Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

More Ransomware Creators Jump on the Leak Site Bandwagon as the Number of Sites and Data Breach Posts Skyrocket in Q3

The third quarter saw massive increases in activity by ransomware gangs both creating leak sites and posting to them about recent attacks on orgs that, presumably, didn’t pay the ransom.

[HEADS UP] U.S. Government Warns of Ransomware Threat Against Hospitals

This week, Krebs on Security released an article on a Russian cybercriminal gang that have been known for deploying ransomware has prepared to attack hundreds of hospitals, clinics, and ...

Don't Neglect the Threat of Vishing

People need to help raise awareness about voice phishing scams, or vishing, according to Paul Ducklin at Naked Security. While phone scams have been around for years, they remain ...

Cybersecurity Awareness Month Weekly Tip: Security Awareness Training

Each week during Cybersecurity Awareness Month, we’re going to be sharing in-depth weekly cybersecurity tips from our informative evangelists to help your users make smarter security ...

Here's Your Guide for Combating the Global Disinformation Pandemic

Let’s face it – we’re facing a global pandemic; and it goes beyond Covid 19. There’s a war on truth and it’s being waged by nation states, political groups, and cybercriminals who want to ...

Here Are Some Truly Scary Social Media Stats!

Scamming incidents have increased by 519% in 2020 compared to last year, according to researchers at Baltimore-based ZeroFOX. The researchers compared their own data to a recent report ...

Nearly Half of the World’s Workers Don’t Know What a Mobile Phishing Attack Is

As organizations look for permanent solutions to operate using a remote workforce, users continue to elevate the risk of cyberattack by not worrying about cybersecurity.

Fraud Attacks Targeting the Mid-Market Organization Increase 129%

New data from U.K. cyberinsurer Beazley highlights the growing trend of mid-market organizations being the target of social engineering attacks and fraud.

New Qbot Phishing Attack Pretends to be Windows Defender to Trick Its Victims

One of the most dangerous pieces of malware is back with a new campaign that takes advantage of social engineering techniques to look convincing enough to fool your users.

Researchers Discover Most Microsoft 365 Admins Don't Enable Multi-Factor Authentication

Researchers from CoreView recently discovered that 97% of all total Microsoft 365 users do not utilize multi-factor authentication (MFA). A staggering 78% of Microsoft 365 admins do not ...

"Berserk Bear", The Russian Hackers Playing ‘Chekhov’s Gun’ With US Infrastructure

In an advisory warning published last week by the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA), the government notified the public of a ...

Could A Botched Ransomware Attack Have Caused The Massive Mauritius Oil Spill?

I found a super interesting and at the same time scary article at Forbes by Nishan Degnarain about the cyber vulnerabilities of these massive oil tankers and container ships. It's ...

[NEW BOOK] Hacking Multi-Factor Authentication

I’m excited to announce the release of my 12th book, Hacking Multifactor Authentication.

[HEADS UP] Remote Workers Disregard Security Awareness Training

According to new research from Mimecast, remote workers are increasingly putting their organizations at risk by failing to follow security awareness training best practices.

Couple Avoids Becoming a Victim to Publishers Clearing House Scam

An elderly couple in Tennessee avoided falling victim to a scam by recognizing the signs of social engineering, WREG reports. Kay and Bill Pritchett received six different phone calls ...

[HEADS UP] Cybercriminals Threaten Patients in Clinic Data Breach

In a recent report by BBC News, patients in a large clinic in Finland have been blackmailed using social engineering after their data was stolen.

[HEADS UP] Fraudsters are Exploiting High Demand Air Freight

Scammers are exploiting the high demand for air freight brought on by the COVID-19 pandemic, the Loadstar reports. Charter veteran Steve Manser told the publication that fraudsters are ...

All Con, All the Way Down: Bad Guys Spoof Phishing Link Hover Texts

At the heart of almost every phishing email is a spoof. In malicious emails spoofing is the art of deceptively imitating something or someone trusted by users in order to gain their ...

[INFOGRAPHIC] 20 Ways to Build Your Security Fortress From Anywhere

Whether you and your users are working remotely or in the office, it’s essential to be aware of cybersecurity threats. Here at KnowBe4, we’re committed to help your users make smarter ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.