Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Spear Phishing Becomes a Bigger Problem as the Average Organization is Targeted 700 Times a Year

With threat actors honing their trickery skills to craft the perfect email used to fool a would-be victim recipient, new data shows cybercriminals are stepping up their game on a number ...

DarkSide Ransomware Returns as BlackMatter After Sudden Shutdown of Operations

Probably the world’s most notorious ransomware gang disappears completely and subsequently reappears with new branding in an attempt to separate themselves from the types of attacks that ...

Cyber Insurance Rates Climb 30% as Ransomware Attacks, Costs, and Payments are All on the Rise

In a case of “I told you so”, it seems that cyber insurance costs have risen this year as organizations fail to properly protect themselves from rampant ransomware attacks.

Cyber Insurance Industry Wrongly Hedging Its Bets on MFA

Because of ransomware attacks, I have been covering the cybersecurity insurance industry for a few years, including here. I even have a whole chapter dedicated to cybersecurity insurance ...

FTC Warns of Unemployment Insurance Phishing Scheme

The US Federal Trade Commission (FTC) has issued a warning about scams targeting unemployed people via text messages.

Your KnowBe4 Fresh Content Updates from July

With 25 new pieces of training content added this month, check out the always fresh content update highlights and new features from the month of July.

12 Steps to a Security Ignorance Program

Most people working for organisations have been exposed at some point in their careers to security awareness programs. Some of these programs are well-executed and delivered, while others ...

BEC Attacks Are Targeting Lower-Level Employees

A new report from Barracuda found that most business email compromise (BEC) attacks are now targeting employees who aren’t in executive or financial roles.

[On-Demand Webinar] Open Source Intelligence (OSINT): Learn the Methods Bad Actors Use to Hack Your Organization

The digital age has unleashed massive amounts of personal and organizational data on the internet. No breaking through firewalls or exploiting vulnerabilities required.

79% of Employees Have Knowingly Engaged in Risky Online Activities in the Past Year

With employees not believing that it’s important to personally worry about cyber security risks, they also tend to believe they’re not a target, new data suggest as the reason for the ...

You Knew It Would Eventually Happen: Ransomware Lawsuits

Organizations that have fallen victim to a ransomware attack are now being sued by impacted employees and customers alike who are citing loose cybersecurity was in place.

Egress: 73% of Orgs Were Victims of Phishing Attacks in the Last Year

A survey sponsored by Egress found that 94% of organizations suffered insider data breaches over the past year. The survey offers the following results:

Ransomware Extortion Attacks Continue to Rise in Frequency as Ransom Payments Decrease by 40%

Ransomware is having a very odd second quarter of the year as new variants enter the game governments finally take notice and insurers tighten their underwriting requirements.

Phishing Attacks Target IT Professionals More Than Any Other Organizational Role

New data from security vendor Ivanti suggests that cybercriminals are focusing in on those in IT roles as targets of phishing attacks, with many admitting to falling victim for these ...

How Social Engineers Use Social Media

People need to be aware of how their social media posts can be used against them, according to Darren Millar, senior vice president of operations at PiiQ Media. In an article for ...

[HEADS UP] Microsoft Warns of Sneaky Phishing Campaign

Microsoft's Security Intelligence team recently sent an alert to Office 365 users and admins to watch out for a suspicious phishing email that uses spoofed sender addresses.

New Phishing Campaign Uses Blackmail to Lure Victims

Bitdefender has observed a phishing campaign that tries to blackmail users into sending money by claiming their computer has been hacked. The emails contain real passwords that have been ...

Visit KnowBe4 at Black Hat USA 2021 - Virtual & In Person Event

Are you attending Black Hat USA 2021 (either in person or virtually) ? Be sure to stop by the KnowBe4 booth August 4th - 5th to find out how to secure your last line of defense: USERS.


Get the latest insights, trends and security news. Subscribe to CyberheistNews.