Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

18 Months, 61 Billion Credential-Stuffing Attacks

Akamai observed 61 billion credential stuffing attacks between January 2018 and June 2019, according to Computer Business Review. In a new report on Internet security, Akamai researchers ...
Continue Reading

Phishing Attacks Up, Especially Against SaaS And Webmail Services

Phishing attacks continued to rise into the summer of 2019 with cybercrime gangs’ focus on branded webmail and SaaS providers remaining very keen, according to the APWG report. The report ...
Continue Reading

Oklahoma Pension Fund Robbed of $4.2 million via Compromised Email

Attackers stole millions of dollars from Oklahoma’s pension fund for retired law enforcement officers, the Oklahoman reports. The Oklahoma Law Enforcement Retirement System (OLERS) said ...
Continue Reading

[Phishing Alert] UK Home Office primes Brexit spam cannon for a million texts reminding folk to check passports

The Register reported: "The UK Home Office will send a million text messages reminding people that the rules for travelling to the European Union will change in the event of a no-deal ...
Continue Reading

Exclusive: Russia carried out a 'stunning' breach of FBI communications system, escalating the spy game on U.S. soil

Yahoo came out with some very interesting news: "On Dec. 29, 2016, the Obama administration announced that it was giving nearly three dozen Russian diplomats just 72 hours to leave the ...
Continue Reading

Ex White House CIO attacks insurance firms for 'fuelling ransomware industry'

Former CIO of the White House Theresa Payton has warned that cyber insurance companies are supporting the ransomware industry by manipulating organisations into paying to have their ...
Continue Reading

WSJ: "U.S. Targets North Korean Hacking as Rising National-Security Threat"

Ian Talley and Dustin Volz at the WSJ wrote:
Continue Reading

Employees Are the Reason 70% of Financial Companies Have Suffered Security Incidents in the Last Twelve Months

The latest data from cybersecurity vendor Clearswift shows untrained employees are clearly the source of incidents that plague an overwhelming majority of companies in the financial ...
Continue Reading

Video Becomes the Next Big Bait for Social Engineering

Scammers are always looking for new ways to get potential victims to engage. It appears that the latest trend is to leverage our familiarity with watching video to spawn an attack.
Continue Reading

Only 5% of U.S. Healthcare Employees Receive Continual Cybersecurity Awareness Training

A recent report by security vendor Kaspersky highlights how healthcare organizations are at risk of cyberattack – and how a lack of training is responsible.
Continue Reading

How Can You Check If Your Email Is Compromised?

Rudy Friederich, a KnowBe4 friend at Marshal Security LLC sent me the following interesting tips related to finding out if you are the victim of Business Email Compromise. He wrote:
Continue Reading

Global Phishing Campaign Targets Universities

Researchers at Secureworks’ Counter Threat Unit (CTU) have been tracking a major phishing campaign that’s using library-themed emails to target more than sixty universities around the ...
Continue Reading

Cyber security remains the biggest threat to business in Africa

CAPE TOWN – African business owners who attended the World Economic Forum (WEF) on Africa in Cape Town have flagged cybersecurity as the biggest threat to business.
Continue Reading

KnowBe4 #4 on eSecurity Planet Top 15 Cybersecurity Companies

We were excited to hear that eSecurity Planet worked with Gartner and Cybersecurity Ventures to compile a ranking of the Top Cybersecurity Companies. They listed the Top 15 and KnowBe4 ...
Continue Reading

Phishing Nightmare? New "Deadline" Email From Equifax Settlement Administrator Notifies of Changes in Filing.

You’d better check your email queue for a new email from The Equifax Breach Settlement Administrator that was sent out several days ago to those who previously filed a claim. It will ...
Continue Reading

[On-Demand Webinar] Crafty Ways the Bad Guys Use Pretexting to Own Your Network

Today’s phishing attacks have evolved way beyond spray-and-pray emails that mass target victims. Instead, the bad guys have carefully researched your organization in order to set the ...
Continue Reading

Ethical Hackers as Educators

Ethical hackers are especially well-positioned to use their knowledge of attack techniques to educate people, according to Zoë Rose, a white-hat hacker based in the UK. On the CyberWire’s ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews