Abnormal AI Report Highlights Employee Vulnerability to Vendor Email Compromise

Abnormal AI Report Highlights Employee Vulnerability to Vendor Email Compromise

Abnormal AI's latest report reveals that employees in large enterprises engage with malicious vendor emails 72% of the time, highlighting significant security challenges.

Abnormal AI has released a new threat intelligence report titled "Read, Replied, Compromised: Employee Engagement Trends Across VEC Attacks," announced in a press release. The report, based on data from over 1,400 organizations globally, uncovers that employees in large enterprises engage with malicious vendor emails 72% of the time after reading them.

The report highlights that attackers have attempted to steal more than $300 million through vendor email compromise (VEC) in just 12 months. Despite the high engagement rates, the overall reporting rate for these advanced email threats remains low at 1.46%, indicating a significant visibility gap for security teams.

The telecommunications industry showed the highest VEC engagement rate at 71.3%, followed by the energy/utilities sector at 56%. Sales roles, particularly entry-level positions, were identified as the most vulnerable, with junior sales staff engaging with VEC attacks at a rate of 86%.

Abnormal AI emphasizes the need for organizations to adopt proactive defenses to block threats before they reach employees' inboxes, as traditional defenses often fail to detect these sophisticated, socially-engineered attacks. The report underscores the importance of moving beyond reactive training to prevent costly human errors.

We hope you enjoyed this article.

Consider subscribing to one of several newsletters we publish. For example, in the Daily AI Brief you can read the most up to date AI news round-up 6 days per week.

Also, consider following us on social media:

Subscribe to Cybersecurity AI Weekly

Weekly newsletter about AI in Cybersecurity.

Trend report

Cybersecurity Trends Report 2025

Netwrix

The Cybersecurity Trends Report 2025 by Netwrix Research Lab provides insights into how organizations are adapting their cybersecurity strategies amidst growing AI adoption. The report, based on a survey of 2,150 IT professionals from 121 countries, highlights key trends such as the increase in hybrid IT environments, AI-driven security challenges, and the rising costs of security incidents.

Read more