Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

[ALERT] NotPetya Is a Cyber Weapon, Not Ransomware

Yesterday morning, after monitoring this new outbreak for 24 hours, I came to the conclusion we were dealing with cyber warfare , and not ransomware . Two separate reports coming from ...
Continue Reading

We Are Dealing With Cyber Warfare Here

OK, after 24 hours of monitoring this new Petya ransomworm outbreak, I am calling it. This has been brewing under the surface for a few years, but now we are dealing with open cyber ...
Continue Reading

APWG Cybercrime Report: Phishers’ Command of Domain Name System Reaches All-Time High in 2016

Criminalization of DNS for Phishing Advanced Most Every Year Since 2012 CAMBRIDGE, Mass.-- The APWG's latest study has found that cybercriminals have been shifting their tactics markedly, ...
Continue Reading

[ALERT] Looks Like A New Worldwide Ransomware Outbreak

Motherboard reported: "A quickly-spreading, world-wide ransomware outbreak has reportedly hit targets in Spain, France, Ukraine, Russia, and other countries. This strain is deadlier than ...
Continue Reading

Scam Of The Week: Real Estate Wire Transfer Phishing Fraud

According to the NY Daily News, State Supreme Court Justice Lori Sattler was in the process of selling her apartment and buying another, when she received an email that seemed like it was ...
Continue Reading

Security Awareness Training Can Lower Your Cyberinsurance Premium

New-school security awareness training might even pay for itself from Day 1! How? Call your cybersecurity insurance carrier or agent and specifically ask if you get a discount on the ...
Continue Reading

Windows 10 Stops Ransomware Cold? Not So Fast!

Recently, Microsoft claimed that no known ransomware could penetrate the new Win10 Creators Update.
Continue Reading

Global Cyber Alliance: "Few U.S. Hospitals Secure Their Email Against Phishing"

Shaun Waterman at the quite useful CyberScoop site wrote: "Fewer than one-third of the largest 98 public and private hospitals in the United States secure their email against phishing and ...
Continue Reading

FBI: "Extortion And CEO Fraud Are The Top Online Fraud Complaints"

And victims aren't reporting ransomware attacks... Online extortion, tech support scams and phishing attacks that spoof the boss (CEO Fraud) were among the most damaging and expensive ...
Continue Reading

July 4th and Current Events Phishing Templates

For KnowBe4 customers, we have some new templates available in Current Events and Holiday: Three July 4th-related templates in the Holiday category Five new Current Events templates ...
Continue Reading

KnowBe4 Moves From #38 to #6 On Cybersecurity 500

The Cybersecurity 500 / Q2 2017 list of the world's hottest security companies was officially released June 21, 2017. In their press release they said: "Worldwide spending on ...
Continue Reading

Web Hosting Provider Pays $1 Million to Ransomware Attackers

South Korean web hosting company Nayana agreed to pay $1 million in Bitcoin after a ransomware attack hit 153 Linux servers. The attack took place June 10 and resulted in over 3,400 ...
Continue Reading

[BREAKING] Scam Of The Week: Your Politics Have Been Breached

Gizmodo reported on a blog post by IT Security company UpGuard which revealed the largest US voter data leak to date. Political data gathered on more than 198 million US citizens was ...
Continue Reading

KnowBe4 May 2017 New Training Modules Released

Here are the May releases, with an indication on the subscription levels which give access to these modules: For May we released the following: Common Threats (standalone module) - Level ...
Continue Reading

[ALERT] New Fileless, Code-injecting Ransomware Bypasses Antivirus

Security researchers have discovered a new fileless ransomware in the wild, which injects malicious code into a legitimate system process (svchost.exe) on a targeted system and then ...
Continue Reading

See Me On Video At The NYSE Cyber Investing Summit Pitching KnowBe4

The CyberWire wrote: Pitches: "Innovation from Young Companies The Pitch Panel was the Cyber Investing Summit's fast round of innovation pitches, moderated by Allegis's Bob Ackerman and ...
Continue Reading

FIN10: Anatomy of a Ransomware Phishing Extortion Operation

Cyber security firm FireEye reported that that a number of Canadian mines and casinos were hacked by a group named FIN10 – FireEye labels FIN10 to be “one of the most disruptive threat ...
Continue Reading

CIA Director Brennan: "Russia's Cyber Capability Increasingly Sophisticated And Not Bound By Law"

I was at the Gartner Security & Risk Management Summit at National Harbor, in DC this week. One of the keynotes was by CIA Director George Brennan, who was sworn in as director of the ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews