Retailers Are The Second Most Targeted Sector For Cyber Criminals. What Is The Industry Doing About It

Retailers are being hacked at a high volume with around 52% suffering some kind of cyberattack, according to the Thales Data Threat Report on Retail.[1] While retailers are ramping up spending for security, with 77% increasing it, they are still a huge target. In fact, they are the second most targeted sector after government. Why? Because cybercriminals want consumer information, and sometimes retailers are just making it too easy for them to steal it.

Has Retail Learned Nothing from the Target Breach?

It’s been nearly five years since one of the largest retail breaches in history occurred. It impacted 41 million consumers and cost Target $18.5 million. While it was a third-party vendor that allowed the hackers in, Target was still vulnerable on its own around logging and authorizations. Before the Target breach, the retail space as a whole was woefully unprepared. The retail infrastructure has only expanded since then. Retailers collect more data, use cloud storage more than ever, and have added Internet of Things (IoT) devices to their networks. This gives cybercriminals even more opportunity.

The need for better encryption and security methods is obvious. But with cyber attacks and breaches making regular headlines, what are retailers doing now to thwart this risk?

Shifting from Reactive to Proactive

Retailers have long been concerned about shrinkage in the physical sense and have developed sophisticated workflows to reduce it. They need to turn that same obsession to their digital footprint. Because data breaches can be much costlier than shrinkage, hitting profits and their reputation.

The top things retailers should consider are:

  • Strengthen domain and network security
  • Establish strong password policies
  • Keep software updated, as this is a typical “doorway” into networks
  • Segment networks and group by the sensitivity of the information
  • Employ ethical hackers to find weaknesses
  • Educate employees about cybersecurity (human error continues to be a weak link and the leading entry point)

Hackers won’t stop pursuing retailers and their treasure trove of data. Retailers must shift to a proactive rather than reactive approach to cybersecurity. Their information security focus needs to be on prevention rather than mitigation. When retailers commit to this and enact these six practices, the target on their back may begin to fade.

[1] https://dtr-retail.thalesesecurity.com/

Follow us on social media for the latest updates in B2B!

Image

Latest

courage
Creative Confidence and Moral Courage: The Leadership Traits Business Schools Should Be Betting On
May 25, 2026

What students need from higher education is becoming harder to pin down than it once was. As higher education faces mounting pressure—from student disengagement to the rapid rise of artificial intelligence—institutions are being forced to rethink not just what students learn, but who they become. New research and industry signals suggest that technical knowledge…

Read More
healthcare
From the C-Suite to the Classroom: A Healthcare Leader’s Bet on the Next Generation
May 25, 2026

Healthcare isn’t short on strategy right now—it’s short on people, access, and experienced leadership where it matters most. In Texas alone, more rural hospitals have closed than in any other state over the past decade, leaving entire communities with limited access to care. At the same time, many health systems are realizing they haven’t…

Read More
AI
The AI Health Score: Turning Hallucinations, Agents, and AI Risk Into Board-Ready Insight
May 24, 2026

As artificial intelligence moves deeper into enterprise operations, many organizations are discovering that the real challenge is not adoption, but control. Traditional software has always been predictable: the same input produces the same output, making it possible to audit systems at a fixed point in time. AI changes that equation. Jeff Carson, founder of…

Read More
TheAIAudit
Introducing TheAIAudit: A Platform Built to Measure, Monitor, and Govern Enterprise AI
May 22, 2026

Enterprise AI is advancing faster than most companies can govern it. Behind the scenes, AI systems are already influencing decisions tied to revenue, operations, compliance, customer outcomes, and risk — yet many organizations still lack a clear way to measure, explain, or oversee what those systems are doing. That is the gap TheAIAudit was…

Read More