Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Business Email Compromise Phishing Attacks Will Exceed $9 Billion This Year

Trend Micro reported that Business Email Compromise (BEC) is projected to skyrocket as attackers use more and more sophisticated social engineering tactics to trick their targets. The ...

Why Cybercrime Ditches Bitcoin Ransomware Payments And Where They Are Going Next

The popularity of bitcoin is creating problems for ransomware criminals wanting to get paid in the skyrocketing cryptocurrency. "We'll see a progressive shift in 2018 towards criminal use ...

Three-Quarters of Businesses Saw Phishing Attacks in 2017

Tara Seals at InfoSecurity Magazine had a good summary of Wombat Security Technologies' annual State of the Phish research report. "The war against phishing is still on, with 76% of ...

KnowBe4 is proud to announce the introduction of a new feature, Reporting APIs

KnowBe4 is proud to announce the introduction of a new feature, Reporting APIs. Reporting APIs enable you to customize and obtain reports by integrating with other business systems that ...

KnowBe4 Makes Third Place In Nationwide SMB Top Five Best Place To Work in Technology

Great Place to Work is a San Francisco-based global leader on high-trust, high-performance workplace cultures. Through their certification programs, Great Place to Work recognizes ...

Healthcare Ransomware Attacks – Don’t Be Part of the Statistics

Rebecca Wynn at securitycurrent.com wrote a great article on how not to become a ransomware statistic in health care: "In 2017, six of the top ten HIPAA breaches reported to the U.S. ...

Google’s Confusing Gmail Security Alert Looks Exactly Like a Phishing Attempt

Note: I got this too and had a similar reaction last week. Security researchers say the legitimate email is training people to have bad email hygiene. Richard De Vere, a security ...

Hospital Pays $55K Ransomware Demand DESPITE Having Backups

An Indiana hospital paid a ransom of $55,000 to get rid of ransomware that had infected its systems and was hindering operations last week. The infection took root last week, on Thursday, ...

Spend One Minute And Look At These Phishing Graphs

In the first quarter of 2018, after 7 years of helping our customers to enable their employees to make smarter security decisions and having reached the milestone of 15,000 customers, we ...

KillDisk Fake Ransomware Hits Financial Firms in Latin America

A new version of the KillDisk disk-wiping malware has hit companies in the financial sector in Latin America, Trend Micro reported yesterday. Just like previous versions, KillDisk ...

Be like Bill Gates and Warren Buffett: If you’re not spending 5 hours per week learning, you’re being irresponsible

I just found a fabulous post on Quartz. “In my whole life, I have known no wise people (over a broad subject matter area) who didn’t read all the time — none. Zero.” — Charlie Munger, ...

[Heads-up] Unusual Ransomware Strain Encrypts Cloud Email Real-time

OK, here is something unusual and really scary. KnowBe4's Chief Hacking Officer Kevin Mitnick called me with some chilling news. A white hat hacker friend of his developed a working ...

How To Create A Security Culture in 2018

Ever heard: "If it was easy, everyone would do it" ? Creating a better security culture in your organization has a few challenges. Let's have a look at them, see how you can overcome ...

63% of organizations experienced an attempted ransomware attack in 2017

Interesting research by Enterprise Strategy Group: 63% of organizations experienced an attempted ransomware attack in 2017, with 22% reporting these incidents occurred on a weekly basis. ...

[On-Demand Webinar] Phishing Attack Landscape and Benchmarking

The most persistent security challenge you face today is bad guys social engineering your users. Phishing campaigns continue to be hacker’s No.1 preferred attack vector to get your ...

SNAFU Some AV Tools Cause BSODs And Boot Failures After Meltdown Patches

Microsoft's patch to protect Windows computers from the Meltdown / Spectre "hardware bug" revealed the rootkit-like nature of many antivirus tools. Some AV products are incompatible with ...

KnowBe4 Fresh Content Update & New Features Summary

First, I wanted to send you a note of our deep gratitude for your trust in us. We have worked really hard to create a powerful, yet super easy platform that we hope you love. How can we ...

Scam Of The Week: Fake Meltdown And Spectre Patch Phishing Emails

We sent out some warnings and advisories last week about Spectre and Meltdown, but we want to remind everyone again about some steps you can take to protect yourself. Remember that the ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.