Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Phishing campaign uses VoIP to steal card data

An Eastern European Cyber Mafia has been found to run a multi-year campaign that targets small U.S. banks and credit unions with a sophisticated VoIP phishing scheme (aka vishing) to ...
Continue Reading

CyberheistNews Vol 4, # 17 WARNING Third Ransomware Strain

CyberheistNews Vol 4, # 17
Continue Reading

Verizon's New 2014 Data Breach Report: Summary

In IT, we are subject to help desk tickets and putting out fires. The problem with this is that most of these are short-term fixes. It is usually about last week's downtime, today's ...
Continue Reading

WARNING Third Ransomware Strain Called CryptorBit Attacks

Welcome to the new world of malware.
Continue Reading

CyberheistNews Vol 4, # 16 Scam Of The Week: XP Phishing Threat

CyberheistNews Vol 4, # 16
Continue Reading

Police Grapple With Cybercrime And Have Trouble Keeping Up

Danny Yadron at the WSJ got the picture right. State, and local law enforcement are struggling to keep up as their online case load grows. They are even gettting a hand from the FBI here ...
Continue Reading

Scam Of The Week: Blended XP Phishing Security Threat

During the first quarter, I have been warning about the coming wave of Windows XP-related scams having to do with the April 8 End Of Life of XP. Here is what you can expect, and many ...
Continue Reading

Scam Of The Week: Starbucks Gift From a Friend Phishing Emails

Love your tall latte? Better watch it, as a "friend" might send you an email with a fake Starbucks Coffee Gift offer. These emails read something like this in broken english. "Your friend ...
Continue Reading

What's The Best Free Antivirus For Windows 8?

Use the free built-in antivirus called Windows Defender? Use a free tool like Avast? Buy a third party tool?
Continue Reading

Phishing Attacks Work Best On Wednesday, Coming From IT

I had a look at the recent Mandiant M-Trends report. Interesting stuff. They observed that employees seem to fall for hacking tricks mostly on Wednesdays, and are most likely to click on ...
Continue Reading

CyberheistNews Vol 4, # 15 Scam Of The Week: Heartbleed Phishing Attack

CyberheistNews Vol 4, # 15
Continue Reading

Pirated PC's And Software Loaded With Malware

Here is another reason why buying legitimate operating systems and application software is a good idea. A new study conducted by IDC and commissioned by Microsoft reveals some troubling ...
Continue Reading

The history of malware samples in numbers

Virus Bulletin came up with some interesting historical facts. In 1989, when the very first Virus Bulletin rolled off the press (produced in a black-and-white, printed pamphlet style), ...
Continue Reading

Wall Street Journal Quoted Me Regarding Ransomware Phishing Attacks

This week, Wall Street Journal MarketWatch reporter Priya Anand quoted me in an article she wrote about the new wave of ransomware phishing attacks.
Continue Reading

More Than Half Of End Users Did Not Get Security Awareness Training

This week I attended a webinar about Security Awareness Training hosted by David Monahan, Research Director Security and Risk Management of Enterprise Management Associates.
Continue Reading

CyberheistNews Vol 4, # 14

CyberheistNews Vol 4, # 14
Continue Reading

Backup Failures And Ransomware Phishing: Recipe For Disaster

With system administrators in the crossfire between cybergangs who are wielding sophisticated ransomware like CryptoLocker on one side and CryptoDefense on the other, it's likely many of ...
Continue Reading

The 7 Steps Of The Cyber Kill Chain

Cyber security professionals are slowly but surely grabbing more and more military jargon. No surprises there, with a possible cyberwar brewing. The "kill chain" is a traditional warfare ...
Continue Reading

14 Things That Definitely Should Not Be On The Internet, But Are

You would think that after the recent few years of press showing the risks of the Internet that people would wise up. But no. To my astonishment it's getting worse, not better. Just have ...
Continue Reading

ALERT - CryptoLocker Has A Competitor That Is Worse: CryptoDefense

As we said before, there is furious competition between cybergangs. Late February 2014 a copycat ransomware competitor to Cryptolocker was released which outdoes CryptoLocker. The malware ...
Continue Reading

CyberheistNews Vol 4, # 13 It's The XPOCALYPSE!... But Is It?

CyberheistNews Vol 4, # 13
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews