I think I might have posted a link to this already, but someone on Twitter highlighted this paragraph, which perfectly illustrates the main road in cyber security. People are stupid, get cut corners and take risks without even realising.
The whole article is long but very interesting if you fancy a read and like this sort of thing.
www.newyorker.com/magazine/2017/03/06/trump-putin-and-the-new-cold-war
In 2008, according to “Dark Territory,” a history of cyberwar by Fred Kaplan, Russian hackers accomplished a feat that Pentagon officials considered almost impossible: breaching a classified network that wasn’t even connected to the public Internet. Apparently, Russian spies had supplied cheap thumb drives, stocked with viruses, to retail kiosks near nato headquarters in Kabul, betting, correctly, that a U.S. serviceman or woman would buy one and insert it into a secure computer