Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Courts: Banks $2 Million in Losses from a BEC Attack Aren’t Covered by Cyberinsurance

Using emails impersonating the wife of a senior executive at Crown Bank, cybercriminals were able to take the bank for $2 million – an amount the courts held the bank responsible for.
Continue Reading

Phishing URLs Increase 640% as Organizations (Finally!) Embrace Security Awareness Training

The latest data from security vendor Webroot shows how cybercriminals are changing their attack methods and targets – and how Security Awareness Training makes the difference.
Continue Reading

New Spear Phishing Campaign Targets 27 Famous Brands With Malicious SLK Files

A new spear phishing campaign is targeting twenty-seven companies around the world with malicious SLK (Symbolic Link) files, according to BleepingComputer. The attackers pose as a real ...
Continue Reading

5 Ways to Improve Your Security Awareness Training Program

In today’s world, it’s essential to implement security awareness training in the workplace. Without security awareness training, how would your employees know how to stay safe? A lot of ...
Continue Reading

Catphish and Honey Traps

Hundreds of Israeli soldiers had their phones compromised by malware after falling for catfishing attacks purportedly launched by Hamas, Forbes reports. The Israel Defense Forces (IDF) ...
Continue Reading

A U.S. Natural Gas Operator Shuts Down For 2 Days After A Phishing Attack Infects It With Ransomware

Dan Goodin at Ars Technica reported something worrisome: "A US-based natural gas facility shut down operations for two days after sustaining a ransomware infection that prevented ...
Continue Reading

Over 500 Browser Extensions Secretly Stealing Millions of Users Private Data Yanked From Chrome Store

Unfortunately, cyber criminals never stop their innovation. Now they have come up with a novel method to both poison Google's extension ecosystem, combined with social engineering tactics ...
Continue Reading

New Convincing Verizon Smishing Scam Makes SIM Swaps A Breeze

Cybercriminals intent on using a mobile device as a second factor of authentication are now using texts and very realistic-looking mobile sites to steal details needed to perform SIM ...
Continue Reading

The Good Taxi Driver

A taxi driver in Roseville, California saved an elderly passenger from being scammed out of $25,000, CNN reports. Rajbir Singh, the owner of Roseville Cab, recently picked up a ...
Continue Reading

[World Premiere] KnowBe4's New Season 2 of Security Awareness Video Series - 'The Inside Man'

We’re excited to announce Season 2 of the award-winning KnowBe4 Original Series - ‘The Inside Man’. This network-quality video training series delivers an entertaining learning experience ...
Continue Reading

[Heads-up] The World Health Organization Warns of New Coronavirus Phishing Attacks. Inoculate Your Employees!

The World Health Organization (WHO) is putting out an alert about ongoing Coronavirus-themed phishing attacks that impersonate the WHO and try to steal confidential information and ...
Continue Reading

Texas Ranks Second in Number of Ransomware Attacks on Health Care Organizations

According to new data from Comparitech, since 2016 Texas has experienced 14 ransomware attacks impacting a total of 483,000 patients, and costing as much as nearly $20 Million in damages.
Continue Reading

New Ransomware Variant Disables MSP Remote Management Processes To Evade Detection

Researchers at HuntressLabs “@Huntress” uploaded a YouTube video and commentary on their Twitter account that demonstrates a new variant of Ragnar Locker /Ragnar Locker Ransomware that ...
Continue Reading

This Is a Map of KnowBe4's 30,000+ Customers Worldwide

Every once in a while it's just fun to use some mapping software and see the geographic picture of where your customers are. We have tens of thousands or organizations using KnowBe4 all ...
Continue Reading

Emotet-Based Sextortion Scams Net 10 Times More than Necurs-Based Scams

The Emotet trojan just won’t die and appears to be gaining steam as sextortion scams are netting cybercriminals a massive return in exchange for their devious efforts.
Continue Reading

It Only Takes One Phish: Phishing Attack Results in Network Infiltration, IT Incompetence, and $217,000 in Paid Ransom Fees

The recent attack on a Dutch university demonstrates much of what IT organizations shouldn’t do to avoid an attack.
Continue Reading

This is the Phone Company: Give us Your D.O.B, Your Firstborn Child...

SMS scammers are posing as Verizon Wireless and sending text messages telling recipients to click a link to validate their account security, according to Chris Hoffman at How-To Geek. ...
Continue Reading

Cyberattacks in 2019 Cost over $3.5 Billion in Victim Losses with Business Email Compromise Taking in Half

The FBI’s annual year-in-review breaks down how 467,000 cyber attacks succeeded in taking consumers and businesses alike for billions of dollars.
Continue Reading

It Only Takes One Phish: Puerto Rico Gets Scammed Out of $2.6 Million

Once again, it was the human factor and skilled phishing tactics from the bad guys that was responsible for such a material loss. And, from the sound of it, policy and procedure either ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews