alamy.jpg\",\"contentUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt9afbf689fbbe5274\\\/647fa1bd683d3aeb88419853\\\/hole_in_fence-Joseph_Poulter-Alamy.jpg\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/","og_locale":"en_US","og_type":"article","og_title":"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2023-06-06T22:08:00+00:00","og_image":[{"url":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt9afbf689fbbe5274\/647fa1bd683d3aeb88419853\/hole_in_fence-Joseph_Poulter-Alamy.jpg","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"6 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs","datePublished":"2023-06-06T22:08:00+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/"},"wordCount":1338,"commentCount":0,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/#primaryimage"},"thumbnailUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt9afbf689fbbe5274\/647fa1bd683d3aeb88419853\/hole_in_fence-Joseph_Poulter-Alamy.jpg","articleSection":["DarkReading |TI"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/","url":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/","name":"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/#primaryimage"},"thumbnailUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt9afbf689fbbe5274\/647fa1bd683d3aeb88419853\/hole_in_fence-Joseph_Poulter-Alamy.jpg","datePublished":"2023-06-06T22:08:00+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/#primaryimage","url":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt9afbf689fbbe5274\/647fa1bd683d3aeb88419853\/hole_in_fence-Joseph_Poulter-Alamy.jpg","contentUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt9afbf689fbbe5274\/647fa1bd683d3aeb88419853\/hole_in_fence-Joseph_Poulter-Alamy.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/verizon-dbir-social-engineering-breaches-double-leading-to-spiraling-ransomware-costs\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Verizon DBIR: Social Engineering Breaches Double, Leading to Spiraling Ransomware Costs"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/52225","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=52225"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/52225\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=52225"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=52225"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=52225"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}