Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

KnowBe4 Makes Third Place In Nationwide SMB Top Five Best Place To Work in Technology

Great Place to Work is a San Francisco-based global leader on high-trust, high-performance workplace cultures. Through their certification programs, Great Place to Work recognizes ...

Healthcare Ransomware Attacks – Don’t Be Part of the Statistics

Rebecca Wynn at securitycurrent.com wrote a great article on how not to become a ransomware statistic in health care: "In 2017, six of the top ten HIPAA breaches reported to the U.S. ...

Google’s Confusing Gmail Security Alert Looks Exactly Like a Phishing Attempt

Note: I got this too and had a similar reaction last week. Security researchers say the legitimate email is training people to have bad email hygiene. Richard De Vere, a security ...

Hospital Pays $55K Ransomware Demand DESPITE Having Backups

An Indiana hospital paid a ransom of $55,000 to get rid of ransomware that had infected its systems and was hindering operations last week. The infection took root last week, on Thursday, ...

Spend One Minute And Look At These Phishing Graphs

In the first quarter of 2018, after 7 years of helping our customers to enable their employees to make smarter security decisions and having reached the milestone of 15,000 customers, we ...

KillDisk Fake Ransomware Hits Financial Firms in Latin America

A new version of the KillDisk disk-wiping malware has hit companies in the financial sector in Latin America, Trend Micro reported yesterday. Just like previous versions, KillDisk ...

Be like Bill Gates and Warren Buffett: If you’re not spending 5 hours per week learning, you’re being irresponsible

I just found a fabulous post on Quartz. “In my whole life, I have known no wise people (over a broad subject matter area) who didn’t read all the time — none. Zero.” — Charlie Munger, ...

[Heads-up] Unusual Ransomware Strain Encrypts Cloud Email Real-time

OK, here is something unusual and really scary. KnowBe4's Chief Hacking Officer Kevin Mitnick called me with some chilling news. A white hat hacker friend of his developed a working ...

How To Create A Security Culture in 2018

Ever heard: "If it was easy, everyone would do it" ? Creating a better security culture in your organization has a few challenges. Let's have a look at them, see how you can overcome ...

63% of organizations experienced an attempted ransomware attack in 2017

Interesting research by Enterprise Strategy Group: 63% of organizations experienced an attempted ransomware attack in 2017, with 22% reporting these incidents occurred on a weekly basis. ...

[On-Demand Webinar] Phishing Attack Landscape and Benchmarking

The most persistent security challenge you face today is bad guys social engineering your users. Phishing campaigns continue to be hacker’s No.1 preferred attack vector to get your ...

SNAFU Some AV Tools Cause BSODs And Boot Failures After Meltdown Patches

Microsoft's patch to protect Windows computers from the Meltdown / Spectre "hardware bug" revealed the rootkit-like nature of many antivirus tools. Some AV products are incompatible with ...

KnowBe4 Fresh Content Update & New Features Summary

First, I wanted to send you a note of our deep gratitude for your trust in us. We have worked really hard to create a powerful, yet super easy platform that we hope you love. How can we ...

Scam Of The Week: Fake Meltdown And Spectre Patch Phishing Emails

We sent out some warnings and advisories last week about Spectre and Meltdown, but we want to remind everyone again about some steps you can take to protect yourself. Remember that the ...

10 Things You Shouldn't Include in Your Security Awareness Training Program

If you want to succeed with your organization's security awareness program, here are some of the top "faux-pas" you should be sure to avoid. Here are some of the errors we have seen over ...

How To Explain Meltdown And Spectre To Your C-Level and employees

OK, 2018 has just started and it has totally borked all networks in the whole world. That's a fine mess we're in to start off the year. :-) Meltdown and Spectre are CPU hardware design ...

One surprising statistic explains why phishing will remain the most common cyberattack for the next few years

Phishing will remain the primary email attack vector through 2020. A new report from Comodo Security Threat Lab's VP, Fatih Orhan, brings up an interesting statistic from Friedrich ...

Book Review: A Data-Driven Computer Security Defense: THE Computer Security Defense You Should Be Using

Excellent book about InfoSec that has everything you need to know and nothing you don't. A Data-Driven Computer Security Defense: THE Computer Security Defense You Should Be Using by ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.