Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Zoom's Recent Hypergrowth Challenges -- And How To Use It In A Secure Way

The massive uptick in use of the popular video conferencing service Zoom has resulted in a rise in stock price, a class action lawsuit, and a huge opportunity for cybercriminals.
Continue Reading

NASA sees an “exponential” jump in malware attacks as personnel work from home

Ars Technica reports that NASA has experienced an exponential increase in malware attacks and a doubling of agency devices trying to access malicious sites in the past few days as ...
Continue Reading

Share the Red Flags of Social Engineering Infographic With Your Employees

Social engineering and phishing are responsible for 70% to 90% of all malicious breaches , so it’s very important to keep your employees at a heightened state of alert against this type ...
Continue Reading

Cloud-based Business Email Compromise

The FBI’s Internet Crime Complaint Center (IC3) published an alert warning that criminals are exploiting cloud-based email services to carry out business email compromise (BEC) attacks. ...
Continue Reading

March Content Update: Including Work From Home and Coronavirus Training Resources

Here are a few important updates to share with you from the month of March.
Continue Reading

Phishing Trends Recap of COVID-19 Related Phishing Schemes

Our Chief Evangelist Strategy Officer Perry Carpenter took a bit of time and summarized the crazy month of March 2020 looking at the exponential growth of COVID-19 themed phishing attacks.
Continue Reading

Seven Tips to Optimize Security

Data breaches continue, phishing attacks are on the rise, and people responsible for security wake up in a cold sweat a few times a year worried they’re the next victims.
Continue Reading

Social Distancing Elevates Both Personal and Organizational Risk

With many countries participating in social distancing and “shelter in place” directives, remote workers are subjecting themselves and their employer to a number of risks. Find out why.
Continue Reading

Bad News from the (Fake) CDC: You've Got Malware

Malicious actors continue to probe organizations' security and defenses with malicious emails explicitly crafted to create and exploit sense of panic in the wake of the COVID-19. Over the ...
Continue Reading

Malicious Actors Release Coronavirus Guidelines for America

You already knew this was going to happen. It was just a matter of waiting. Fast on the heels of the release of President Trump's "Coronavirus Guidelines for America," malicious actors ...
Continue Reading

Organizations Say They Want Employees to Prepare for Ransomware Attacks, But Do Little in the Way of Training

Organizations are keenly aware of the ramifications of ransomware attacks and the need to prevent them but aren’t empowering users to prevent becoming the victim.
Continue Reading

A new ransomware strain called 'Save the Queen’, distributes itself from your own Domain Controllers

Sophisticated cybercriminals have continuously improved the effectiveness of ransomware attacks, according to Yaki Faitelson, co-founder and CEO of Varonis. In an article for Forbes, ...
Continue Reading

They're Here! COVID-19 Stimulus Check Phishes Finally Arrive

Last week the FBI warned Americans to be on the look-out for malicious emails attempting to bamboozle users with news surrounding economic fiscal stimulus checks that were to be delivered ...
Continue Reading

The Best Computer Security Solvers Look Beyond the Problem

Who doesn’t love a good computer security “cowboy”? That’s a man or a woman who is a recognized authority in their field of expertise, who groks their subject, who is truly a subject ...
Continue Reading

Sextortion Email Scams Now Include Threats to Infect Victims with COVID-19

In what may be either a moment of brilliance or desperation, scammers are attempting to use coronavirus infection threats as a means of further convincing victims to pay up.
Continue Reading

New Potential Phishing Scam Begins with A Phone Call

A recent suspicious phone call was brought to our attention. It looks to be the beginning of a phishing campaign and demonstrates the lengths cybercriminals will go to in order to ensure ...
Continue Reading

70% to 90% of All Malicious Breaches are Due to Social Engineering and Phishing Attacks

If you’ve heard me speak the last two years, read any of my articles, or watched any of my webinars, you’ve probably heard me say, “Seventy to ninety percent of all malicious breaches are ...
Continue Reading

The Dilemma: Should you phish test during the COVID-19 pandemic?

By Perry Carpenter, KnowBe4 Chief Evangelist and Strategy Officer. There’s no question, these are challenging times. Employees and organizations around the world are doing their best to ...
Continue Reading

An Uber Phish

London's Transport for London (TfL) is the entity that manages public transportation and public carriage licenses. In November 2019, TfL stated it would not renew Uber’s Private Hire ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews