Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Did you know that KnowBe4 provides Managed Phishing Services?

You have determined the need for a mature, effective security awareness training program to make sure your employees do not fall for phishing emails or social engineering attacks. As part ...
Continue Reading

UK Telegraph: "Huge ransomware attack laid bare French lingerie firm"... And Bankrupted It

Leave it to the wordsmiths of the British Press to come up with a catchy title like this... However, the topic is dead serious.
Continue Reading

Anti-Virus, Identity Protection Phishbait

A phishing campaign is using fake NortonLifelock documents to trick victims into installing a remote access tool, according to researchers at Palo Alto Networks’ Unit 42. The documents ...
Continue Reading

KnowBe4 and Agari Announce New Partnership to Transform Phishing Protection

As market leaders, KnowBe4 and Agari have joined forces to help stop identity-based email attacks. Together, we have created a best-in-class approach to defend against phishing attacks at ...
Continue Reading

New Sophisticated Credential-Stealing Malware, Forelord, Attacks the Middle East

This latest APT highlights the levels of sophistication attackers will go to just to establish persistence, infect the endpoint, and steal credentials from the victim organization.
Continue Reading

Courts Limit Payout on Insurance Claim to Just One Section of the Liability Policy

The latest ruling shows how the courts are becoming well-versed in the ways of cyberattacks, and are holding both insurers and policyholders to the letter of the contract.
Continue Reading

Social Security Administration Warns of Phone Scams On March 5th "Slam The Scam Day"

The Social Security Administration in Association with the Federal Trade Commission's (FTC) National Consumer Protection Week, want to remind everyone that scammers are now targeting ...
Continue Reading

[On-Demand] Never Assume Breach: Build a Data-Driven Defense Strategy to Secure Your Organization's Most Valuable Assets

Even the world’s most successful organizations have significant weaknesses in their IT security defenses, which today’s determined hackers can exploit at will. There’s even a term for it: ...
Continue Reading

Cut-and-Paste Phishbait

Naked Security describes a phishing campaign that’s convincingly spoofing emails from the online payment company Stripe. The email informs the recipient that an unknown device has logged ...
Continue Reading

Data Breach After Effects: Consequences and Learning Lessons

If you think your organization is safe from a data breach, think again. Data breaches could be deadly for any organization big or small.
Continue Reading

New Sophisticated “Exaggerated Lion” BEC Check Scam Uses Mules to Cash Out

You may wonder exactly how BEC scammers see a payday. New insight from security vendor Agari documents how a secondary check scam dupes unsuspecting victims to help.
Continue Reading

Racoon: Infostealer Malware Collects Credentials, Financial and Personal Information

Access to a compromised endpoint may no longer be enough. So, enterprising malware authors offer up infostealers to help exfiltrate valuable data from an infected machine.
Continue Reading

None But the Lonely Heart Would Fall for an Emoji

Researchers at Malwarebytes and X-Force IRIS have come across an ongoing phishing campaign that’s using romance-themed emails to distribute the Nemty ransomware, BleepingComputer reports. ...
Continue Reading

Experts: Expect Summer Olympics-Themed Cyberattacks in the Coming Months

The business of the games will provide cybercriminals with countless options to scam participants, sponsors, and spectators using contextual details and social engineering.
Continue Reading

Ransomware Attack On Wool Industry Halted Sales Across Australia Last Week

It is yet to be seen how a cyber attack which shut down wool sales last week will affect growers in Tasmania. Last Tuesday Talman Software, which is used by the majority of wool industry ...
Continue Reading

Bogus Singapore Police Site Serves as a Watering Hole

The Singapore Police Force (SPF) released an advisory warning about a phishing site that’s spoofing the Force’s website, Channel News Asia reports. The bogus website informs the user that ...
Continue Reading

Nigerian Man Arrested 3 Years After $850,000 Stolen in Email Scam

The Boulder County Sheriff’s Office says a Nigerian man has been arrested more than three years after $850,000 was stolen in construction bond money from the Boulder Valley School ...
Continue Reading

Afraid You're Communicating Too Frequently? Rethink That.

This blog was co-written by Joanna Huismann and Aimee Laycock. Communication is not always easy (let’s be honest, we have all wanted to scream with frustration at our partner or a family ...
Continue Reading

Guess Who Else is Now Doing Security Training Surveys?

By Eric Howes, KnowBe4 Principal Lab Researcher. A few months ago, KnowBe4 began offering customers two new kinds of scientifically-based assessments to help IT departments get a better ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews