Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

New EFS Ransomware Attack Uses Windows Encrypting File System Against Itself

The newly-spotted form of ransomware takes advantage of encryption capabilities built into Windows making it difficult for AV vendors to stop it.
Continue Reading

Domain-Impersonation Increases by 400% as part of Conversational Hijacking Attacks

The latest data from security vendor Barracuda suggests that attackers heavily rely on lookalike domains as part of BEC scams that can result in CEO fraud, malware infection, or ransom.
Continue Reading

FDIC Warns U.S. Financial Institutions of Elevated Risk of Cyberattack

Citing “increased geopolitical tension”, banks are warned to immediately reevaluate to shore up cybersecurity controls and technology safeguards against ransomware and malware attacks.
Continue Reading

New Phishing Attack Emerges Targeting ADP Users Wanting Their W2

For those looking to get their taxes done early, watch out for emails impersonating ADP offering a link to retrieve your W2 early!
Continue Reading

Scam Of The Week: Exit Windows 7, Enter Scams

Microsoft ended support for the Windows 7 operating system on January 14th, and scammers are taking advantage of the long-anticipated news to launch tech support scams, according to the ...
Continue Reading

Conversation-Hijacking Attacks Make It Almost Impossible to Avoid Becoming a Victim

Attackers target organizations to insert themselves into group email conversations as a way of ensuring the likelihood that one or more recipients are happy to unwittingly infect ...
Continue Reading

The Great Crimeware Awakening

The bad guys are taking advantage of their new digital bounty. Ransomware is just the beginning to show us how bad it is soon going to be. We really had no idea how bad it was going to ...
Continue Reading

Confront Apprehensive Compliance Before Disaster Strikes

This blog is co-written by Aimee Laycock and Joanna Huisman When it comes to fostering a more secure environment it’s not a question of wanting to…it’s more like YOU HAVE TO. ...
Continue Reading

Amazon Phishbait Chums British Waters

Action Fraud, the UK's fraud reporting center, has warned of a widespread phone scam targeting Amazon customers. The phone calls are automated and inform recipients that their Amazon ...
Continue Reading

Temporary Social Security Number? No Such Thing

Researchers at Kaspersky have come across an interesting phishing site that’s posing as a data leak protection service set up by the US government. The site purports to be compensating ...
Continue Reading

Emotet Trojan Intelligently Targets Organizations, Impersonates Victims to Improve Attack Success

According to new insights from Cisco Talos, this banking malware is getting nastier as it moves into the island hopping space via email attacks using social engineering.
Continue Reading

Phishing Attacks Are the Number One Data Breach Attack Vector in the U.K.

The latest cyber attack trend data in the U.K. shows the majority of data breaches in 2019 began with a phishing attack. Security consulting firm CybSafe analyzed three years of the ...
Continue Reading

U.K. Report: "We’re Doomed-Passwords Aren’t Strong or Secure"

A recent survey of over 2,000 U.K. broadband users shows that individuals don’t use good password hygiene or secure storage to protect themselves against future cyberattacks.
Continue Reading

Cyber Incidents Are the Top Concern Among Executives

Businesses are finally realizing the continually present threat that hackers, scammers, and cybercrime organizations pose, according to new data from insurer Allianz.
Continue Reading

Now That Ransomware Has Gone Nuclear, How Can You Avoid Becoming the Next Victim?

There is a reason more than half of today’s ransomware victims end up paying the ransom. Cyber-criminals have become thoughtful; taking time to maximize your organization’s potential ...
Continue Reading

Bad Guys Built A Completely Fake News Website For A Bitcoin Phishing Scam

The Central Bank of Malta has issued a statement warning people about a bitcoin phishing scam being pushed by a spoofed news website, the Times of Malta reports. The site imitated a ...
Continue Reading

Leaving Windows 7 in Production Puts You at High Risk of Ransomware Attack

Microsoft end-of-support for Windows 7 means systems will remain unpatched, creating an opportunity for future ransomware attacks to wreak havoc.
Continue Reading

Business Disruption is the Prominent Result for All Cyberattacks

New data from security vendor CrowdStrike shows that the bad guys are getting better at avoiding detection and are having a substantial financial impact on operations.
Continue Reading

Defending Against Ransomware is a Team Effort

Ransomware operators have grown very skilled in targeting exactly what will compel an organization to pay up, according to Andrew Brandt, principal researcher at Sophos. On the ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews