Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Watch Out For World Cup Soccer Phishing Scams

The 2018 FIFA World Cup has drawn a worldwide audience. It's also attracted phishing scams using event tickets as bait. Tickets for the matches can only be purchased legitimately through ...
Continue Reading

[Heads-up] Ransomware Insurance Expert: "Bad Guys Do More Damage Than They Used To"

The ransomware plague is not letting up and rapidly getting more technically sophisticated. New strains are popping up every month, using innovative methods to spread. Worse, the ransom ...
Continue Reading

Punycode Makes SMiShing Attacks More Deceiving

Phishing attacks carried out via text messages that use the “Punycode” technique to make nefarious URLs look legitimate are becoming more popular, cloud security firm Zscaler says.
Continue Reading

Satan Ransomware Spawns New And Innovative Methods to Spread

It’s a worrying trend that ransomware isn’t going away. Worse, it's constantly adapting to include brand new exploits/techniques and spreads in more innovative and successful ways. Today, ...
Continue Reading

The Con of Social Engineering: Law Firms are Easy Prey

Excellent article at www.law.com about social engineering! A discussion of the threat that social engineering (aka the "human side of hacking") poses to law firms, and some tips and ...
Continue Reading

Hacking Humans—a new CyberWire podcast covering social engineering launched this week

Each week the CyberWire’s Hacking Humans podcast looks behind the social engineering scams, phishing schemes, and criminal exploits that make headlines and take a heavy toll on ...
Continue Reading

KnowBe4 Fresh Content Update & New Features May 2018

May was an exciting month with a variety of updates. Check out what's new! EXPLOQII ACQUISITION AND NEW VIDEO CONTENT We are excited to add a new content publisher to the KnowBe4 family. ...
Continue Reading

Here is a Spam Message from 1864, as Old as the Victorian Internet

If you thought spam was just a twenty-first-century thing, think again. As usual, most things that seem new have pretty deep roots. Most of us can see spam's ancestry in junk mail, but it ...
Continue Reading

Cobalt Cybercrime Group Resumes Phishing Attacks

The leader of the Cobalt hacking group was arrested in Spain two months ago, but the gang resurfaced at the end of May. Their spear phishing emails started hitting victims' in-boxes again ...
Continue Reading

Why is Windows 10 Rapidly Gaining Ground in The Enterprise While Win7 Gets Ditched?

Duo Security is a provider of secure login/access tools, and they just released their yearly Trusted Access Report with some very interesting data. Here Is The Summary Stats gathered from ...
Continue Reading

It's May 25th, 2018: GDPR DAY! Here Are Phishing Templates You Can Use...

Because it is "GDPR day" our templates team has been hard at work developing GDPR/Privacy policy templates. We have 6 new templates available in the system, located in Current Events. We ...
Continue Reading

1 in 10 healthcare organizations paid off ransomware within the last year

More than one in three healthcare organizations have suffered a cyberattack within the last year, while almost one in 10 have paid a ransom or extortion fee, according to Imperva.
Continue Reading

Which Users Will Cause The Most Damage To Your Network And Are An Active Liability?

The statistic that four percent of employees will click on almost anything, with “Free Coffee” and “Package Delivery” taking some of the top spots among phishbait subject lines, may not ...
Continue Reading

Surprise! What's The Country Where All The CEO Fraud Gangs Are?

A new study by Agari concludes that, despite all the attention nation-state espionage services have been getting for their phishing attacks, the big threat still comes from criminal gangs.
Continue Reading

Why are Antivirus Companies Promoting Security Awareness Training?

Today, the most surprising companies have jumped on the security awareness training bandwagon. Antivirus companies like Sophos, Kaspersky, Webroot and ESET are loudly promoting the fact ...
Continue Reading

A Banking Trojan Goes Phishing

Roaming Mantis has drawn notoriety as a banking Trojan. Its criminal controllers, however, have recently given it some new functionality: phishing and cryptomining. The criminals have ...
Continue Reading

Lawyer: GDPR Will Affect Ransomware Reporting In U.S.

The European Union's General Data Protection Regulation will affect how U.S. companies deal with the rising threat of ransomware attacks, according to a leading privacy lawyer, by ...
Continue Reading

“Good Enough” Free AV Software Argues For Security Awareness Training

By Guest Blogger Win10 Guru Ed Tittel. A surprising number of security experts agree that most users shouldn’t pay for a traditional antimalware suite. Windows 10's built-in protection, ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews