Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Dark Overlord hackers reveal plans to leak 'Hollywood database stolen from top studio'

Criminal hacking group The Dark Overlord is threatening to leak the internal client data of top Hollywood production studio Line 204, IBTimes UK has learned. The seemingly international ...
Continue Reading

How to sell cybersecurity to your executive team

Scott Schlimmer wrote a great post at CSO about the constant battle between profitable business investments and “unprofitable” security investments to protect the current bottom-line.
Continue Reading

Security Awareness Training Is a Team Effort

A security awareness program is a critical part of any security strategy. It is not enough to simply hold everyone in the organization accountable. Chief information security officers ...
Continue Reading

Thirty Percent of CEO Email Passwords Compromised in Breaches: Study

SecurityWeek reported about an interesting F-Secure study showing thirty percent of CEOs from the world's largest organizations have had their company email address and password stolen ...
Continue Reading

Shame and confusion lead to employees paying ransoms out of pocket

Doug Olenick at SC Media reported on something quite surprising. This is the first time we've heard about this! Whether out of shame for being victimized or confusion over what to do more ...
Continue Reading

2018 Is Likely To Be A Worse Year For Ransomware Than 2017

Sophos released their 2018 malware forecast this week. Their predictions would make any IT Pro concerned, a PDF of their report is here. Read on for your executive summary. Ransomware ...
Continue Reading

On Average, How Many Passwords do Employees Manage?

According to the Last Pass Password Exposé report, an employee manages of about 200 passwords. Other industry reports often estimate the number of credentials used and put the figure ...
Continue Reading

EU to Declare Cyber-Attacks “Act of War”. USA likely to follow

"European Union member states have drafted a diplomatic document which states serious cyber-attacks by a foreign nation could be construed as an act of war. The document, said to have ...
Continue Reading

Is combosquatting a new trick hackers use to lure users into visiting malicious websites?

Georgia Tech researchers reported that hackers are using a technique identified with a newly coined term "combosquatting" to trick users into visiting malicious websites. Sorry to break ...
Continue Reading

KnowBe4 Halloween 2017 Was A Blast

Well over 350 employees dressed up and everyone was amazed at the amount of creativity that went into the costumes and the offices. Here is a group shot at the Station Square Park in ...
Continue Reading

Putin Uses Psychiatrists For Social Engineering Attacks Against Individual Targets

Newsweek cross-posted an article that first appeared on The Daily Signal, and this is extremely relevant to what we are battling here today. Kiev, Ukraine—Since 2014, Russia has used ...
Continue Reading

KnowBe4 Recognized as a Leader in the Gartner Magic Quadrant

KnowBe4 has been positioned by Gartner, Inc. in the Leaders quadrant of the Magic Quadrant for Security Awareness Computer-Based Training for the second year in a row. Gartner's ...
Continue Reading

Worldwide Bad Rabbit Ransomware Outbreak Starts With Social Engineering

Organizations in Russia, Ukraine and a few hours later also the U.S. are under siege from Bad Rabbit , a new strain of ransomware which is basically a new, improved NotPetya version 2, ...
Continue Reading

Hackers Target Nation’s Schools

Tawnell D. Hobbs at the Wall Street Journal wrote: "Hackers looking to exploit sensitive information for profit are increasingly targeting the nation’s schools, where they are finding a ...
Continue Reading

Fancy Bear Goes Phishing For DC Cybersecurity Conference Attendees

Want to target a large swath of cybersecurity professionals in one go? Just crash their "cyber" party with a decoy document. So goes the modus operandi for an advanced persistent threat ...
Continue Reading

Goldman Sachs Invests 30 Million Dollars in KnowBe4

I have some exciting news for you today. Goldman Sachs believes in our mission, has invested in us, and is now on our board of directors. Another announcement with some more excellent ...
Continue Reading

U.S. warns about phishing attacks on nuclear, energy, aviation, water, and manufacturing industries

(Reuters) — The U.S government issued a rare public warning that sophisticated hackers are targeting energy and industrial firms, the latest sign that cyber attacks present an increasing ...
Continue Reading

Seagate Gets Initial OK For 5.7 Million Employee W-2-Phishing Settlement

A California federal judge gave his initial blessing Thursday to Seagate Technology LLC’s settlement that includes services valued at 5.75 million dollars and resolves class-action ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews