Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Reduce the Risk of Data Breach by Focusing on Compromised Credentials

The bad guys can’t do anything on your network without access. That’s why they focus their efforts on gathering as many sets of credentials as possible. You should focus there too.
Continue Reading

Shadow IT is Alive and Well: One-Third of Employees Deploy Their Own Software

Employees see IT as an “inconvenience” and look for ways to get around security measures, putting the organization at risk, according to SailPoint’s 2018 Market Pulse Survey.
Continue Reading

Reminder: That Padlock Doesn’t Mean It’s Secure

We’ve mentioned this before, but the misconception has surfaced again, and it’s worth mentioning again. Looking for the padlock as a sign of a secure legitimate website isn’t an accurate ...
Continue Reading

As You Read This, It's Cyber Monday. How To Avoid The Top 10 Security Threats

InfoSecBuzz asked a number of security experts for their advice on the top security threats and how to avoid them. These are specialists from Alienvault, Cylance, Cybereason, F5 Networks, ...
Continue Reading

[Heads-up] Bad Guys Are Now Taking Over Email Inboxes Without Phishing Attacks

I found a great article in SecurityWeek by Alastair Paterson, the CEO of Digital Shadows. Could not have said it better myself, and he alerted everyone about an attack vector that was ...
Continue Reading

75% of users reuse passwords across different accounts – this is up from 56% in 2014!

We’ve always known users are the weakest link in your security chain, but new report data from SailPoint shows just how bad users are behaving in 2018 – and how it affects security.
Continue Reading

KnowBe4 Wins UK Security Excellence Awards!

Computing's Security Excellence Awards celebrate the achievements of the IT industry's leading security companies, solutions, products and personalities - those are keeping every other ...
Continue Reading

Do Your Emails Make the Naughty or Nice List?

Black Friday is just as popular with hackers as it is with shoppers. So is Cyber Monday, for that matter.
Continue Reading

More Details On New Bill That Poses Jail Time and Fines for Senior Executives of Victim Organizations

We covered this in the recent CyberheistNews, but now there is more detail.
Continue Reading

CEOs are Prime Targets for Social Engineering Attacks

CEOs can be the weakest link in an organization’s security posture, according to Mimecast’s Matthew Gardiner. Carole Theriault talked to Gardiner last week on The CyberWire’s Hacking ...
Continue Reading

Dutch audit finds Microsoft Office leaks confidential data

The diagnostics Microsoft Office collects from users should be a source of concern for any government CISO, according to a DPIA audit ComputerWeekly reported: "A report commissioned by ...
Continue Reading

MSPs: Ransomware Downtime Costs SMBs 10x the Ransom

With 79% of MSPs indicating their clients have experienced ransomware attacks, every organization needs to take the financial impact of ransomware seriously.
Continue Reading

"Quebec is an embarrassment": Province urged to do more on cybersecurity

MONTREAL — On Sept. 10, municipal employees in a region between Montreal and Quebec City arrived at work to discover a threatening message on their computers notifying them they were ...
Continue Reading

IRS Issues Urgent Warning On Tax Transcript Scam

The Internal Revenue Service (IRS) is warning about a new “tax transcript” scam. In the scam, taxpayers are tricked into opening emails that look like they are from the IRS—but they ...
Continue Reading

Expert Insights Recognizes KnowBe4 as a ‘2018 Market Leader’ for Security Awareness Training

KnowBe4 has been ranked the top vendor in the category of Security Awareness Training by Expert Insights
Continue Reading

Phishing Accounts for 50% of All Fraud Attacks [InfoGraphic]

According to the latest research from RSA, attacks intent on committing financial fraud most frequently begin with tried and true phishing.
Continue Reading

Now here is something new: Russian Banks Targeted by Sophisticated Phishing Emails

This does not happen too often, and these attackers must be outside of Russia. If hackers inside Russia attack their own country, the FSB is on their doorstep with a SWAT team in no time.
Continue Reading

How better training, cybersecurity upgrades made one credit union safer

America’s Christian Credit Union, Glendora, Calif., reduced its cybersecurity threat plane by 90 percent by upgrading both its hardware and its resistance to phishing – and earned a ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews