Skip to content
← Astraea Insights

Selected Story · Digital Work

Cyber threats are part of everyday work. Small teams need everyday defences.

A new European Commission Eurobarometer shows how routine cyber risk has become in the workplace. The practical lesson for smaller teams is to make verification, reporting and safe access habits part of normal work rather than occasional training.

Selected by Aegean Astraea · 6 October 2026

A European Commission Eurobarometer published on 30 September found that three in four employees in the EU had encountered suspicious emails, messages or links at work.

Phishing was the most commonly reported threat, cited by 39% of employees. Respondents also reported attempts to steal personal data, malware incidents and scams generated with artificial intelligence.

The useful point for small businesses is that cyber risk is no longer an occasional technical event handled only by a specialist. It appears inside ordinary work: opening messages, sharing files, approving requests and responding to communication that appears legitimate.

Why it matters

Why it matters: awareness sessions help, but everyday controls matter more when a team is busy. Clear reporting, sensible access limits and a habit of independently checking unusual requests can reduce the chance that one rushed action becomes a larger incident.

A practical takeaway is to treat cybersecurity as part of workflow design. The safest process is often the one that makes the secure action the normal action, rather than something people must remember only after a warning appears.

Source: European Commission. This page contains Aegean Astraea’s own summary and commentary; the original article is not republished here.

Read the original source ↗