Theregister One in Eight UK Employees Justify Selling Corporate Login Credentials
Article Content
- •13% of UK employees have sold or know someone who sold corporate logins in the past year.
- •Higher justification rates for selling credentials were found among senior management and business owners.
- •Insider threats pose significant risks, with malicious incidents accounting for 27% of insider-related losses.
A recent report by Cifas revealed that 13% of UK employees admitted to selling their corporate login credentials or knowing someone who has done so in the past year. The report indicated that this behavior is perceived as justifiable by 13% of respondents overall, with higher percentages among senior management: 32% of managers, 36% of directors, and 43% of C-suite executives. Alarmingly, 81% of business owners also found it acceptable. The findings suggest a troubling shift in attitudes towards insider fraud, particularly among IT and telecom professionals, who exhibited the highest tolerance for such actions. The report highlights the potential for significant cyber and financial risks to organizations, as insider threats accounted for a substantial portion of losses due to fraud. Cifas emphasized the need for organizations to foster a fraud-aware culture to mitigate these risks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…