Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

KnowBe4 Halloween 2015

We had a great time this year, but we had to keep it short because it was the last day of the month and things were super busy! We did have some time for our yearly parade to the local ...
Continue Reading

Staggering CryptoWall Ransomware Damage: 325 Million Dollar

A brand new report from Cyber Threat Alliance showed the staggering damage caused by a single criminal Eastern European cyber mafia. The CTA is an industry group with big-name members ...
Continue Reading

CyberheistNews Vol 5 #46 Beautiful Social Engineering Attack By Gorgeous IBM Rep

Big-time computer hackers are after proprietary information: source code, pharmaceutical research, legal documents, chemical formulas, blueprints, product designs and other trade secrets ...
Continue Reading

FBI’s Advice on Ransomware? Just Pay The Ransom.

In-brief: The nation’s top law enforcement agency is warning companies that they may not be able to get their data back from cyber criminals who use Cryptolocker, Cryptowall and other ...
Continue Reading

TalkTalk Hackers Demanded $122K in Bitcoin

TalkTalk, a British phone and broadband provider with more than four million customers, disclosed Friday that intruders had hacked its Web site and may have stolen personal and financial ...
Continue Reading

Scam Of The Week: Enter To Win Tickets To Star Wars

It's "Scam Of The Week" time to warn your users against phishing attacks that try to trick them into winning movie tickets for the new Star Wars movie. For the next 2 months this is going ...
Continue Reading

Beautiful Social Engineering Attack By Gorgeous IBM Rep

Credit card numbers are small potatoes. Big-time computer hackers are after proprietary information: source code, pharmaceutical research, legal documents, chemical formulas, blueprints, ...
Continue Reading

Ransomware Spreads Using Remote Desktop and Terminal Services Attacks

Larry Abrams at tech blog Bleeping Computer was the first one to report on this new wrinkle. The ransomware is called LowLevel04 and encrypts data using RSA-2048 encryption, the ransom is ...
Continue Reading

CyberheistNews Vol #5 #45

CyberheistNews Vol #5 #45 Oct 20, 2015 Apple's OS X Security Honeymoon Is Over Unfortunately, bad guys are business people too. Their time is money, and they follow market leaders. By ...
Continue Reading

Stop End-Users From Doing Stupid Stuff

Roger A. Grimes is an InfoWorld contributing editor. Roger holds more than 40 computer certifications and has authored eight books on computer security. He has been fighting malware and ...
Continue Reading

[VIDEO] Hacking the Chip & Pin card technology is easy

The banks are promoting that the so called new "Chip & Pin" cards are much safer. They are also called the EMV chip system and touted to be secure. However, this technology is 15 ...
Continue Reading

Apple's OS X Security Honeymoon Is Over

Unfortunately, bad guys are business people too. Their time is money, and they follow market leaders. By now, Apple's market share of desktop computers is close to 17 percent. OS X, ...
Continue Reading

Healthcare pros do not get enough security awareness training

Healthcare pros surprisingly get very little security awareness training. Only 38 percent of these employees get security training at least twice a year -- 49 percent get training once a ...
Continue Reading

CyberheistNews Vol 5 #43 Near-flawless Social Engineering Attack Spoiled By Single Error

*|CyberHeistNews|* CyberheistNews Vol #5 #43 Oct 13, 2015 Near-flawless Social Engineering Attack Spoiled By Single Error Steve Ragan at CSO has a great story about a CEO Fraud social ...
Continue Reading

WSJ Gives Powerful Ammo For More InfoSec Budget

A front page article in the Wall Street Journal describes the escalating arms race for a possible cyberwar. This article is a great way to get C-level execs a crash course about ...
Continue Reading

Teach your execs well: Stop phishing in the C-suite

J. Peter Bruzzese is an InfoWorld columnist and five-time-awarded Microsoft MVP (current technical expertise Office 365, previous four years Exchange). He is a technical speaker, author ...
Continue Reading

[INFOGRAPHIC] Social Engineering

“You could spend a fortune purchasing technology and services, and your network infrastructure could still remain vulnerable to old-fashioned manipulation.” — Kevin Mitnick. Bad guys ...
Continue Reading

Postal employees fall to internal phishing sting

Aaron Boyd wrote: "Determined not to fall victim to another network breach, the U.S. Postal Service is phishing its own employees, testing their ability to recognize a scam before it's ...
Continue Reading

[INFOGRAPHIC] Men Twice As Likely To Fall For Phishing Attacks

In the never ending battle of the sexes, it looks as though women are winning the phishing fight according to new research from KnowBe4. In an analysis done by KnowBe4 of 201,755 phishing ...
Continue Reading

Near-flawless Social Engineering attack spoiled by single flaw

Steve Ragan at CSO has a great story about a CEO Fraud social engineering attack that was caught just in time because the employees were given effective security awareness training. This ...
Continue Reading

Cisco Takes Down $60M Ransomware Operation

Good news for a change. Cisco just posted that they disabled a cybercrime operation that used the Angler exploit kit to distribute ransomware. The takedown shutttered a global ransomware ...
Continue Reading

CyberheistNews Vol #5 #42 Scam Of The Week: Facebook Dislike Button

*|CyberHeistNews|* CyberheistNews Vol #5 #42 Oct 6, 2015 Scam Of The Week: Facebook Dislike Button At a Sept 15, 2015 Town Hall Q&A session at Facebook headquarters, Zuckerberg ...
Continue Reading

Men Are Twice As Likely To Fall For Phishing Attacks

In an analysis done by KnowBe4 of 201,755 phishing emails sent over the past 30 days, it was found men appear to be more prone to clicking on a phishing email than women. In further ...
Continue Reading

Scam Of The Week: Facebook Dislike Button

At a Sept 15, 2015 Town Hall Q&A session at Facebook headquarters, Zuckerberg mentioned that for years users had been asking about a 'dislike button', and that Facebook was finally ...
Continue Reading

New KnowBe4 Feature CEO Fraud Prevention Phishing Test

We just released a new feature that allows you to test your employees for "CEO Fraud" spear phishing attacks. When you create a phishing email template, you can now specify a Sender Name ...
Continue Reading

KnowBe4 Third Quarter 2015 is 400% Over Q3 2014

We had a blow-out quarter this Q3 2015. When we looked at Q3 2014 and did the math, we expanded a mind boggling 400% year-over-year. We added 267 new accounts in September only, which was ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews