Phishing attacks on state and local governments surge by 360%

July 10, 2024 Phishing attacks targeting state and local governments have surged by 360% between May 2023 and May 2024, according to recent research from Abnormal Security. These attacks pose significant risks, as they target critical infrastructure, public utilities, and sensitive data. Government systems, which often operate with limited cybersecurity resources, are especially vulnerable. Additionally, Business Email Compromise (BEC) and Vendor Email Compromise (VEC) attacks have increased by 70% and 105%, respectively. Cybercriminals exploit the trust and transparency inherent in government operations, making these entities prime targets for sophisticated email attacks.

The report also looks at why governments are such good targets for these attacks, namely:

1. Valuable Data: Governments hold sensitive information, including personal data, classified documents, and critical infrastructure details.
2. Critical Services: Disrupting operations can have wide-reaching impacts, making attacks potentially more rewarding.
3. Budget Constraints: Limited cybersecurity budgets and resources make it challenging to implement and maintain robust security measures.
4. Election Vulnerability: Elections are high-stakes events, attracting cybercriminals and nation-state actors aiming to disrupt or influence outcomes.

Another noted aspect of these attacks is how increasingly sophisticated they have become, not in technical terms, but in how well they exploit and manipulate the staff of these organizations. Most still rely on phishing as their first level of attack. But Business Email Compromise (BEC) has not only increased in volume of attacks, but increasingly relies on sophisticated social engineering as opposed to technical exploits.

In addition to the increases in volumes of attacks, by leveraging supply chain vulnerabilities, the attackers can gain wider access to targets by exploiting trusted relationships. Vendor email compromise (VEC) has doubled in frequency, exploiting the trust between governments and their vendors. In addition, account takeover attacks have increased by 43%, providing wide access to systems and networks.

NOTE: We are always cautious about providing research from vendors, but the data they shared not only appeared credible but is in keeping with our experience and the opinions of security experts we speak to regularly. No doubt this vendor has a solution that they will propose – we make no comment on that. But we do feel that this is an increasing problem in both the US and Canada and we include this story to draw attention to it. – Ed.

 

Top Stories

Related Articles

December 23, 2025 Thank you. None of what follows happens without your support. Hashtag Trending has now passed three million more...

December 23, 2025 Editor's Notes: This is the first of two articles reflecting on the year but Yogi Schulz. Schulz' more...

December 23, 2025 Spotify says it has identified the user account behind what it describes as “unlawful” scraping of its more...

December 23, 2025 Waymo temporarily suspended its self-driving taxi service in San Francisco over the weekend after a citywide power more...

Picture of Jim Love

Jim Love

Jim Love's career in technology spans more that four decades. He's been a CIO and headed a world wide Management Consulting practice. As an entrepreneur he built his own tech business. Today he is a podcast host with the popular tech podcasts Hashtag Trending and Cybersecurity Today with over 14 million downloads. As a novelist, his latest book "Elisa: A Tale of Quantum Kisses" is an Audible best seller. In addition, Jim is a songwriter and recording artist with a Juno nomination and a gold album to his credit. His music can be found at music.jimlove.com
Picture of Jim Love

Jim Love

Jim Love's career in technology spans more that four decades. He's been a CIO and headed a world wide Management Consulting practice. As an entrepreneur he built his own tech business. Today he is a podcast host with the popular tech podcasts Hashtag Trending and Cybersecurity Today with over 14 million downloads. As a novelist, his latest book "Elisa: A Tale of Quantum Kisses" is an Audible best seller. In addition, Jim is a songwriter and recording artist with a Juno nomination and a gold album to his credit. His music can be found at music.jimlove.com

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn