KnowBe4 Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in human and agent security including social and prompt engineering, ransomware and phishing attacks.

[HEADS UP] Cybercriminals Threaten Patients in Clinic Data Breach

In a recent report by BBC News, patients in a large clinic in Finland have been blackmailed using social engineering after their data was stolen.

[HEADS UP] Fraudsters are Exploiting High Demand Air Freight

Scammers are exploiting the high demand for air freight brought on by the COVID-19 pandemic, the Loadstar reports. Charter veteran Steve Manser told the publication that fraudsters are ...

All Con, All the Way Down: Bad Guys Spoof Phishing Link Hover Texts

At the heart of almost every phishing email is a spoof. In malicious emails spoofing is the art of deceptively imitating something or someone trusted by users in order to gain their ...

[INFOGRAPHIC] 20 Ways to Build Your Security Fortress From Anywhere

Whether you and your users are working remotely or in the office, it’s essential to be aware of cybersecurity threats. Here at KnowBe4, we’re committed to help your users make smarter ...

Members of the Cybercrime Group Responsible for NotPetya Indicted by U.S. Government

Six members of the Russian hacker group known as Sandworm who have carried out some of the most well-known cyberattacks in the last 6 years appear to have been brought to justice.

REvil Ransomware Gang Flexes Its Hiring Muscle With a $1 Million Deposit on a Hacking Hiring Website

Nothing says ransomware is a profitable business more than throwing down a million dollars in an attempt to attract and hire the most talented hackers on the planet.

[HEADS UP] Cybercriminal Sells Info on 186 Million U.S. Voters

In a recent report by NBC News, cybersecurity company TrustWave found a bad guy selling voter registration data on 186 million Americans.

The Ultimate Cyber Security Tip

It’s Cyber Security Awareness Month, and the security advice is flowing out from all corners of the web to advise your users on remaining secure. However, all this information can be ...

[HEADS UP] Australia Warns Citizens of JobKeeper Phishing Email

The Australian Taxation Office has advised Australians to delete a particular email and to not provide any personal information.

Cybersecurity Awareness Month Weekly Tip: Social Media Safety

Each week during Cybersecurity Awareness Month, we’re going to be sharing in-depth weekly cybersecurity tips from our informative evangelists to help your users make smarter security ...

Middle Management is the Next Target for Phishing Attacks

Mid-level managers need to be particularly wary of targeted phishing attacks, according to Jenn Gast at INKY. Gast explains that criminals can easily conduct open-source research on a ...

[On-Demand] Lessons Learned: An IT Pro’s Experience Building his Last Line of Defense

This is the true story of an IT Manager who was tired of his users clicking everything and wanted to teach them a lesson… in a good way.

Threatening Election Emails Land in Florida Inboxes

If you checked the news this morning, you probably noticed a story getting plenty of play on mainstream news sites: threatening election-themed emails sent to recipients in three states, ...

Notes on Social Engineering, and What to Do About It

Phishing attacks are growing in prevalence during the pandemic, according to David Dufour, Vice President of Engineering and Cybersecurity at Webroot. Webroot’s recent threat report ...

[HEADS UP] Russian Intelligence Officers Charged With Hacking

In a recent article by the Wall Street Journal, U.S. prosecutors charged six Russian intelligence officers who are accused of engaging in the most destructive cyber attacks of recent ...

The Geography of Business Email Compromise

Researchers at Agari have released a report on the global distribution of business email compromise (BEC) actors, and determined that 25% of these criminals are operating from within the ...

Threat Actors Take Advantage of Exchange Online and Outlook on the Web with New Levels of Sophistication

New insight from Accenture Security highlights specific ways attackers are changing their tactics to make Microsoft’s email platform a tool rather than an obstacle for phishing attacks.

Another Office 365 OAuth Attack Targets Coinbase Users to Gain Compromised Email Access

The latest attack attempts to trick Office 365 users that use Coinbase into giving access to their mailbox via a Consent app rather than trying to steal their credentials.

The Risk of Redirector Domains in Phishing Attacks

Researchers at GreatHorn warn that a large-scale phishing campaign is using open redirects to evade email security filters. Open redirects allow attackers to take a URL from a ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.