In April 2022, 42% of healthcare data breaches involved compromised business associates, allowing attackers to exploit trusted vendor email accounts for fraudulent payment requests. (Source: Abnormal Security)
Healthcare Provider Replaces Mimecast with Abnormal, Preventing $60,000 Vendor Fraud in POV
With Abnormal, a leading healthcare provider strengthens email security, eliminates missed attacks, and streamlines management.

Industry Context
In 2021, 45% of significant healthcare security incidents were caused by credential phishing, where attackers impersonated executives, vendors, and brands to bypass traditional security measures. (Source: Abnormal Security)
Since March 2020, 67% of healthcare organizations have experienced ransomware attacks, often leveraging supply chain compromise and phishing tactics to gain access to sensitive patient and financial data. (Source: Abnormal Security)
Customer Challenge
Missed Threats: Mimecast failed to catch critical security threats, including invoice and vendor fraud attempts.
High-Risk Close Calls: The organization narrowly avoided financial losses due to fraudulent invoices reaching end users.
Complex Management: Mimecast required multiple tools and configurations, creating inefficiencies for the small IT team.
Why Abnormal?
Superior Threat Detection: During the proof of value, Abnormal identified attacks that Mimecast and Proofpoint missed.
Seamless Integration: Abnormal’s API-based approach enabled rapid deployment without complex MX record changes.
Unified Console: Unlike Mimecast, Abnormal provided a single-pane-of-glass experience, making management easier for the three-person IT team.
Business Impact
$60,000 Saved: Abnormal detected an active vendor fraud attempt in real-time, preventing a significant financial loss.
Time Savings: The IT team no longer wastes hours managing security threats missed by the previous solution.
Increased Confidence: The organization now benefits from cutting-edge AI-driven threat remediation, ensuring executives and employees remain protected from phishing and fraud.