Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

SAM.gov hackers used spear phishing, email spoofing and credential theft

Cybercrooks who stole federal payments by hacking contractor accounts on a GSA website used sophisticated spear phishing techniques to steal login credentials and then diverted payments ...
Continue Reading

Scam Of The Week: 150 Million Under Armour MyFitnessPal Users Are Now Phishing Targets

BREAKING NEWS: Under Armour's health- and fitness-tracking app, MyFitnessPal, has been hit by a data breach. Roughly 150 million MyFitnessPal users are affected, Under Armour says. Under ...
Continue Reading

So, How Did Russia Succeed In Hacking Our Energy Systems?

The nightmare scenario is the grid going down and we're all pushed back a 100 years (electricity started around 1880 but only became common in the 1930s). James Conca wrote in Forbes: ...
Continue Reading

The Malicious Use of Artificial Intelligence in Cyber Security

Kevin Townsend wrote a great article about AI in SecurityWeek, looking at the current state of affairs and the expected near future, based on a recent important scientific paper titled: ...
Continue Reading

Report: Ransomware is the New Normal. 52% Have Lost Faith in Antivirus and 44% Agree AV is Dead

A new report on malware says that the majority of companies globally have been victims of ransomware in the last 12 months. 52% Have Lost Faith in Antivirus and 44% Agree AV is Dead A new ...
Continue Reading

Leader of Carbanak Cybercrime Group Who Stole Over 1Billion Arrested in Spain [InfoGraphic]

March 26, 2018 -- Some good news for a change! Police in Spain have arrested an individual identified as Denis K. who is believed to be the mastermind behind the Carbanak (also known as ...
Continue Reading

Social Engineering Fraud and Cyber Insurance – Are You Covered?

We’ve covered this before but here’s another article on exclusionary clauses. The loophole: "No unauthorized use of the victims Computer System". Excellent reminder by Drinker Biddle ...
Continue Reading

US Disrupts 'Massive And Brazen' Iranian Phishing Scheme, DOJ Says

Friday morning the US Department of Justice announced that it had indicted Iran's Mabna Institute and nine of the individuals who work for it. The charges include conspiracy to commit ...
Continue Reading

Legacy Cybersecurity Defenses Won’t Keep Pace with New Ransomware and Cryptojacking Threats

Findings from the 2018 Webroot Threat Report Reveal the Increasing Sophistication of Phishing, Malware, and Cryptojacking. Webroot, revealed results from their 2018 annual threat report, ...
Continue Reading

The AVCrypt Ransomware Tries To Uninstall Your AV Software

Larry Abrams at Bleepingcomputer reported this strain first: "A new ransomware named AVCrypt has been discovered that tries to uninstall existing security software before it encrypts a ...
Continue Reading

City of Atlanta IT Systems Shut Down by SamSam Ransomware. Demand Is $51K To Decrypt

It was all over the major press yesterday. The Mayor of Atlanta, Georgia has confirmed that several local government systems are currently down due to a ransomware infection and said the ...
Continue Reading

Why Social Engineering Works And How To Arm Yourself Against "Human Hacking"

Let me share some observations after 7 years of building KnowBe4 from scratch into a 100 million dollar company. We train your employees to recognize social engineering attacks and not ...
Continue Reading

MY TAKE: Why ‘cryptojacking’ is spreading faster than ransomware — and may be more insidious

Has there ever been anything more tailor made for hackers than crypto currency? Is anyone surprised that hackers are innovating ways to crack into digital wallets and currency exchanges? ...
Continue Reading

UK National Lottery hacked: Watch Out For Phishing Attacks On Millions Of Customers

The UK National Lottery has warned more than 10 million players with online accounts to change their passwords due to a security breach, The Telegraph reported.
Continue Reading

How To: Social Engineering A Whole Country During An Election

Check out this fascinating 13 min interview with Christopher Wylie, a former research director at Cambridge Analytica, who had a copy of a dataset with 50 million Facebook profiles. He ...
Continue Reading

Five things to know about Russian cyber attacks on the energy grid

Morgan Chalfant at The Hill wrote: "Trump administration officials on Thursday accused the Russian government of staging a multi-year cyberattack campaign against the energy grid and ...
Continue Reading

Zenis Ransomware Encrypts Your Data & Deletes Your Backups

Larry Abrams at Bleepingcomputer warned against a new strain called Zenis Ransomware, which was discovered this week by the MalwareHunterTeam "While it is currently not quite clear yet ...
Continue Reading

Putin Wins Election: Six More Years Of Criminal Cyber Attacks On The West

Russian President Vladimir Putin won re-election by a wide margin Sunday, strengthening his hand amid an escalating confrontation with the West. Having been 18 years in power, Putin has ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews