Report Reveals Perception Gap In Cyber Security Awareness

The National Cyber Security Alliance (NCSA) and McAfee Inc. recently, in coordination with the kick-off of National Cyber Security Awareness Month, announced the results of a comprehensive consumer online security research study.

The report reveals a significant gap between consumers' perceptions that they -- and their computers -- are protected from various Internet threats used by cyber criminals, while in reality, people were either unprotected or under- protected. The McAfee-NCSA Online Safety Study shows that while consumers think they are protected (93 percent feel safe from viruses), they are actually at risk because of outdated security software on their computer that doesn't protect them from new malware created everyday.

"The good news is that our survey reveals a growing awareness of the need for online security," said Todd Gebhart, senior vice president and general manager, McAfee Consumer, Mobile and Small Business. "Unfortunately, there are still many consumers who remain vulnerable to threats like spyware, phishing, hackers and risky Web sites that can infect their computers with a wide range of malicious software. Clearly we have a long way to go to educate consumers about online security to prevent them from being victims of cyber criminals, identity thieves and other dangerous threats."

High Awareness of the Need for Online Security

Nearly all consumers (98 percent) who responded to the survey agreed keeping online security up-to-date is important. To address these concerns, consumers told researchers they had taken the following measures:

  • 87 percent said they use anti-virus software.
  • 73 percent use a firewall.
  • 70 percent use anti-spyware software.
  • 27 percent use anti-phishing software.

Outdated Security and Malware Infections

While nearly every survey respondent (98 percent) acknowledged the importance of having up to date security on their computer, nearly half of all scanned computers (48 percent) had not been updated within the month. Survey respondents also acknowledged they had been infected with malware:

  • 54 percent had been hit with a virus.
  • 44 percent thought they were infected with spyware.

Consumers Think They Are Protected When They Are Vulnerable

When researchers were able to conduct a remote scan of consumers' computers, their findings revealed a significant gap between perception versus reality, where consumers thought they were protected, when in fact, they were not. In particular, the following results illustrate this disparity:

  • While 81 percent have a firewall installed on their computer, only 64 percent actually activated this anti-hacker protection.
  • While 70 percent of respondents say they have anti-spyware software, 55 percent actually did.
  • While 27 percent say they have anti-phishing protection, 12 percent actually do.

"These results show a tremendous need to educate consumers about online security," said Ron Teixeira, executive director, National Cyber Security Alliance. "That's why we're asking consumers to 'protect themselves before they connect themselves' this October, and take a few minutes to find ways to better secure their identities, computers and our nation's infrastructure from cyber threats. If consumers incorporate a few simple steps and use the right security technology, they can bridge the cyber security perception vs. reality gap and feel more confident that they have the tools they need to stay safe online."

The Need for Cyber Security Education

"This research clearly shows a need to educate consumers that updated, comprehensive security is a must," said Bari Abdul, vice president of Worldwide Consumer Marketing at McAfee. "The fact that the computer scans show so many PCs with out of date protection indicates people do not understand that the security software included with the purchase of their PC is usually a trial version that will expire if the user does not purchase a subscription."

  • Both the survey and the scan revealed additional examples that demonstrate how consumers remain ill-informed about online security.
  • One in four respondents (25 percent) had never heard of the term "phishing" and nearly half (46 percent) could not accurately define phishing.
  • While four out of five online experiences begin with a search engine, 78 percent do not know how to evaluate the safety of Web sites found through an online search, despite the fact that free tools are available that rate the relative safety of search results.
  • While 98 percent of respondents say it is important to know whether a Web site is safe before visiting it, 64 percent had no idea how to determine whether a Web site is safe.

Featured

  • Pragmatism, Productivity, and the Push for Accountability in 2025-2026

    Every year, the security industry debates whether artificial intelligence is a disruption, an enabler, or a distraction. By 2025, that conversation matured, where AI became a working dimension in physical identity and access management (PIAM) programs. Observations from 2025 highlight this turning point in AI’s role in access control and define how security leaders are being distinguished based on how they apply it. Read Now

  • Report: Cyber Attackers Continue to Turn to AI-Based Tools to Avoid Detection

    Comcast Business recently released its 2025 Cybersecurity Threat Report, a comprehensive analysis of 34.6 billion cybersecurity events detected between June 1,2024 and May 31, 2025. Now in its third year, the report offers business leaders a unique perspective into the evolving threat landscape and provides actionable insights to help organizations strengthen their defenses and align cybersecurity with business risk. Read Now

  • Axis Communications Creates AI-powered Video Surveillance Orchestra

    What if cameras could not only see the world, but interpret it—and respond like orchestra musicians reading sheet music: instantly, precisely, and in perfect harmony? That’s what global network technology leader Axis Communications set to find out. Read Now

  • Just as Expected

    GSX produced a wonderful tradeshow earlier this week. Monday was surprisingly strong in the morning, and the afternoon wasn’t bad at all. That’s Monday’s results and asking attendees to travel on Sunday. Just a quick hint, no one wants to give up their weekend to travel and set up an exhibit booth. I’m just saying. Read Now

    • Industry Events
    • GSX
  • NOLA: The Crescent City

    Twenty years later we finds ourselves in New Orleans. Twenty years ago the aftermath of Hurricane Katrina forced exhibitors and attendees to look elsewhere for tradeshow floor space. Read Now

    • Industry Events
    • GSX

New Products

  • EasyGate SPT and SPD

    EasyGate SPT SPD

    Security solutions do not have to be ordinary, let alone unattractive. Having renewed their best-selling speed gates, Cominfo has once again demonstrated their Art of Security philosophy in practice — and confirmed their position as an industry-leading manufacturers of premium speed gates and turnstiles.

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • Unified VMS

    AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities