Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

This Week's Five Most Popular HackBusters Posts Sept 16

There is an enormous amount of noise in the security space, so how do you know what people really talk about and think is the most important topic? Well, we created the Hackbusters site ...

VEVO Data Breach Caused By LinkedIn Phishing Attack

A Vevo spokesperson told Gizmodo that the company “can confirm that Vevo experienced a data breach as a result of a phishing scam via Linkedin. We have addressed the issue and are ...

"Large Enterprises Spend Nearly $300K Per Year On Security Awareness Training." Really?

Security company Bromium put out a press release asking publicly: "Large Enterprises Spend Nearly $300K Per Year On Security Education, So Why Are Endpoint Attacks More Successful Than ...

U.S. Govt Orders Purge Of Kaspersky Products From Its Networks

WASHINGTON (Reuters) - The Trump administration on Wednesday told U.S. government agencies to remove Kaspersky Lab products from their networks, saying it was concerned the Moscow-based ...

Ransomware Can Destroy Backups In Four Ways

I just found a very interesting blog post by Jerome Wendt, President & Lead Analyst of DCIG, Inc., an independent storage analyst and consulting firm.

​Trend Micro: CEOs Are The Most Spoofed

Trend Micro researchers reported that cybercriminals spoofed the CEO email address the most, with CFOs and finance directors being the top attack targets. In their 2017 Midyear Security ...

CyberheistNews Vol 7 #36 Scam of the Week: Equifax Phishing Attacks

CyberheistNews | KnowBe4

Scam Of The Week: Equifax Phishing Attacks

You already know that a 143 million Equifax records were compromised. The difference with this one is that a big-three credit bureau like Equifax tracks so much personal and sometimes ...

Equifax Reports Data Breach Possibly Impacting 143 Million U.S. Consumers

The Wall Street Journal just reported that Credit-reporting company Equifax Inc. disclosed Thursday that hackers gained access to some of its systems, compromising the personal ...

Phishing Attack With PowerPoint Attachment Bypasses User Access Control

Fortinet researchers discovered a malicious PowerPoint file which currently is used to attack diplomats, United Nations- and government organizations worldwide. This will soon filter down ...

These 4 Maps Will Make You Understand Russia's Aggressive Cyber Attacks

There are many kinds of maps, they can show roads or general geography, but sometimes they shed light on other dimensions like economic, political and/or military perspectives. First of ...

A Phishing Attack in the Clouds May Rain On Your Parade

According to MeriTalk, an editorial and events organization that focuses on Federal IT and government computing technologies, governments are moving some, or all of their IT to the Cloud, ...

MacEwan University Victim Of $11.8M CEO Fraud

CBC News reported that an Edmonton, Canada university was the victim of a $11.8 million CEO fraud attack after staff failed to call one of its vendors to verify whether emails requesting ...

Vote For KnowBe4 At The 2017 Computing Security Awards!

KnowBe4 made it as Finalist in the 2017 Computing Security Awards, and we'd be eternally grateful if you could vote for us in the category "Education and Training Provider of the Year". ...

Companies Slow to Adopt Insurance As Hedge Against Ransomware Wave

Research firm Ovum for Silicon Valley analytics firm FICO, conducted a May 2017, survey about cyber insurance. And here is the head-scratcher: “The survey further concluded that “a full ...

Introducing Behavioral Information Security

Ben Tomhave posted a great article on his "The Falcon's View" blog. Loved the concept and I'm cross-posting the whole thing in it's entirety without any edits with grateful ...

Nigerian Phishers Have Gone to School and Gotten Their CEO Fraud Diploma

The FBI calls CEO Fraud "Business Email Compromise" (BEC) and it has become a highly lucrative threat vector for attackers. According to IC3, the FBI's Internet Crime Complaint Center, ...

[ALERT] The IRS Issued An Urgent Warning Against An IRS / FBI-Themed Ransomware Phishing Attack

WASHINGTON, August 28, 2017 — The Internal Revenue Service warned people to avoid a new phishing scheme that impersonates the IRS and the FBI as part of a ransomware scam to take computer ...

CyberheistNews Vol 7 #34


Get the latest insights, trends and security news. Subscribe to CyberheistNews.