started · updated
Corporate Employees' Social Media Oversharing Raises Cybersecurity Threats
Employees sharing work‑related details on platforms such as LinkedIn, X, GitHub and Instagram can unintentionally expose corporate information. Job titles, internal relationships, technical stack details, travel plans and announcements like mergers and acquisitions become publicly searchable.
Threat actors harvest this open data to craft convincing spear‑phishing and business‑email‑compromise attacks. The more granular the publicly disclosed information, the easier it is for attackers to engineer targeted fraud that can damage the organization.
Companies are urged to review employee advocacy policies, limit the disclosure of sensitive operational details, and provide training to reduce the risk of social‑engineering exploits.