AGL57.86▲ 5.26 (0.10%)AIRLINK160.53▲ 4.44 (0.03%)BOP10.08▲ 0.24 (0.02%)CNERGY7.94▲ 0.22 (0.03%)DCL10.56▲ 0.03 (0.00%)DFML36.24▲ 1.55 (0.04%)DGKC151.86▲ 3.8 (0.03%)FCCL46.96▼ -0.03 (0.00%)FFL15.66▼ -0.15 (-0.01%)HUBC141.41▲ 0.79 (0.01%)HUMNL12.28▼ -0.06 (0.00%)KEL4.75▲ 0.36 (0.08%)KOSM5.75▲ 0.36 (0.07%)MLCF76.31▲ 1.43 (0.02%)NBP96.34▲ 8.76 (0.10%)OGDC213.74▲ 4.04 (0.02%)PAEL44.95▲ 0.43 (0.01%)PIBTL8.95▲ 0.13 (0.01%)PPL175.29▲ 2.24 (0.01%)PRL34.03▲ 1.88 (0.06%)PTC23.17▲ 1.17 (0.05%)SEARL85.82▲ 0.93 (0.01%)TELE7.55▲ 0.18 (0.02%)TOMCL32.11▼ -0.08 (0.00%)TPLP9.57▲ 0.54 (0.06%)TREET19.46▲ 0.12 (0.01%)TRG63.21▲ 1.06 (0.02%)UNITY26.93▲ 0.11 (0.00%)WTL1.27▲ 0.03 (0.02%)

Use of corporate emails for online services causes security breaches

Auto Draft
Share
Tweet
WhatsApp
Share on Linkedin
[tta_listen_btn]

ISLAMABAD – Use of corporate emails to register for personal accounts on marketplaces and social media increases the risk of account theft and corporate security breaches, reveals the Kaspersky Digital Footprint Intelligence report.

Kaspersky analysed compromised credentials leaked on the dark web between 2019 and 2024 for three popular entertainment platforms: Roblox, Discord and Netflix.

On average, 7 per cent of users whose accounts were leaked had registered on these platforms using a corporate email address.

“Registering on various services for personal use with a work email is not best practice. First, you may lose access to these accounts if you change jobs. Second, it can pose security risks for both you and your company. Suppose your passwords follow a predictable pattern across different services. In that case, it increases the likelihood of other accounts being compromised, including your work account, should your corporate email be exposed in a dark web leak,” explains Sergey Shcherbel, expert at Kaspersky Digital Footprint Intelligence.

Kaspersky experts also found that bank employees most commonly registered their work email addresses on streaming services, marketplaces and social networks. In a few cases, corporate emails were also used as logins on gaming platforms and adult content websites.

To conduct this study, experts compiled a sample of 50 banking sector companies and examined compromised credentials leaked on the dark web, identifying those linked to the corporate domains of these companies across five categories of popular platforms.

In light of these growing infostealer threats, Kaspersky has launched a dedicated landing page to raise awareness of the issue and provide strategies for mitigating associated risks.

If you encounter a data leak through infostealers, change compromised account passwords and monitor for suspicious activity associated with those accounts. Run full security scans on all devices, removing any detected malware.

Companies are recommended to monitor dark web markets proactively to detect compromised accounts before they pose risks to customers or employees.

Related Posts

Get Alerts