Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

New Phishing Scam Leverages Chat To Add Credibility And Ensure Success

Phishing Campaigns Continue To Exploit CrowdStrike Outage

Russian Super-Threat Group Fin7 Comes Back from the Dead

Your KnowBe4 Fresh Content Updates from July 2024

Your KnowBe4 Compliance Plus Fresh Content Updates from July 2024

North Korean Fake IT Worker FAQ

Phishing Campaigns Abuse Cloud Platforms to Target Latin America

Is Your Bank Really Calling? How to Protect Yourself from Financial Impersonation Fraud

Crypto Data Breach Continues to Fuel Phishing Scams Years Later

How a North Korean Fake IT Worker Tried to Infiltrate Us

CyberheistNews Vol 14 #30 The SEC Fines a Public Company 2 Million+ For Ransomware Negligence

Phishing Attacks Will Likely Follow Last Week’s Global IT Outage

[Security Masterminds Podcast] Securing Software Over 50 Years: Reflections from an Industry Veteran

CrowdStrike Phishing Attacks Appear in Record Time

78% of Organizations Are Targets of Ransomware Attacks Two or More Times in Twelve Months

CISA’s Red Team Exercise Shows Value of Phishing, but Misses the Best Recommendation

Cyber Threats Targeting the 2024 Paris Olympics

Change Healthcare Ransomware Attack May Cost Nearly $2.5 Billion

Chile Leads Latin America With New Cybersecurity Governance

7 in 10 Organizations Experienced a Business Email Compromise Attack in the Last 12 Months

New Ransomware Threat Group Calls Attack Victims to Ensure Payments

Malvertising Campaign Impersonates Microsoft Teams

[NEW FREE TOOL]: Reveal Your Network's Hidden Weaknesses with KnowBe4's BreachSim Data Exfiltration Simulator

SEC Fines Publicly Traded Company $2.125 Million For Negligence Before, During, and After a Ransomware Attack

Espionage-Intent Threat Groups Are Now Using Ransomware as a Diversion Tactic in Cyberattacks

IRS Warns of Phishing Attacks Targeting Car Dealerships

From Reactive to Proactive: Cyber Insurance is Driving Optimal Security Investments for Organizations

Phishing Continues to Be the Primary Entry to Ransomware Attacks

CyberheistNews Vol 14 #29 [Warn Your Users] High Scam Risk After Failed Trump Assassination

[On-Demand Webinar] Crack the Code on Ransomware: Empowering Your Last Line of Defense

[Warn Your Users] High Scam Risk After Failed Trump Assassination

Phishing Attacks Against State and Local Governments Are Surging

Ransomware Attacks on Healthcare Is Costing Lives

Russian Spear Phishing Campaigns Target NATO Entities

From Policy to Practice in Security Culture: What Security Frameworks Recommend

Dodgy New Phishing Platform Targets Microsoft 365 Accounts at Financial Firms

Amazon-Related Scams Spike Ahead of Prime Day

CyberheistNews Vol 14 #28 [Urgent Alert] 5 Critical Steps to Shield Your Teens from Rising Sextortion

Phishing Attacks Target High Profile YouTube Accounts

The Importance of Security Culture: When Telecom Giants Resort to Malware

Travelers Beware: Booking.com Warns of Increases in AI-Enabled Travel Scams

[Live Demo] Ridiculously Easy Security Awareness Training and Phishing

State-Sponsored Phishing Campaigns Target 40,000 VIP Individuals

Don't Fall for It: How to Spot Social Media Job Scams a Mile Away

Phishing Attacks Themed Around Popular Weight Loss Drugs Increase 183%

New “Paste and Run” Phishing Technique Makes CTRL-V A Cyber Attack Accomplice

[Urgent Alert] 5 Critical Steps to Shield Your Teens from Rising Sextortion

Ransomware Attack on U.K. Health Service Laboratory Disrupts Major London Hospital Services

Hacked Customer Support Portal Being Used to Send Phishing Emails

CyberheistNews Vol 14 #27 [Important Alert] TeamViewer Network Breached as Russian APT29 Hackers Strike Again

The Curious Case of the Payroll Pilfering

New Malware Campaign Impersonates AI Tools To Trick Users

Your KnowBe4 Compliance Plus Fresh Content Updates from June 2024

[Important Alert] TeamViewer Network Breached as Russian APT29 Hackers Strike Again

KnowBe4 Recognized as Cyber Security Educator of the Year at IT Europa Awards 2024

Your KnowBe4 Fresh Content Updates from June 2024

Russian Threat Actor Launches Spear Phishing Attacks Against French Diplomats

FBI Warns of Phishing Campaign Targeting the Healthcare Industry

Cybercriminals Set Sights on Digital Identities of Singapore Citizens

The Double-Edged Sword of AI: Empowering Cybercriminals and the Need for Heightened Cybersecurity Awareness

Simulated Phishing Tests Matter

Mexican Organizations Under Attack from Specialized Cyber Criminals

Phishing Attacks in the UK Have Surged

CyberheistNews Vol 14 #26 [Heads Up] Tricky Fake Invoice Phishing Attack Uses Search to Deliver Malware

FREE Resource Kit for Ransomware Awareness Month in July

Balancing Act: The European Union's AI Act and the Quest for Responsible Innovation

BEC Attacks Accounted for More Than One in Ten Social Engineering Attacks in 2023

My Hacker Story: A Cautionary Tale of Intern Antics and Cultural Learnings

The Indispensable World of Red Teaming

Vacation-Themed Scams Are Spiking

Happy 1st Birthday to Our KnowBe4 Community!

Brazilian Entities Increasingly Targeted by Nation-State Phishing Attacks

The Overlooked Truth: User Experience in Cybersecurity

CyberheistNews Vol 14 #25 Microsoft and KnowBe4 Collaborate on Ribbon Phish Alert Button for Outlook

[Heads Up] Tricky Fake Invoice Phishing Attack Uses Search to Deliver Malware

No Politician Too Small: School Board Candidates Targeted By Phishing and BEC Scams

Microsoft and KnowBe4 Collaborate on Ribbon Phish Alert Button for Outlook

Unmasking the Threat: Why Phishing Scams are Surging in Japan

Phishing Campaign Targets Job Seekers With WARMCOOKIE Backdoor

The Global Reach of Cyber Threats: Why Security Awareness Training is More Important Than Ever

Cybercriminals Use New V3B Phishing Kit to Mimic 54 Different Banks in the European Union

Phishing With Deepfakes for HK$200 Million

New Research Shows An Alarming Trend of Phishing Attacks Doubling For US and European Organizations

Beware: Major AI Chatbots Now Intentionally Spreading Election Disinformation

Sinister "More_eggs" Malware Cracks Into Companies by Targeting Hiring Managers

CyberheistNews Vol 14 #24 [NEW 2024 RESEARCH] Reveals that 34% of Green Users Will Fail a Phishing Test

DarkGate Malware Being Spread Via Excel Docs Attached To Phishing Emails

New HR-Themed Credential Harvesting Phishing Attack Uses Legitimate Signature Platform Yousign

Bruce Schneier: "AI Will Increase the Quantity—and Quality—of Phishing Scams"

Everything You Can Do to Fight Social Engineering and Phishing

[New Feature] Find Out if They've Got a Bad Reputation in Record Time with PhishER Plus Threat Intel

Nearly Three-Quarters of Organizations Were the Target of Attempted Business Email Compromise Attacks

Fighting Phishing: Everything You Can Do to Fight Social Engineering and Phishing

Breach or Bluff: Cyber Criminals' Slippery Tactics

Minnesotans Targeted by Scammers With Phony Arrest Warrants

Social Engineering Scams Can Come in the Mail, Too

“Operation Endgame” Ends with the Arrest of 4 Cybercriminal Suspects and 100 Servers

26% of Global Organizations Lack Security Training Programs

Best Buy/Geek Squad Impersonation Scams Surged in 2023

Email Compromise Continues to Dominate as Top Threat Incident Type as Tactics Evolve

CyberheistNews Vol 14 #23 [SPECIAL] The Hard Evidence That Phishing Training and Testing Really Works Great

[NEW RESEARCH]: KnowBe4’s 2024 Phishing by Industry Benchmarking Report Reveals that 34.3% of Untrained End Users Will Fail a Phishing Test

Enhance NIS2 Compliance: Elevate Your Cybersecurity with Awareness & Culture Before The Deadline

Russia’s Military Intelligence Service Launches Spear Phishing Attacks

New Transparent Phishing Attacks Leverage Cloudflare Worker Serverless Computing

Your KnowBe4 Compliance Plus Fresh Content Updates from May 2024

The Hard Evidence That Phishing Training and Testing Really Works Great

91% of Every Ransomware Attack Today Includes Exfiltrating Your Data

Your KnowBe4 Fresh Content Updates from May 2024

Cybercriminals Target Hajj Pilgrims

Criminals Abuse Cloud Storage Platforms to Host Phishing Sites

Threat Actor Void Manticore Uses Cyber Weapon “Wipers” to Destroy Data and Systems

CyberheistNews Vol 14 #22 [HEADS UP] A Whopping 90% of Attacks Involve Social Engineering

KnowBe4 Free Tools Now Available On CISA’s Website

China Threat Actor Targeting African and Caribbean Entities With Spear Phishing Attacks

[FedRAMP Phishing Rule]: "Users are the last line of defense and should be tested."

CISA Releases Cybersecurity Resources for High-Risk Communities

As Many as 1 in 7 Emails Make it Past Your Email Filters

Secure Your Site: Learn from the Top 10 Cybersecurity Experts of 2024

New Research Finds Phishing Scams Targeting Popular PDF Viewer

From Boredom to Engagement: Gamification in Cybersecurity Awareness

UK Cybersecurity Org Offers Advice for Thwarting BEC Attacks

Don't Let Criminals Steal Your Summer Fun

Malicious Use of Generative AI Large Language Models Now Comes in Multiple Flavors

Announcing KnowBe4 Student Edition: Cybersecurity Education Tailored for the Next Generation

The Shadow War: Cognitive Warfare and the Politics of Disinformation

Newly Updated Grandoreiro Banking Trojan Distributed Via Phishing Campaigns

Cyber Insurance Claims Rise Due To Phishing and Social Engineering Cyber Attacks

CyberheistNews Vol 14 #21 How Come Unknown Attack Vectors Are Surging in Ransomware Infections?

New Threat Report Finds Nearly 90% of Cyber Threats Involve Social Engineering

Verizon: The Human Element is Behind Two-Thirds of Data Breaches

8 out of 10 Organizations Experience a Cyber Attack and Attribute Users as the Problem

Scam Service Attempts to Bypass Multi-factor Authentication

Black Basta Ransomware Uses Phishing Flood to Compromise Orgs

Phishing and Pretexting Dominate Social Engineering-Related Data Breaches

FBI Warns of AI-Assisted Phishing Campaigns

How Come Unknown Attack Vectors are Surging in Ransomware Infections?

Attackers Leveraging XSS To Make Phishing Emails Increasingly Evasive

CyberheistNews Vol 14 #20 Verizon: Nearly 80% of Data Breaches Involve Phishing and the Misuse of Credentials

Alert: Nova Scotians Hit by Surge of Sophisticated Spear Phishing Scams

New Research: Number of Successful Ransomware Attacks Rise 29% in a Just One Year

Reality Hijacked: Deepfakes, GenAI, and the Emergent Threat of Synthetic Media

[Beware] Ransomware Targets Execs' Kids to Coerce Payouts

Google’s Multi-Party Approval Process Is Great, but Not Unphishable

Ransomware Detection Time Shortens by 44% as Organizations Attempt to Keep Up with Attackers

Phishing-as-a-Service Platform LabHost Disrupted by Law Enforcement Crackdown

Digital Doppelgängers: AI-Generated Celeb Fashion Takes Over the Met Gala on Social Media

Arizona Election Workers Battle Against Deepfake Threats in New AI Defense Drill

[Must Read] How Boeing Battled a Whopping $200M Ransomware Demand

[Breaking] The News Is Increasingly Broken. Surge Of Inaccurate AI News Stories

Phishing Reports in Switzerland More Than Doubled Last Year

9 in 10 Organizations Paid At least One Ransom Last Year

KnowBe4 Earns Multiple 2024 Best Of Awards From TrustRadius

Verizon: Nearly 80% of Data Breaches Involve Phishing and the Misuse of Credentials

Credential-Harvesting Campaign Impersonates Fashion Retailer Shein

CyberheistNews Vol 14 #19 [EPIC FAIL] Phishing Failures: How Not to Phish Your Users

The Education Sector Experienced the Highest Number of Data Breaches in 2023

U.S. Government Warns of North Korean Spear-Phishing Campaigns

Introducing The New KnowBe4.com

Verizon: The Percentage of Users Clicking Phishing Emails is Still Rising

Protecting Your Digital Footprint: The Dangers of Sharing Too Much on Social Media

Analysis Shows 2023 to be “Worst Year for Phishing on Record”

Is RogerLovesTaco$24 a Strong Password?

Navigating the Masquerade: Recognizing and Combating Impersonation Attacks

[CASE STUDY] Healthcare Organization Hardens Employee Defenses Against Insidious Callback Phishing Attacks

North Korean Threat Actors Target Software Developers With Phony Job Interviews

Phishing Failures: How Not to Phish Your Users

FBI Warns of Verification Scams Targeting Dating Site Users

How New College Graduates Can Avoid Increasingly Personalized Job Scams

CyberheistNews Vol 14 #18 [Wake Up Call] A Fresh Nespresso Domain Hijack Brews an MFA Phishing Scheme

Targeted Smishing Attacks by Threat Group “The Com” On The Rise

The Art of Huh?

Phishing Campaigns Spoof the U.S. Postal Service

Your KnowBe4 Compliance Plus Fresh Content Updates from April 2024

How an Athletic Director Exploited AI to Frame a Principal with Fabricated Racist Comments

US Justice Department Accuses Iranian Nationals of Launching Spear Phishing Attacks

Next Week is World Password Day!

Your KnowBe4 Fresh Content Updates from April 2024

New Report Finds That 27% of Small Businesses Would Be Put Out of Business By A Cyber Attack

AI-Assisted Phishing Attacks Are on the Rise

Phishing Campaign Exploits Nespresso Domain

Global Optics Provider Hit with Ransomware Attack and a $10M Ransom

Level Up Your Users’ Cybersecurity Skills with 'The Inside Man: New Recruits’

Environmental Sustainable Training: KnowBe4's Commitment to a Greener Earth

USPS Surges to Take Top Spot as Most Impersonated Brand in Phishing Attacks

CyberheistNews Vol 14 #17 [HEADS UP] LastPass Warns of a 'CEO' Deepfake Phishing Attempt

[NEW GAME] The Inside Man: New Recruits Game

4 out of 5 of Physicians Were Impacted by February’s Cyber Attack on Change Healthcare

Kudos! CEO Reveals He Got Phished

Half of U.K. Businesses Experienced a Security Breach or Cyber Attack in the Last 12 Months

Russian Threat Actor FIN7 Targeting the Automotive Industry with Spear Phishing Attacks

LastPass Warns of Deepfake Phishing Attempt

AI Voice Cloning and Bank Voice Authentication: A Recipe for Disaster?

KnowBe4 Named a Leader in the Spring 2024 G2 Grid Report for Security Orchestration, Automation, and Response (SOAR) Software

Phishing Frenzy: Microsoft and Google Most Mimicked Brands in Cyber Scams

Cisco Calls Out Organizations As Being “Overconfident and Unprepared” for Cyber Attacks

CyberheistNews Vol 14 #16 Critical Improvements to the 7 Most Common Pieces of Cybersecurity Advice

KnowBe4 Named a Leader in the Spring 2024 G2 Grid Report for Security Awareness Training

[WARNING] FBI Issues Alert on Major Phishing Campaign That Impersonates US Toll Services

You Really Are Being Surveilled All the Time


Get the latest about social engineering

Subscribe to CyberheistNews