Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

UK Insurer Beazley: "Phishing attacks up in second quarter."

Attacks that target business email accounts continued to increase in the second quarter of 2018, accounting for 23% of incidents reported to Beazley P.L.C. clients, the insurer said ...
Continue Reading

You Can’t Afford a Data Breach – And They’re Only Getting More Expensive

Like everything else in this world, data breaches are costing organizations more too.
Continue Reading

Breach You Once? Shame on You. Breach You Twice? Still.. Shame on You.

Heed the warning found in the story of a Virginia bank that was not breached once, but twice in an 8-month period of time!
Continue Reading

No "Shame on You" When it Comes to Cybersecurity Testing

Employee testing is a necessary part of a well-executed and flexible security awareness program. For testing to be effective, however, it needs to be well thought-out, making an ...
Continue Reading

Snail-Mail Phishing with a CD as Bait

Several state government offices in the US have received CDs by mail, infected with malware. It's a clumsy attempt, according to an alert the Multi-State Information Sharing and Analysis ...
Continue Reading

KnowBe4 Fresh Content Update & New Features July 2018

Check out the new features and training content in the KnowBe4 platform for July!
Continue Reading

Gmail's Problematic Confidential Mode

Some technical security measures may seem to promise more security than they actually deliver. It's good to understand their limitations, and to make employees aware of those same ...
Continue Reading

Why Don’t Your Employees Care About Cyber Security?

Whether you realize or not, your employees are a critical part of your layered defense against phishing attacks, malware, ransomware, and more. So why aren’t they concerned?
Continue Reading

Why Using Brands Is An Essential Element Of Phishing Simulations

It's clear to everyone that company's brand is a valuable property. Often hundreds of millions of dollars were used to create the brand over decades. It creates instant recognition and ...
Continue Reading

Emotet Phishing Epidemic: Infections Costing Orgs Up to $1 Million Per Incident

US-CERT alert sounds the alarm on Emotet, one of the most costly and destructive malware strains currently active.
Continue Reading

Yes, Google's Security Key Is Hackable

Here is an article by Roger Grimes, Data-Driven Defense Evangelist at KnowBe4 Ever since Google told the world that none of its 85,000 employees had been successfully hacked since they ...
Continue Reading

Hostage crisis? Ransomware is a threat that demands disaster planning

According to new research from Marshall University on considering the growing threat of ransomware in healthcare, organizations need to plan for the day their data become hostages.
Continue Reading

Beware of Free Gift Card Phishing Scams

People can’t resist the lure of free stuff. Cyber criminals know this and are always looking for ways to make a quick effortless buck. Put these two together and you have the perfect ...
Continue Reading

Think Your Organization Can’t Get Infested with RATs? Think Again.

The recent arrest of 21-year old software developer Colton Grubbs brings light to just how easy it is for wanna-be cybercriminals to get their hands on some pretty powerful malware tools.
Continue Reading

Cybersecurity is the IT area where most CIOs expect to boost spending

MarketWatch reports that cybersecurity companies appear to be benefiting from fat IT spending budgets fueled by tax cuts and fears of hackers. A recent Morgan Stanley survey found that ...
Continue Reading

Fake Hotel Website Scams Target Travelers and Hotels

Cybercriminals will take advantage of any situation that separates people from their money. And what better way than to purport to be a reputable hotel and take reservations?
Continue Reading

Is it Shark Week at your Organization?

Curiosity for one of the most aggressive and dangerous beasts in the ocean has us dedicating a week to learning about it. Should cyberattacks that put your organization at risk get equal ...
Continue Reading

Second Quarter 2018 Top-Clicked Phishing Email Subjects [INFOGRAPHIC]

We've been reporting on the top-clicked phishing email subjects every quarter for a while now across three different categories: general emails, those related to social media, and 'in the ...
Continue Reading

WSJ: "Russian Hackers Reach U.S. Power Utility Control Rooms"

Now here is some news that concerns me deeply. I knew it was bad, but I did not know it was this bad.
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews