Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Report: Phishing costs average organization $3.7 million per year

If you extrapolate the total annual cost of phishing for the average organization it comes to more than $3.7 million. You could shave that down by $1.8 million though, with the right ...
Continue Reading

IBM: Corporations could be the next target for ransomware attacks

Doug Olenick at SC Magazine reported on something noteworthy: "The growing threat posed by ransomware and the possibility that cybercriminals will graduate from extorting end users to ...
Continue Reading

What Is Worse Than Ransomware? Business Email Compromise

You are getting your Scam Of The Week early. Yesterday, the FBI via their Internet Crime Complaint Center announced some shocking numbers. There is a 270 percent spike in victims and cash ...
Continue Reading

CyberheistNews Vol 5 #36 Breaking News: Got Hacked...The FTC Can Now Sue You

CyberheistNews Vol #5 #36 Aug 25, 2015 Breaking News: Got Hacked...The FTC Can Now Sue You For organizations that get hacked like Anthem, Target and recently Ashley Madison, the problems ...
Continue Reading

Breaking News: Got Hacked? The FTC Can Now Sue You

For organizations that get hacked like Anthem, Target and recently Ashley Madison, the problems are only starting. Apart from towering legal fees and a damaged reputation, now an appeals ...
Continue Reading

Stop The AshMad Insanity!

First a 10Gig dump with the full Ashley Madison database. Then a 20Gig dump with their whole Github repository, and then to top it all off a 300G(!) dump. In an interview with Motherboard ...
Continue Reading

Phishing Alert: Warn Your Users Against Ashley Madison Scams Now

Your end-users saw this in the news yesterday, or will read about it today. The hackers who stole more than 36 million records from the Ashley Madison site (which makes it easy to cheat ...
Continue Reading

Off With Their Heads! Execs get the ax for data breaches

Until last year, executives were able to pass the buck to IT in case a data breach hit the organization. However, several recent high-profile resignations are now putting the focus on ...
Continue Reading

CyberheistNews Vol 5 #34 Scam Of The Week: Massive WebAd Poisoning

CyberheistNews Vol 5 #34 Aug 18, 2015 Scam Of The Week: Massive WebAd Poisoning The same cybercrime lowlifes that infected the Yahoo website a few weeks ago have struck again, this time ...
Continue Reading

Scam Of The Week: Massive WebAd Poisoning

The same cybercrime lowlifes that infected the Yahoo website a few weeks ago have struck again, this time infecting sites like Drudge Report and Weather.com. Both sites have hundreds of ...
Continue Reading

IT Confessions: The Deadly Six Sins Of Data Security

Massive hacks continue to fill the front page of major media outlets. The recent hack of the Federal Office of Personnel Management (OPM) by Chinese state-sponsored hackers again showed ...
Continue Reading

CyberheistNews Vol 5 #32 Massive 46M Dollar Cyberheist / Pentagon Spear-phished / BlackHat Hot & Scary

CyberheistNews Vol 5 #32 Aug 11, 2015 Massive 46M Dollar Cyberheist / Pentagon Spear-phished / BlackHat Hot & Scary Brian Krebs just reported on a massive 46M dollar Cyberheist. Tech ...
Continue Reading

Proudly showing our new Logo on the Building

Continue Reading

This Weekend's Microsoft Windows 10 Upgrade Nightmare

OK, so I decided to upgrade my plain vanilla Dell XPS box that I bought 2 years ago, running Windows 8.1. Enough memory, nothing special installed. Upgraded using the "Get Windows 10" ...
Continue Reading

Check Out What Elon Musk Just Emailed Me

Elon Musk sent me this email: "If you have friends who might like to receive a $1,000 discount on a Model S, below is an email that you can edit if you choose and send to them." Now, I ...
Continue Reading

The Inside Story Of The Biggest Hack In History

It was known inside the InfoSec community, but now more details have been made public through CNN after a BlackHat 2015 presentation: "Three years ago, the world witnessed the worst hack ...
Continue Reading

Blackhat 2015 What Was Hot And Scary?

It was another great BlackHat. If you could not make it, here is a roundup of things that I thought were particularly interesting from the perspective we have here at KnowBe4. It's a ...
Continue Reading

Pentagon Top Brass Spear-phished

The Pentagon divulged that its computer networks were penetrated by suspected Russian hackers using spear-phishing. The hackers got into their unclassified email network used by the Joint ...
Continue Reading

Tech Firm Ubiquiti Suffers $46M Cyberheist

Brian Krebs just reported on a massive $46M Cyberheist. Networking firm Ubiquiti Networks Inc. disclosed this week that cyber thieves recently stole $46.7 million using an increasingly ...
Continue Reading

CyberheistNews Vol 5 #31 Scam Of The Week: Microsoft Windows 10 Upgrade Installs Ransomware

CyberheistNews Vol #5 #31 August 4, 2015 Scam Of The Week: Microsoft Windows 10 Upgrade Installs Ransomware Major Operating System upgrades usually cause confusion among end-users and the ...
Continue Reading

Some KnowBe4 Racing Fun At The Sebring Track

KnowBe4 had a July sales game and the top three reps won a day at Florida's Sebring racing track. They had a great day and here are some shots by KnowBe4's Creative Director Robert La ...
Continue Reading

Scam Of The Week: Microsoft Windows 10 Upgrade Installs Ransomware.

Major Operating System upgrades are usually a cause of confusion among end-users and the current Windows 10 upgrade is no exception. The bad guys exploit these confusions in several ways, ...
Continue Reading

Leaked NSA slides: Chinese hackers wreaking havoc on USA

I have been talking for years at this blog about the Chinese hacking into the U.S. for mainly espionage, using highly sophisticated social engineering and spear-phishing attacks. This ...
Continue Reading

Phish or Be Phished? The Choice is Yours

By Guest Blogger Brad Mathis, Senior Consultant, Information Security It is mid-2015. By now, we have all seen incoming emails claiming we have been bequeathed a huge sum of money from a ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews