Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Tripwire Black Hat Survey: "68% of Pros Felt Cyber Security Lacking After WannaCry & Petya Attacks"

Over two-thirds of Infosec Pros who were asked at Black Hat if they felt their organizations had made the necessary cyber security improvements since the WannaCry and Petya attacks ...
Continue Reading

New Report: Ransomware Attack Downtime, Not Ransom Demand, is the Business Killer

I have been saying this here for the last few years, and I am encouraged to see it now confirmed by a new survey from our friends at Malwarebytes. They released their “Second Annual State ...
Continue Reading

Cyber-Attacks Soar by a Quarter as Phishing Dominates

Cyber-attacks were up by a quarter in Q2 2017, with a surprising twist: global manufacturing is now the top target. The report from NTT Security also shows that phishing is the most ...
Continue Reading

Locky Ransomware Returns with Phishing Campaign Pushing The Diablo6 Variant

Our friend Larry Abrams at Bleepingcomputer wrote August 9th: "Through a large malspam campaign, Locky is back and currently being heavily distributed worldwide. While Locky was at one ...
Continue Reading

HealthCare Industry Needs Prescription For Next Wave of Ransomware Threats

According to a recent article in HealthCare IT News, "Ransomware 2.0: It's Coming, and Healthcare Needs to get Prepared", the next wave of ransomware may be much harder to spot, -- and ...
Continue Reading

We Love The PhishMe Free Idea!

Yesterday, PhishMe's CEO Rohyt Belani came out with a great new initiative. They have created a "lite" version of their platform — they call it simplified — and they are giving it away ...
Continue Reading

Top White House officials fall for prankster social engineering tricks

A UK-based email prankster used social engineering tactics to fool several top White House officials into responding to his messages, including the Trump administration’s cybersecurity ...
Continue Reading

Key Ransomware Money Laundering Operation Taken Down and Owner Arrested in Greece

More than 4 Billion Dollars May Have Been Laundered If you’ve been the victim of a ransomware attack you know cybercrooks almost always demand payment in Bitcoin. Now we know that the US ...
Continue Reading

Lessons from Social Engineering Disasters to Improve Security

Michele Fincher from the excellent team at www.social-engineer.com wrote: "In my fantasy life, I’m Ruby Rose from John Wick: Chapter 2, Gina Carano from Haywire, with possibly some ...
Continue Reading

This password bombshell will make you scratch your head...

OK, this is a headscratcher. This is why we were surprised. I found it in a Wall Street Journal article today (paywall). Bill Burr, the author of “NIST Special Publication 800-63. ...
Continue Reading

How Modern Email Phishing Attacks Have Organizations On The Hook

Israeli anti-phishing vendor IronScales came out with an interesting new report about phishing trends. They looked at more than 8,500 attacks that bypassed spam filters, from more than a ...
Continue Reading

How Not To Fall For Phishing As An IT Pro

OK, here is a new spear phishing scheme that attacks your development team. Cyber criminals with IPs resolving to Russia hijacked an extension for Google Chrome and abused their illegal ...
Continue Reading

Cerber Ransomware Can Now Steal Bitcoin Wallet Data And Browser Passwords

The Russian 800-pound gorilla Dridex Banking Trojan gang who are also behind the Cerber ransomware have just upped their game. Cerber is part of the small set of professional ransomware ...
Continue Reading

Hackers are targeting hotel Wi-Fi with particularly evil malware and spear phishing

The veteran DarkHotel hacking group is back with a few new tricks up their sleeve. These sophisticated hackers first began targeting high level executives in 2011 with a signature brand ...
Continue Reading

Data Breaches Are Up 29 Percent Over Last Year

Data breaches are running 29 percent above last year, according to a report released by the Identity Theft Resource Center and CyberScout. Hacking was the leading cause of data breaches ...
Continue Reading

CEO Fraud Attacks Were Far More Lucrative than Ransomware over the Past 3 Years

Cisco's midyear report released this week showed that CEO Fraud netted cybercrime five times more money than ransomware over the last three years. The surprising highlight of Cisco's ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews