Social Engineering
We've curated 25 cybersecurity statistics about Social engineering to help you understand how attackers manipulate human psychology to gain sensitive information and access in 2025. These insights reveal the tactics used and the importance of awareness in combating these threats.
Related Topics
Showing 1-20 of 25 results
51% of organizations have faced sophisticated, personalized phishing emails powered by deepfake technology.
77% of organizations have been targeted by deepfake attacks.
In Q4 2025, callback phishing increased from 3% to 18% of all phishing incidents, a 500% spike.
In 2025, 'ClickFix' social engineering techniques were used in 1% of phishing attacks.
63% of retailers plan to invest significantly in generative AI for social engineering attacks.
65% of organizations expressed serious concern about IT help desk bypass and social engineering attacks as a top threat.
Nearly a third of leaders at financial services firms admit they are not fully confident employees could recognize an AI-driven phishing or social engineering threat.
64% of surveyed enterprises confirmed social engineering attacks via encrypted or informal channels in the past 12 months.
38% of organizations admit to being underprepared for AI-driven social engineering threats such as automated attacks, deepfake-based videos, and voice scams.
AI-enhanced phishing and social engineering are the most concerning tactics (27%) for insider threats.
78% of security leaders identify social engineering and phishing as their top threat.
Fake CAPTCHA social engineering attacks, particularly ClickFix campaigns, jumped 1,450% from the second half of 2024 to the first half of 2025.
Social engineering attacks accounted for 39% of initial access incidents observed during the first half of 2025.
44.7% of respondents cited phishing/social engineering as a top concerning threat.
51% of respondents consider AI-enhanced social engineering a fairly or extremely significant concern.
44.7% of respondents cited phishing/social engineering as a top concerning threat.
28% of healthcare executives say they are likely to invest in generative AI for social engineering attacks.
Social engineering attacks (48%) and ransomware (34%) were the most common types of cyberattacks on healthcare organizations in the past year.
28% of healthcare executives say they are likely to invest in generative AI for social engineering attacks.
56% of financial professionals cite social engineering as a significant tactic powered by AI.