Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Ransomware Recovery Expert Scams Victims and Turns Out to be Nothing More than a Bitcoin Middleman

Organizations falling victim to ransomware look for any way to ensure they get their files back. One Belasurian businessman promises decryption but is merely conning victims out of more ...
Continue Reading

WARNING: Your Head of Finance May Be 1 of 50,000 Execs Targeted in BEC Scams

According to a report from email security & protection vendor Agari, the cybercriminal group dubbed London Blue are directing their latest scams at very specific finance execs.
Continue Reading

NotPetya Causes Whopping 100 Million Insurance Coverage Lawsuit

Techlawx posted news about an astounding NotPetya-related lawsuit, (link at the end). We all remember June 27, 2017, when a major global cyber attack harmed thousands of companies. The ...
Continue Reading

Giveaway Scam Offers Free Volkswagens to Generate Ad Revenue

A scam campaign is promising free Volkswagen car giveaways to trick social media users into visiting third-party ad servers, according to researchers at Sucuri.
Continue Reading

A Call for More Consumer Privacy Laws Could Spell Penalties in Your Future

In the wake of the Marriott data breach, U.S. senators are calling for tougher privacy laws and stiff fines for organizations that do not properly protect consumer data.
Continue Reading

Ransomware is a Growing Threat to Every Industry

Ransomware is a global problem that is only getting worse, as evinced by Datto’s 2018 Global State of the Channel Ransomware Report. The report surveyed more than 2,400 IT professionals, ...
Continue Reading

Hackbusters - Where Can You Discuss All Things Social Engineering?

The KnowBe4 Hackbuster’s Forum is an online community dedicated to stopping the bad guys that use social engineering to hack your organization.
Continue Reading

Scammers are Posing as Huawei’s Captive CFO

An advance fee scam is targeting individuals in China following the arrest of Huawei’s CFO, Meng Wanzou, according to the SANS Internet Storm Center. Ms. Meng, who is also the daughter of ...
Continue Reading

Half of Management Teams Don’t Understand Business Process Compromise

A new survey by Trend Micro reveals that 43% of organizations in twelve countries have been affected by Business Process Compromise (BPC) attacks. In spite of this, 50% of management ...
Continue Reading

Employee Education and Training is a Key Component of a Culture of Security

Organizations need to focus on education and training rather than blaming employees for security gaffes, according to the speakers in a panel debate at Computing′s Enterprise Security and ...
Continue Reading

KnowBe4 Published in The Top 10 Nicest Offices in Tampa!

Just published, KnowBe4 in Full Stack Talent's Article on The Top 10 Nicest Offices In Tampa! (They came a few weeks ago to take pictures of our office space.)
Continue Reading

CyberheistNews Vol 8 #49

Continue Reading

Cybercriminals Use 1.7 Million Compromised PCs in Botnet Advertising Fraud Scam

The Russian-born, botnet-driven advertising fraud scam, 3ve, generated over $29 million in revenue using fileless malware variant Kovter, botnets, and unsuspecting users.
Continue Reading

Ransomware Remains the Largest Source of Cyber Claims and Downtime

Details shared from Canadian insurer CFC Underwriting highlight the realities of ransomware attacks, and just how negatively impactful the aftermath is on business.
Continue Reading

ModStore Release Announcement: "Using the Phish Alert Button"- 3-minute Short Version

Now live in the ModStore is a new Phish Alert video module: Using the Phish Alert Button - Basic Use This is the PAB (super short version) that we created based on requests from admins ...
Continue Reading

[ALERT] Now The Bad Guys Are Phishing For Your Retirement Money

Eric Howes, KnowBe4 Principal Lab Researcher observed: "Here is a screenshot of a phishing email that came in Friday. In it the bad guys attempt to apply the same modus operandi currently ...
Continue Reading

[Scam Of The Week] New Sextortion Attacks Take A Dark Turn And Infect People With GandCrab Ransomware

Our friends at Proofpoint reported that last week employees in the United States have been bombarded by a spam attack that pushed a double-whammy of a sextortion attempt combined with a ...
Continue Reading

The FBI Catches CEO Fraud Scammers by Giving Them a Taste of Their Own Medicine

The case of how the FBI turned the tables on cybercriminals using the very same tactics demonstrates how powerful the art of social engineering and deception can get a victim to act.
Continue Reading

True Phishing Confessions From A Compromised Company. This One Has A Twist At The End

"The email you hope you never have to send to clients/customers" OK, so here is another horror story that you hope you can prevent from happening to your own organization. This is an ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews