Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Watch Out – Cryptojacking rises 1,180 percent!

As if ransomware wasn’t enough of a problem, the addition coin mining malware’s and a 1,189% mind-bending increase is enough to make you sit up and take notice. Cryptomining is a ...
Continue Reading

Nothing is Sacred: Scammers Phish Church Parishioners

Always looking for new ways to separate you from your money, cybercriminals in Canada are using names of priests and archbishops to solicit money.
Continue Reading

They’re Trying to Run Malicious Code (And You’re Letting Them!)

According to a new threat report from security vendor eSentire, 91% of endpoint incidents involve files that won’t be defeated/blocked/removed by anti-malware solutions.
Continue Reading

KnowBe4’s Year-Over-Year Sales DOUBLE Q2 2018

We doubled our year-over-year sales for Q2, bringing us to well over 19,000 customers worldwide. This makes 21 consecutive up quarters.
Continue Reading

Homographic Domains Make Phishing Scams Easier

Is that email from citibank.com or citíbank.com? If you think that last sentence was a mistake, take another look, as you may be the next phishing victim. Cybercriminals are using ...
Continue Reading

Kiss Your Privacy Goodbye. Exactis Leaks A Database With 340 Million Personal Data Records

Whoa Nellie. Here is the ultimate spear phishing data trove. WIRED reported: "Earlier this month, security researcher Vinny Troia discovered that Exactis, a Palm Coast, Florida-based data ...
Continue Reading

When Ransomware Attacks Triple, You Need to Pay Attention!

Security vendor SonicWall just released their latest report on cyberattack volumes… and the numbers are staggering.
Continue Reading

Do Employees Open Your Network to the Bad Guys by Using Hacked Passwords?

A whopping 25% of employees are using the same password for all logins. What if that password is available on the dark web? A massive amount of passwords are compromised due to data ...
Continue Reading

Don't Underestimate The Economic Side of Russia's Cyber Warfare

I just ran into an excellent article by Boris Zilberman, deputy director of congressional relations and a Russia analyst at the Foundation for Defense of Democracies. It was posted at The ...
Continue Reading

Learn From Your Mistakes: Organizations Simply Aren’t Ready

Even with the increase in threats and actual experienced attacks, executive and IT teams alike feel like they’re simply not ready for the next attack.
Continue Reading

[Heads-up] Employees Sue Company For W-2 Phishing Scam. Federal Court Decides Triple Damages

Imagine my surprise when I saw a picture of myself in the blog of large North Carolina Law firm Poyner Spruill. It was all good though. They had picked up an example of a real W-2 ...
Continue Reading

Exclusive Interview with Kevin Mitnick Ask Me Anything [VIDEO]

KnowBe4's Chief Hacking Officer Kevin Mitnick sat down with our team for an exclusive interview where we could ask him anything… We thought you’d like to hear his answers, too. Ever ...
Continue Reading

The FBI recently published its 2017 Cybercrime Report highlighting trends and statistics

The FBI recently published its 2017 Internet Crime Report highlighting trends and statistics compiled by the FBI’s Internet Crime Complaint Center (“IC3”) during 2017. The report compiles ...
Continue Reading

New Sleeper Strain of SamSam Ransomware Bypasses AV And Stays Hidden On Your Network

The ransomware strain that crippled several cities and school districts in the U.S. earlier this year is back with more tricks up its sleeve to avoid detection. If you haven’t heard of ...
Continue Reading

Penalty! Another FIFA World Cup Phishing Scam Found

As we round out the second week of the FIFA World Cup, new phishing scams continue to permeate, seeking to take advantage of fan’s interest and excitement.
Continue Reading

It Saves Your Battery, But Its Social Engineering Steals Your Data

Google Play is a walled garden, but the serpents do find their way in. RiskIQ has found one snake with a tempting offer on its forked tongue: an app that "saves the battery" in your ...
Continue Reading

[ALERT] There Is A New Hybrid Cyber Attack On Banks And Credit Unions In The Wild

A customer just called me. He found a new strain of attack that's the next scary thing your organization may become the target of.
Continue Reading

Banking Still a Major Target of Cybercrime

1950’s bank robber Willie Sutton was once—erroneously—quoted as saying “I rob banks because that’s where the money is.” Sutton never said it, a reporter made up the quote. However, cyber ...
Continue Reading

Why Preventing Social Engineering Isn’t Enough

The heightened state of cyber attacks in recent years has put a lot of focus on preventing those attacks from being successful. But, organizations can’t simply rely on defensive ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews