Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

File-less Malware Attacks Hit Milestone in 2017 And Ransomware Grows to $5 Billion Industry

New data shows that file-less malware attacks are now the majority of all attacks this year, and ransomware grows to a whopping 5 billion industry. Fileless malware attacks using ...
Continue Reading

The Massive Cyber Attacks Slated For 2018 Will Make You WannaCry

If you think 2017 was bad, hold on for dear life because 2018 is going to be the worst yet when it comes to cyber attacks, with new and better coordinated attacks looming large. Why? ...
Continue Reading

Cancer Center Discloses $2.3 Million Data Breach Settlement In Their Bankruptcy Filing

As reported in BNA Privacy Law Watch, on December 6, 2017, health care provider 21st Century Oncology agreed to pay $2.3 million to settle charges by the Department of Health and Human ...
Continue Reading

Roll back time when users click on a bad link with our new free tool, Second Chance!

Wouldn't it be great if your users had a way to "roll back time" when they forgot to think before they click on a bad link? Now they can! We are excited to announce Second Chance, a ...
Continue Reading

86% of security pros worry about a phishing future where criminals are using Artificial Intelligence

A new survey by Webroot shows that 86% of security professionals worry that AI and ML (machine learning) technology could be used against them. And they are right, because it will and ...
Continue Reading

Complex regulations and sophisticated cyber attacks inflate non-compliance costs

The cost of non-compliance has significantly increased over the past few years, and the issue could grow more serious. 90 percent of organizations believe that compliance with the GDPR ...
Continue Reading

W-2 Phishing Scams Likely to Resurface After the New Year

W-2 phishing season is just a few weeks away. For the past several tax seasons, cyber criminals have used sophisticated social engineering tactics to dupe hundreds of payroll and HR ...
Continue Reading

How One of Australia's Richest Men Lost $1 Million in Email Scam

The multi-millionaire founder of Twynam Agricultural Group Pty Ltd. lost $1 million in an email fraud, a London court heard Thursday. The British man who facilitated the theft says he’s a ...
Continue Reading

Trojan Phishing Attacks By North Korean Hackers Are Attempting To Steal Bitcoin

Researchers at Secureworks report Trojan malware is being distributed in phishing emails using the lure of a fake job ad. A prolific cyber criminal gang with links to North Korea is ...
Continue Reading

Email Security Gap Analysis Shows 10.5% Miss Rate

Aggregated results show 10.5% average rates at which enterprise email security systems miss spam, phishing and malware attachments. Here is a summary of findings of email security systems ...
Continue Reading

[On-Demand Webinar] Counter the Careless Click: Tools to help you train your users

Cybercriminals are successfully and consistently exploiting human nature to accomplish their goals. Employee training is tied as the third-most-effective method (higher than antivirus) of ...
Continue Reading

Cyberheists Linked to Russian Hackers Targets Banks From Moscow to Utah

A previously unknown ring of Russian-speaking hackers has stolen as much as $10 million from U.S. and Russian banks in the last 18 months, according to a Moscow-based cyber-security firm ...
Continue Reading

KnowBe4 Content Update & New Features Summary

A lot of new modules have been added to the KnowBe4 ModStore: 2018 GDPR is available as a new course in 8 languages right now, and 15 more languages will be available by January 1st. 2018 ...
Continue Reading

Basic training in avoiding phishing is no longer sufficient

Databreaches.net has forums and one of their posts really got our attention. It was an official notification from the legal department of Boise Cascade Company in Utah about a phishing ...
Continue Reading

This ransomware asks victims to name their own price to get their files back

Attackers behind this form of file-encrypting malware - which has similarities with Locky - think that if the victim can set their own price, they're more likely to pay. A form of ...
Continue Reading

48 Servers Of North Carolina County Held Hostage by LockCrypt Ransomware

A hacker’s 1 p.m. deadline to pay $23,000 passed Wednesday, and Mecklenburg County has not decided whether to pay the ransom for a cyber-attack that “paralyzed” the county. County manager ...
Continue Reading

Cyber Warfare in 140 Characters: Social Media Weaponized

David Patriakos's new book about cyber warfare is a fascinating read. From the back cover: "Modern warfare is a war of narratives, where bullets are fired both physically and virtually. ...
Continue Reading

KnowBe4 Prevents Customer From Becoming Social Engineering Victim Of Duke Energy Vendor’s Hack

A customer just sent us this: "Stu, the company who processes payments for Duke Energy’s walk in payments was hacked and as a result about 375,000 bank accounts may have been stolen. "We ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews