Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Two-thirds of Remote Workers Received No Security Awareness Training in the Last Year

This alarming bit of news about U.K. remote workers comes at the worst time when attacks are on the rise, insecure personal devices are being used, and workers are more susceptible to ...
Continue Reading

'Florentine Baker Group' Use Microsoft 365 Functionality to Scam Private Equity Firm Out of $1.2 Million

A new investigation by Check Point’s Incident Response Team (CPIRT) demonstrates how brazen cybercriminals are and the lengths they will go to in order to see their scam succeed.
Continue Reading

The Best and First Defenses You Should Implement

Every good defense has three pillars of controls: policy, technical, and education. People are always asking what they should do for each to minimize cybersecurity events the most and ...
Continue Reading

Postcards from a Film Director. The challenges of creating a sitcom during COVID-19 Lockdown

By Jim Shields, Managing Director of U.K.-based Twist & Shout - a KnowBe4 company. When we first created Restricted Intelligence over seven years ago, we had no idea it would be so ...
Continue Reading

How Sharing Personal Information Helps Scam Artists

The FBI's Charlotte office released an alert describing how scammers can use personal information on social media to break into online accounts, BleepingComputer reports. As people are ...
Continue Reading

Phishing Kit Prices Rise

The price of phishing kits on the black market rose by 149% in 2019, according to researchers at Group-IB. ZDNet reports that the researchers tracked the pricing of 16,200 phishing kits ...
Continue Reading

COVID-19 Emails go From Zero to Half a Million a Day in Just Three Months

According to new data from security researchers at Forcepoint, the interest in coronavirus-themed emails and websites by cybercriminals is cause for concern.
Continue Reading

German Health Authorities Lose €1.5 Million in COVID-19 Mask Purchase Scam

Reaching an all-new low, an international team of individuals setup an elaborate online scam taking advantage of the current need for healthcare equipment to fight COVID-19.
Continue Reading

Third-Party Risk Management Questionnaire for Extended Emergencies

Here’s a questionnaire you can send to suppliers during extended work from home (WFH) periods.
Continue Reading

Apple, Netflix, and Yahoo Were the Most Impersonated Brands in Q1 2020

10% of all brand-impersonation phishing attacks spoofed Apple in the first quarter of 2020, according to a new report from Check Point. Netflix came in second with 9%, followed by Yahoo ...
Continue Reading

[HEADS UP] DHS Deadline Notice of 56 Million Security Awareness Training Funding Opportunity

The Department of Homeland Security is providing $56,000,000.00 of grant money to states for cybersecurity and security awareness training.
Continue Reading

New COVID-19 Malware Variants Render Your Endpoints Useless

Forget cybercriminals out to steal your money and credentials. Security researchers are now finding more malware intent on rewriting master boot records and wiping file systems.
Continue Reading

Quarantine Text Scam Tricks U.K. Residents into Paying “Fine”

Because of the ambiguity of current lockdown restrictions, a new text scam pretending to be from the government feels a bit too real to U.K. residents, turning them into victims.
Continue Reading

Zeus Sphinx Banking Trojan is Revived Under the Guise of COVID-19 Assistance

The 5-year old malware variant has reared its ugly head once again after a three-year hiatus – this time attempting to take advantage of the need for COVID-19 financial assistance.
Continue Reading

Netflix Scams Target People Sheltering in Place

With people sheltering in place during the pandemic emergency, they’re both teleworking and finding their entertainment online. Google searches for Netflix jumped 142% since the advice to ...
Continue Reading

It’s Look-Alike Day: While Doppelganger Humans Can Be Funny, Domains Are Not

On April 20, we celebrate National Look-Alike Day. It’s the perfect time to see which people have similar features as you, instead of that completely normal person you bumped into at the ...
Continue Reading

Damage From Phishing Doubles For Dutch Banks

Dutch banks saw damage from phishing double last year compared to the previous year. This concerns both phishing for 2FA security codes and phishing for credit and debit card numbers, ...
Continue Reading

[Heads-Up] Hacking Attacks Double Against Users Who Now Suddenly Work From Home

Reuters just reported that hacking activity against corporations in the United States and other countries more than doubled by some measures last month as digital thieves took advantage ...
Continue Reading

Re-Opening the American Economy? Malicious Actors Have a Plan...

By Eric Howes, KnowBe4 Principal Lab Researcher. If you've been following the news over the past week or so then you know that a robust debate has opened at federal, state, and local ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews