Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

A Single Tweet Saw One Woman's Bank Account Entirely Wiped Out

Dean Dunham at The Mirror in the UK reported: "Social media is often disgruntled customers first port of call when they want to make a complaint about goods or services these days, but ...
Continue Reading

Phishing Sites Increase by 30% in the First Quarter of 2019 Putting SaaS and Webmail at Risk

Cybercriminals seem to be increasing their efforts in quantity, frequency, and obfuscation, according to the latest data from the international cybercrime coalition, the Anti-Phishing ...
Continue Reading

Beazley Insurance Breach Insights: "Ransomware Attacks Skyrocket"

Ransomware attacks skyrocketed in the first quarter of 2019, according to the Beazley Breach Response (BBR) Services team, which reports a 105% increase in the number of ransomware attack ...
Continue Reading

“Monster” Data Breaches Result in an Average Cost of $347 Million

Data breaches in the hundreds of millions of records have made the news over the last two years. The latest report from Bitglass covers the results and repercussions of the breaches.
Continue Reading

Over 10 Million People Hit In Single Australian Data Breach

The Office of the Australian Information Commissioner's (OAIC) quarterly data breach report also revealed private health was again the country's most affected sector.
Continue Reading

UK Says It Warned 16 Nato Allies Of Russian Hacking Activities

The UK has shared information on Russian hacking attacks with 16 NATO allies over the last 18 months, a British government official said today. "I can disclose that in the last 18 months, ...
Continue Reading

72 Percent Of Cyber Security Professionals Have Considered Quitting Over Lack Of Resources

Ian Barker at Betanews commented on something astounding.
Continue Reading

[Heads-up] Scary Phishing Attack Uses Legal Threats From Law Firm

Brian Krebs just posted the following alert: "Some of the most convincing email phishing and malware attacks come disguised as nastygrams from a law firm. Such scams typically notify the ...
Continue Reading

Employees Don’t Take USB Security Seriously, Putting Organizations at Risk

USB devices continue to be a necessity for employees, an entry point for attackers, and an insecure medium to connect the two, spelling trouble for organizations.
Continue Reading

U.S. Department of Homeland Security Issues List of Office 365 Security Vulnerabilities and Best Practices

The latest Analysis Report covers both areas of concern around Office 365 configurations that impact security, and offers up some simple recommendations to shore up vulnerabilities.
Continue Reading

Q1 2019 Top-Clicked Phishing Email Subjects from KnowBe4 [INFOGRAPHIC]

Every quarter, KnowBe4 reports on the top-clicked phishing emails by subject lines in three categories: Social, General, and 'In the Wild'. The latter category results come from the ...
Continue Reading

Financial Firms Spend $2,300 Per Employee Attempting to Address Cyber Security Concerns

A new joint study by Deloitte and the Financial Services Information Sharing and Analysis Center highlights the budget impacts establishing and maintaining cybersecurity.
Continue Reading

Volunteer Cyber Crime Fighters Band Together in New York

Kim Nash reported in the WSJ Pro CyberSecurity newsletter—which I warmly recommend, it is an excellent daily news update—that "more than 100 applicants seek to volunteer their ...
Continue Reading

KnowBe4 Acquires CLTRe; Shines Spotlight on Security Culture Measurement

I'm happy to announce our acquisition of CLTRe, which we feel demonstrates the importance of managing the human risk. We’re excited to welcome Kai and the CLTRe team to the KnowBe4 family ...
Continue Reading

[On-Demand Webinar] Empowering Your Human Firewall: The Art & Science of Secure Behavior

You know that "security awareness" is key to a comprehensive security strategy. But just because someone is aware doesn't mean they care. So how can you design programs that work with, ...
Continue Reading

“Hack for Hire” Groups Offer Single Account Break-In Services For Just $750

Along with everything else malicious that’s available “as-a-Service”, the latest addition takes the burden of trying to initially hack an organization off of the plate of would-be ...
Continue Reading

Global GozNym Takedown Shows The Anatomy Of A Modern Cybercrime Supply Chain

By Javvad Malik, our new Security Awareness Advocate for EMEA. A multi-national collaborative law enforcement effort has arrested individuals allegedly behind Nymaim and Gozi, also known ...
Continue Reading

[PODCAST] Hacking Humans Live At KB4CON 2019

Last week, we had the pleasure of hosting the first ever live episode of the Hacking Humans podcast at KB4-CON in Orlando, where Kevin Mitnick and I teamed up with Dave Bittner and Joe ...
Continue Reading

Account Takeover Attacks Increase as Cybercriminals Fine-Tune Their Brand Impersonation, Social Engineering, and Phishing Skills

The latest Spear Phishing Report from Barracuda highlights how cybercriminals are systematically improving their game… and are becoming more successful for it. The capturing of user ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews