Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Russian APT Comes Back To Life With New Us Spear-Phishing Campaign

A Russian state-sponsored cyber-espionage group has come back to life after a one-year period of inactivity with a relative large spear-phishing campaign that has targeted both the US ...
Continue Reading

Hacked Law Firm Can't Claw Back $580,000 From Bank That Completed Transfer

Max Mitchell at Law.com has an interesting and rather painful story. Don't let this happen to your organization.
Continue Reading

KnowBe4 Modstore Release: Captain Awareness Has Arrived And Is Here To Help

The KnowBe4 Courseware Team is excited to announce the release of the first 6 episodes in a new comic book style animated series: Captain Awareness. These first two-minute modules cover ...
Continue Reading

KnowBe4 Named a Leader in the 2018 Gartner Magic Quadrant for Security Awareness Training

KnowBe4 has been positioned by Gartner, Inc. in the Leaders quadrant of the 2018 Gartner Magic Quadrant for Security Awareness Computer-Based Training for the second year in a row. ...
Continue Reading

Watch Out Banks: New PDF Attack Avoids Antivirus Detection

The latest attack from the Cobalt Gang targeting banking institutions used specific tactics to ensure AV doesn’t detect the malicious PDF at the heart of the attack.
Continue Reading

New Study: Ransomware Attacks Surge 500% on Apple Operating Systems

This staggering growth in attacks on the MacOS signals that Macs are no longer safe.
Continue Reading

Phishing Attacks Rose by 30 Million in Q3 2018

Kaspersky Lab blocked 137 million phishing attempts in the third quarter of 2018, a 28 percent increase compared to Q2 2018. A report by the anti-virus company reveals that phishing ...
Continue Reading

Data Breaches Expose 3.6 Billion Records in 2018

With nearly 3,700 publicly disclosed data compromise events in the first 3 quarters of 2018, according to security information provider, Risk Based Security, breaches remain a risk.
Continue Reading

Fun Thanksgiving Landing Page

Just like we did for Halloween, Natalie has created a new Thanksgiving landing page, to coincide with any phishing tests set up to run around the Thanksgiving holiday.
Continue Reading

[LAST CHANCE] The Pesky Password Problem: Battle of the Red and Blue Team

What really makes a “strong” password? And why are your end-users tortured with them in the first place? How do hackers crack your passwords with ease? And what can/should you do about ...
Continue Reading

New Hybrid Ransomware Strain Evades Detection by All but One Antivirus Engine

IBM at their SecurityIntelligence blog reported something troubling.
Continue Reading

New Ransomware Gang Pays Affiliates Up To 70% Of The Loot

A growing Ransomware-as-a-Service model uses affiliate attackers with proven track records to spread the malware, offering a percentage of the ransom.
Continue Reading

[Heads-up] FIRED: Two C-level Execs Who Fall Victim To A Massive 21 Million Dollar CEO Fraud

Two top-level executives of movie chain Pathé—the Managing Director and the CFO—were fired recently, after it became clear that they fell for a massive CEO Fraud attack that could have ...
Continue Reading

More Untrustworthy Ransomware is Bad News for SMBs

The latest from UK insurer Beazley‘s Breach Response Services division shows an increase in ransomware from attackers with little ability to decrypt ransomed data.
Continue Reading

[VIDEO] Brand New KnowBe4 "Behind The Scenes"

Here's some brand new footage about KnowBe4 and how things look behind the scenes ! October 2018, Our Series A Venture Capital investor Elephant Partners asked us if it was OK to shoot ...
Continue Reading

"Inception Attackers" Mix Old Exploit, New Backdoor, and Spear Phishing

SecurityWeek reported about a Palo Alto Networks warning: "A malicious group known as the “Inception” attackers has been using a year-old Office exploit and a new backdoor in recent ...
Continue Reading

Ransomware And RDP: A Dangerous Combination

A new variant of ransomware, CommonRansom, is asking for RDP access to the victim’s computer in order to decrypt files. CommonRansom is the latest attempt to extend the ransomware attack ...
Continue Reading

Tweets from Elon Musk Still Aren't What They Seem

We've seen this before, and it's worth noting again. A tweet from a blue-checked Elon Musk is all it takes to set a Bitcoin giveaway frenzy into motion. The only problem is that it’s just ...
Continue Reading

Having a Cybersecurity Culture Matters (and Pays)

According to ISACA and the CMMI Institute, organizations continue to invest heavily in security technology while neglecting security training to create the appropriate corporate culture.
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews