Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Bad Rabbit Ransomware Attack Was Hiding A Spear Phishing Campaign

During the attacks in eastern Europe with the Bad Rabbit ransomware, a more insidious attack was taking place in Ukraine under its cover, Reuters reported. Serhiy Demedyuk, head of the ...

Dark Overlord hackers reveal plans to leak 'Hollywood database stolen from top studio'

Criminal hacking group The Dark Overlord is threatening to leak the internal client data of top Hollywood production studio Line 204, IBTimes UK has learned. The seemingly international ...

How to sell cybersecurity to your executive team

Scott Schlimmer wrote a great post at CSO about the constant battle between profitable business investments and “unprofitable” security investments to protect the current bottom-line.

Security Awareness Training Is a Team Effort

A security awareness program is a critical part of any security strategy. It is not enough to simply hold everyone in the organization accountable. Chief information security officers ...

Thirty Percent of CEO Email Passwords Compromised in Breaches: Study

SecurityWeek reported about an interesting F-Secure study showing thirty percent of CEOs from the world's largest organizations have had their company email address and password stolen ...

Shame and confusion lead to employees paying ransoms out of pocket

Doug Olenick at SC Media reported on something quite surprising. This is the first time we've heard about this! Whether out of shame for being victimized or confusion over what to do more ...

2018 Is Likely To Be A Worse Year For Ransomware Than 2017

Sophos released their 2018 malware forecast this week. Their predictions would make any IT Pro concerned, a PDF of their report is here. Read on for your executive summary. Ransomware ...

On Average, How Many Passwords do Employees Manage?

According to the Last Pass Password Exposé report, an employee manages of about 200 passwords. Other industry reports often estimate the number of credentials used and put the figure ...

EU to Declare Cyber-Attacks “Act of War”. USA likely to follow

"European Union member states have drafted a diplomatic document which states serious cyber-attacks by a foreign nation could be construed as an act of war. The document, said to have ...

Is combosquatting a new trick hackers use to lure users into visiting malicious websites?

Georgia Tech researchers reported that hackers are using a technique identified with a newly coined term "combosquatting" to trick users into visiting malicious websites. Sorry to break ...

KnowBe4 Halloween 2017 Was A Blast

Well over 350 employees dressed up and everyone was amazed at the amount of creativity that went into the costumes and the offices. Here is a group shot at the Station Square Park in ...

Putin Uses Psychiatrists For Social Engineering Attacks Against Individual Targets

Newsweek cross-posted an article that first appeared on The Daily Signal, and this is extremely relevant to what we are battling here today. Kiev, Ukraine—Since 2014, Russia has used ...

KnowBe4 Recognized as a Leader in the Gartner Magic Quadrant

KnowBe4 has been positioned by Gartner, Inc. in the Leaders quadrant of the Magic Quadrant for Security Awareness Computer-Based Training for the second year in a row. Gartner's ...

Worldwide Bad Rabbit Ransomware Outbreak Starts With Social Engineering

Organizations in Russia, Ukraine and a few hours later also the U.S. are under siege from Bad Rabbit , a new strain of ransomware which is basically a new, improved NotPetya version 2, ...

Hackers Target Nation’s Schools

Tawnell D. Hobbs at the Wall Street Journal wrote: "Hackers looking to exploit sensitive information for profit are increasingly targeting the nation’s schools, where they are finding a ...

Fancy Bear Goes Phishing For DC Cybersecurity Conference Attendees

Want to target a large swath of cybersecurity professionals in one go? Just crash their "cyber" party with a decoy document. So goes the modus operandi for an advanced persistent threat ...

Goldman Sachs Invests 30 Million Dollars in KnowBe4

I have some exciting news for you today. Goldman Sachs believes in our mission, has invested in us, and is now on our board of directors. Another announcement with some more excellent ...

U.S. warns about phishing attacks on nuclear, energy, aviation, water, and manufacturing industries

(Reuters) — The U.S government issued a rare public warning that sophisticated hackers are targeting energy and industrial firms, the latest sign that cyber attacks present an increasing ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.