05/05/2026
Social engineering is no longer limited to phishing emails. Unit 42 reports that 36% of incident response cases between May 2024 and May 2025 began with a social engineering tactic, and that more than one-third of those incidents involved non-phishing techniques such as SEO poisoning, fake system prompts, and help desk manipulation.
Organisations should stop treating social engineering as an awareness-only issue. It is now a workflow risk. When attackers exploit trust, support processes, and fast approvals, the real weakness is the operating model around it.
Safe Vanguard is well positioned for this conversation because its approach already combines awareness, continuous monitoring, audits, and secured-by-design implementations to reduce exposure across both people and systems.