Spear Phishing is the Top Cyber Threat to the Manufacturing Sector

Spear phishing was the top cybersecurity threat to the manufacturing sector over the past six months, according to a report from ReliaQuest. These attacks accounted for 41% of true-positive alerts in the sector.
“Spear phishing remains a favored tactic for attackers targeting manufacturing companies—and it’s easy to see why,” ReliaQuest says. “It preys on the everyday flow of business; attackers send spear phishing emails that look routine—like a supplier requesting payment—and wait for a misstep. And when that happens, the consequences are stark.”
These attacks are fueled by the growing availability of phishing kits, which enable attackers to launch sophisticated attacks with very little effort.
“Spear phishing attacks on manufacturing are set to double in 2025, driven by the increasing use of phishing kits and nation-state interest in industries like defense and aerospace,” the researchers write. “Discussions about phishing kits on cybercriminal forums surged by 136% in 2024, allowing attackers of all skill levels to exploit manufacturing’s reliance on email for supply-chain and financial transactions.”
The manufacturing sector was also a top target for ransomware, with 370 victims in the fourth quarter of 2024.
“Why is manufacturing such a prime target?” ReliaQuest writes. “Downtime is devastating—but that’s also true for sectors like health care. What sets manufacturing apart is its operational scale. One production line being compromised can disrupt entire supply chains and cause huge financial losses.
And as organizations increasingly adopt IIoT devices to improve OT visibility, the risks grow exponentially. Many IIoT devices are tied to legacy OT systems that can’t be updated, creating vulnerabilities that are magnets for attackers. The combination of large-scale operations, legacy vulnerabilities, and open supply chains makes manufacturing a goldmine for attackers—and the statistics show they’re cashing in.”
KnowBe4 empowers your workforce to make smarter security decisions every day. Over 70,000 organizations worldwide trust the KnowBe4 platform to strengthen their security culture and reduce human risk.
ReliaQuest has the story.
Get Your Free Phishing Security Resource Kit
Phishing emails increase in volume every month and every year, so we created this free resource kit to help you defend against attacks. Request your kit now to learn phishing mitigation strategies, what new trends and attack vectors you need to be prepared for, and our best advice on how to protect your users and your organization.

Here’s what you’ll get:
- Access to our free on-demand webinar Your Ultimate Guide to Phishing Mitigation featuring Roger A. Grimes, KnowBe4’s Data-Driven Defense Evangelist
- Our most popular phishing whitepaper: Comprehensive Anti-Phishing Guide E-Book
- A video that explains How to Avoid Phishing Attacks
- Our most recent quarterly infographic on Top-Clicked Phishing Email Subjects Infographic
- Posters and digital signage to remind users about what to watch out for
PS: Don’t like to click on redirected buttons? Cut & Paste this link in your browser: https://info.knowbe4.com/phishing-reply-test-partner?partnerid=001a000001lWEoJAAW