Three in four EU employees faced cyber threats at work, new Eurobarometer finds

Imported from official source

Press release

Cybersecurity Classified by Officially

Three in four employees in the European Union encountered suspicious emails, messages or links at work, according to a new Eurobarometer survey published by the European Commission today. The results were released as European Cybersecurity Month begins across all 27 Member States.  

Phishing was the most common workplace cyber threat, with 39% of employees reporting fraudulent messages or websites designed to steal data or gain unauthorised access. Employees also reported attempts to steal personal data (18%) and passwords (16%), malware attacks (17%), and artificial intelligence (AI)-generated scams (15%).  

The findings point to a gap between awareness and daily practice. While 83% said the potential consequences of cyberattacks are serious, only 48% said they could recognise an AI-generated fake video. Overall, just 18% said their organisation had experienced no cyber incident at all, as far as they are aware. 

Awareness is high, but is not mirrored in daily habits

Employees widely recognise risky behaviour, particularly in relation to phishing and password management. Among those using digital systems and tools at work, 76% said clicking on a link without checking the sender is risky. A similar share said using the same password for private and work accounts is risky (74%), while 69% said sharing work-related information on social media poses a risk. Most employees also know they should report suspicious emails and install software updates.  

However, this awareness often fails to translate into daily practice. While 72% said they could identify suspicious emails, only 54% said they check the sender before opening links, and just 50% said they always lock their computer when leaving their workstation.  

This is an extract. The publication continues at the source.

© European Union — excerpt, reused under CC BY 4.0. Licence

Read the original at the source: https://ec.europa.eu/commission/presscorner/detail/en/ip_26_2020

Officially imported this from European Commission’s own source and shows an extract. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.

Provenance

Organization
European Commission — imported from official source
Official source
https://ec.europa.eu/commission/presscorner/api/rss?language=en RSS
Imported
September 30, 2026 10:00
Versions
1 recorded
Identity
https://ec.europa.eu/commission/presscorner/detail/en/ip_26_2020

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.