ITHive News

Mobile Security - Your weakest link.
October 03, 2025 · Chris Polis
Threat actors increasingly rely on social engineering and phishing across mobile devices. The latest Lookout report shows rising exposure for managed iOS devices and over a million phishing/malicious web blocks in Q2. Treat mobile like any other endpoint in your stack.
1.2M+
Employees exposed to mobile phishing in Q2
Up ~20% from Q1
15%
of MDM-managed iOS devices saw phishing exposure
1,273,091
phishing & malicious web attacks blocked in Q2
What’s notable this quarter
- Social engineering is the front door. SMS/WhatsApp/Telegram lures steal credentials and enable lateral movement.
- Managed ≠ immune. Exposure observed on 15% of MDM-managed iOS; you need security on top of management.
- Malware families keep evolving. 100+ families saw new/updated activity; surveillanceware like HtmlSpy featured.
- Geopolitical tooling in the wild. Examples include “Massistant” (mobile forensics tooling) and DCHSpy.
Why this matters to Canadian businesses
- Credential theft via mobile is a quick path into Microsoft 365, Google Workspace, and other cloud apps.
- Cyber-insurance increasingly expects mobile protections alongside desktop/laptop controls.
- Execs and field staff live on phones—security must follow them.
How ITHive can help
ITHive Business Mobile Protection (powered by Lookout) adds on-device phishing/content protection, risky app detection, and device risk telemetry—without slowing productivity.
Source: Lookout, Q2 2025 Mobile Threat Landscape.