Social Engineering vs. System Intrusion
The 2022 DBIR showed how two popular different attack strategies threaten companies: social engineering and system intrusion.
Whereas social engineering seeks to deceive humans using pretexting, system intrusion goes after technological vulnerabilities.
Social engineering has overtaken system intrusion as the most common pattern for data breaches. Currently, those two approaches outnumber miscellaneous errors, privilege misusse and lost/stolen assets.
Verizon noted that ransomware typically is connected to system intrusion, which explains why both are rising in frequency.