Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Apple, Netflix, and Yahoo Were the Most Impersonated Brands in Q1 2020

10% of all brand-impersonation phishing attacks spoofed Apple in the first quarter of 2020, according to a new report from Check Point. Netflix came in second with 9%, followed by Yahoo ...

[HEADS UP] DHS Deadline Notice of 56 Million Security Awareness Training Funding Opportunity

The Department of Homeland Security is providing $56,000,000.00 of grant money to states for cybersecurity and security awareness training.

New COVID-19 Malware Variants Render Your Endpoints Useless

Forget cybercriminals out to steal your money and credentials. Security researchers are now finding more malware intent on rewriting master boot records and wiping file systems.

Quarantine Text Scam Tricks U.K. Residents into Paying “Fine”

Because of the ambiguity of current lockdown restrictions, a new text scam pretending to be from the government feels a bit too real to U.K. residents, turning them into victims.

Zeus Sphinx Banking Trojan is Revived Under the Guise of COVID-19 Assistance

The 5-year old malware variant has reared its ugly head once again after a three-year hiatus – this time attempting to take advantage of the need for COVID-19 financial assistance.

Netflix Scams Target People Sheltering in Place

With people sheltering in place during the pandemic emergency, they’re both teleworking and finding their entertainment online. Google searches for Netflix jumped 142% since the advice to ...

It’s Look-Alike Day: While Doppelganger Humans Can Be Funny, Domains Are Not

On April 20, we celebrate National Look-Alike Day. It’s the perfect time to see which people have similar features as you, instead of that completely normal person you bumped into at the ...

Damage From Phishing Doubles For Dutch Banks

Dutch banks saw damage from phishing double last year compared to the previous year. This concerns both phishing for 2FA security codes and phishing for credit and debit card numbers, ...

[Heads-Up] Hacking Attacks Double Against Users Who Now Suddenly Work From Home

Reuters just reported that hacking activity against corporations in the United States and other countries more than doubled by some measures last month as digital thieves took advantage ...

Re-Opening the American Economy? Malicious Actors Have a Plan...

By Eric Howes, KnowBe4 Principal Lab Researcher. If you've been following the news over the past week or so then you know that a robust debate has opened at federal, state, and local ...

[NEW PhishER Feature] Remove, Inoculate, and Protect Against Email Threats Faster with PhishRIP

We are excited to announce the availability of PhishRIP™ as part of the PhishER platform to all PhishER customers. PhishRIP is a new email quarantine feature that integrates with ...

Phishing Trend: Quality, Not Quantity?

A new report from CyberCube found that sophisticated cybercriminals are increasingly shifting to launching business email compromise (BEC) attacks against executives, Insurance Business ...

Spanish Hospital Faces Netwalker Ransomware Attack in the Midst of Pandemic

At a time when hospitals are already stretched thin for budget, one of many attackers still thinks it’s a good idea to hold hospitals for ransom, showing organizations always need to be ...

Coronavirus-Related Spear Phishing Attacks See a Massive 667% Increases in March

Attackers are taking advantage of the pandemic, looking for every way possible to achieve their malicious goals via targeted phishing campaigns of every kind.

When the Implausible Seems, Well, More Plausible

Everyone is vulnerable to social engineering and no security tool can block every phishing email, according to Kevin Casey at The Enterprisers Project. Casey talked to a number of ...

Phishing *Better* Than the Bad Guys During the Pandemic

By Katie Brennan, KnowBe4 Product Content Director. The COVID-19 pandemic has had cyber criminals in a phishing frenzy for months. They’ve been sending countless attacks, with the ...

3 Eye Opening Reasons Why Security Awareness Training is Even More Critical Now That You Have a Remote Workforce

In the history of IT and cyberthreats, there has never been a more critical time for organizations to employ security awareness training than now. With employees working from home, the ...

Three More Ransomware Families Join the Extortion Game

As ransomware creators look for ways to ensure they get paid for their malicious efforts, many are taking a page from the Maze ransomware manual and are posting stolen data if not paid.

Novel, but Retrospectively Obvious: a QR Code Generator Scam

A scammer has stolen more than $45,000 worth of bitcoin over the past month by tricking people with fake QR code generators, ZDNet reports. Harry Denley, Director of Security at MyCrypto, ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.