Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Putin Uses Psychiatrists For Social Engineering Attacks Against Individual Targets

Newsweek cross-posted an article that first appeared on The Daily Signal, and this is extremely relevant to what we are battling here today. Kiev, Ukraine—Since 2014, Russia has used ...
Continue Reading

KnowBe4 Recognized as a Leader in the Gartner Magic Quadrant

KnowBe4 has been positioned by Gartner, Inc. in the Leaders quadrant of the Magic Quadrant for Security Awareness Computer-Based Training for the second year in a row. Gartner's ...
Continue Reading

Worldwide Bad Rabbit Ransomware Outbreak Starts With Social Engineering

Organizations in Russia, Ukraine and a few hours later also the U.S. are under siege from Bad Rabbit , a new strain of ransomware which is basically a new, improved NotPetya version 2, ...
Continue Reading

Hackers Target Nation’s Schools

Tawnell D. Hobbs at the Wall Street Journal wrote: "Hackers looking to exploit sensitive information for profit are increasingly targeting the nation’s schools, where they are finding a ...
Continue Reading

Fancy Bear Goes Phishing For DC Cybersecurity Conference Attendees

Want to target a large swath of cybersecurity professionals in one go? Just crash their "cyber" party with a decoy document. So goes the modus operandi for an advanced persistent threat ...
Continue Reading

Goldman Sachs Invests 30 Million Dollars in KnowBe4

I have some exciting news for you today. Goldman Sachs believes in our mission, has invested in us, and is now on our board of directors. Another announcement with some more excellent ...
Continue Reading

U.S. warns about phishing attacks on nuclear, energy, aviation, water, and manufacturing industries

(Reuters) — The U.S government issued a rare public warning that sophisticated hackers are targeting energy and industrial firms, the latest sign that cyber attacks present an increasing ...
Continue Reading

Seagate Gets Initial OK For 5.7 Million Employee W-2-Phishing Settlement

A California federal judge gave his initial blessing Thursday to Seagate Technology LLC’s settlement that includes services valued at 5.75 million dollars and resolves class-action ...
Continue Reading

Advertising Intelligence—ADINT—Can Be Misused For Social Engineering

You are probably aware of the terms SIGINT (signals intelligence, like radio interception) and HUMINT (human intelligence, like espionage). There is a new term coined by the University of ...
Continue Reading

The First Recorded Statement Of Security Awareness Training?

I was just sent a link to video of Kevin Mitnick's testimony before a congressional committee of March 2, 2000 where he explained how he was able to hack into dozens of large ...
Continue Reading

Lower Cybercrime Costs! Attack Humans...

This could be a headline on a dark web site for cyber criminals. And it would be correct. Our colleagues at Wombat did some digging and came up with relevant research you should know ...
Continue Reading

Mobile Phishing Attacks Jump, Financial Industry Is Biggest Target

Jason Koestenblatt at Enterprise Mobility Exchange wrote: "Thanks to the amount of time employees are spending online to get work done, hackers have a veritable treasure trove of ...
Continue Reading

CyberheistNews Vol 7 #41

Continue Reading

Ransomware Spear Phishing Attack Used To Hide 60M Cyberheist

In a classic "divert their attention", the Taiwan Far East Bank was first attacked with spear phishing emails that pointed to malicious executables, which were clicked on by employees. ...
Continue Reading

KnowBe4 Customer: "I’m not happy at all. More like ecstatic."

In our series "What customers say about us" here is another email with feedback that I got when I asked if they were a happy camper. We will let the customer speak for himself: "I’m ...
Continue Reading

New Worry For CEOs: A Career-Ending Cybersecurity Breach

Corporate chiefs get more involved in defense against hackers, fearing a cybersecurity breach could cost their jobs, hurt their businesses. Vanessa Fuhnmans wrote an excellent heads-up ...
Continue Reading

Watch Out For This New Amazon Phishing/Phone Password Scam

So here’s a new one: a spoofed Amazon email claiming that Amazon has detected an unauthorized attempt to reset the password on the recipient’s account. A six digit code is provided along ...
Continue Reading

A New Spear Phishing Attack Uses Compromised Government Servers And DNS

Cisco's Talos malware researchers posted about a highly sophisticated, targeted spear phishing attack using malicious Word attachments, spoofed to look like it was from the U.S. ...
Continue Reading

Carbon Black Says Ransomware Kit Sales On The Dark Web Shoot UP 2,502%

A new report from Carbon Black’s Threat Analysis Unit (TAU) used their data and modeling techniques to come up with an estimate of ransomware sales transactions activity on the Dark Web. ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews