Why your help desk is still your biggest security risk

https://cdn.mos.cms.futurecdn.net/jt92kXfBXVXUWwnKBmDJLn-2560-80.jpg

When MGM Resorts suffered a crippling cyberattack in 2023, forensic teams expected to find sophisticated malware or a zero-day exploit. Instead, they discovered something far simpler: an attacker called the help desk, impersonated an employee, and was handed the keys to the kingdom. Marks & Spencer and Harrods fell victim to similar attacks in 2025.

This pattern reveals a harsh reality – organizations spend millions hardening networks and endpoints while leaving identity, their most vulnerable entry point, completely exposed.

What's changed is not that help desks are vulnerable. Security teams have known this for years. What's new is the convergence of two forces that have turned a known weakness into an urgent crisis.

Help desks make sure that locked-out employees can get back to work as quickly as possible. However, the pressure to restore productivity creates an environment where speed often trumps security.

The typical interaction follows a predictable path:...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more