HomeIntelligenceBrief
BREACH BRIEF🟡 Medium Advisory

Cyber Insurance Premiums Fall as Exclusions for Social Engineering Attacks Expand

Cyber insurers are lowering premiums but simultaneously widening exclusions for social‑engineering attacks. Organizations must verify that their policies still cover phishing and BEC incidents to avoid unexpected coverage gaps.

LiveThreat™ Intelligence · 📅 June 04, 2026· 📰 darkreading.com
🟡
Severity
Medium
AD
Type
Advisory
🎯
Confidence
High
🏢
Affected
3 sector(s)
Actions
3 recommended
📰
Source
darkreading.com

Cyber Insurance Premiums Decline While Policy Exclusions Expand to Social Engineering Attacks

What Happened — Cyber insurers are lowering premium rates across the board, but many new policies are adding or widening exclusions for social‑engineering attacks such as click‑fraud and business‑email‑compromise. The shift reflects a market correction after a surge in claim payouts and a reassessment of risk models.

Why It Matters for TPRM

  • Lower premiums may tempt organizations to reduce spend on cyber coverage, yet broader exclusions can leave critical gaps in third‑party risk protection.
  • Vendors that rely on insurance for incident response funding may find themselves uncovered for social‑engineering incidents, increasing financial exposure.

Who Is Affected — Financial services insurers, large enterprises with cyber insurance programs, and their third‑party vendors (especially MSPs and SaaS providers).

Recommended Actions — Review current cyber insurance contracts for exclusion language, negotiate coverage for social‑engineering attacks, and align internal risk assessments with any uncovered vectors.

Technical Notes — No specific vulnerability or exploit is disclosed; the change is driven by market dynamics and claim trends. The emerging exclusion focus is on social‑engineering vectors (phishing, credential‑theft). Source: Dark Reading

📰 Original Source
https://www.darkreading.com/cyber-risk/cyber-insurance-rates-drop-exclusions-widen

This LiveThreat Intelligence Brief is an independent analysis. Read the original reporting at the link above.

Monitor Your Vendor Risk with LiveThreat™

Get automated breach alerts, security scorecards, and intelligence briefs when your vendors are compromised.