Microsoft logged roughly 7.6 billion phishing attempts in a single quarter this year. In 94 to 96 percent of the payload-based attacks, the goal was the same: steal a login.
Here's the part that should get a wealth manager's attention. The fastest-growing piece isn't email at all — it's Microsoft Teams. Malicious Teams calls, someone posing as IT or a vendor, hit roughly ten times their mid-2025 level by the end of June. They peak during the workday, when your advisors are between client meetings and least likely to slow down and think.
This is why the "we have a guy" model quietly stops working. That isn't a knock on your IT guy. One person handling printers, onboarding and the new laptop cannot also be watching identity alerts at two o'clock on a Tuesday. The attacks now run on a business-hours schedule. So does he.
The gap isn't skill. It's coverage.
And the cost when it goes wrong isn't the cleanup invoice. It's the days your team isn't billing, and the call where you explain to a client why their statements were sitting in someone else's mailbox.
Worth asking before your next cyber renewal: who is actually watching the alerts at two o'clock on a Tuesday?
Want the next one in your inbox?
One practical Microsoft 365, Copilot, Azure, or security move per week — plain English, no pitch.
Subscribe via email