Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Confront Apprehensive Compliance Before Disaster Strikes

This blog is co-written by Aimee Laycock and Joanna Huisman When it comes to fostering a more secure environment it’s not a question of wanting to…it’s more like YOU HAVE TO. ...

Amazon Phishbait Chums British Waters

Action Fraud, the UK's fraud reporting center, has warned of a widespread phone scam targeting Amazon customers. The phone calls are automated and inform recipients that their Amazon ...

Temporary Social Security Number? No Such Thing

Researchers at Kaspersky have come across an interesting phishing site that’s posing as a data leak protection service set up by the US government. The site purports to be compensating ...

Emotet Trojan Intelligently Targets Organizations, Impersonates Victims to Improve Attack Success

According to new insights from Cisco Talos, this banking malware is getting nastier as it moves into the island hopping space via email attacks using social engineering.

Phishing Attacks Are the Number One Data Breach Attack Vector in the U.K.

The latest cyber attack trend data in the U.K. shows the majority of data breaches in 2019 began with a phishing attack. Security consulting firm CybSafe analyzed three years of the ...

U.K. Report: "We’re Doomed-Passwords Aren’t Strong or Secure"

A recent survey of over 2,000 U.K. broadband users shows that individuals don’t use good password hygiene or secure storage to protect themselves against future cyberattacks.

Cyber Incidents Are the Top Concern Among Executives

Businesses are finally realizing the continually present threat that hackers, scammers, and cybercrime organizations pose, according to new data from insurer Allianz.

Now That Ransomware Has Gone Nuclear, How Can You Avoid Becoming the Next Victim?

There is a reason more than half of today’s ransomware victims end up paying the ransom. Cyber-criminals have become thoughtful; taking time to maximize your organization’s potential ...

Bad Guys Built A Completely Fake News Website For A Bitcoin Phishing Scam

The Central Bank of Malta has issued a statement warning people about a bitcoin phishing scam being pushed by a spoofed news website, the Times of Malta reports. The site imitated a ...

Leaving Windows 7 in Production Puts You at High Risk of Ransomware Attack

Microsoft end-of-support for Windows 7 means systems will remain unpatched, creating an opportunity for future ransomware attacks to wreak havoc.

Business Disruption is the Prominent Result for All Cyberattacks

New data from security vendor CrowdStrike shows that the bad guys are getting better at avoiding detection and are having a substantial financial impact on operations.

Defending Against Ransomware is a Team Effort

Ransomware operators have grown very skilled in targeting exactly what will compel an organization to pay up, according to Andrew Brandt, principal researcher at Sophos. On the ...

[Heads-up] The Evil Ryuk Ransomware Strain Now Uses Wake-on-Lan To Encrypt Your *Offline* Devices

You must have heard of RYUK before. It's one of the most nasty, evil ransomware strains attributed to the North Korean state sponsored cyber criminals. They are an APT—Advanced Persistent ...

Hackers Request Aging Reports to Identify Their Next CEO Fraud Victims for Them

Rather than attempt to hack user credentials and gain access to Accounts Payable applications, hackers are now impersonating the CFO and obtaining all the detail they need to launch a ...

Nemty Ransomware Creators Plan to Post Stolen Data of Non-Payors to Blog

In a twist to the newest ransomware tactic where data is stolen and then encrypted, the folks behind Nemty are going to use a blog to publish victims data if they don’t pay.

Kiwi Drivers Phished with Bogus License Renewals

The New Zealand Transport Agency (NZTA) has warned of an ongoing email phishing campaign using fake vehicle license renewal reminders, 1 News reports. The emails appear legitimate and ...

TrickBot Hackers Have Created the Ultimate “On the Fly” Update Backdoor

The newly-created “PowerTrick” backdoor leaves malware ready to accept new commands and victim organizations perpetually in danger of the next thing the malware’s creators can think of.

You Should Be Scared of the Latest Strains of Phobos Ransomware

In an unusual twist, it’s not actually the ransomware itself that makes the newer forms of Phobos so frightening; it’s the people behind the attacks that will have you worried.

Travelex Warns Customers: Watch Out For Phishing Or Telephone Scams In Aftermath of Ransomware Attack

A little more than two weeks ago on New Year’s Eve, Foreign Currency services supplier Travelex was hit by a Sodinokibi (REvil) Ransomware attack. It has yet to recover and its web sites ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.