Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Locky Ransomware Returns with Phishing Campaign Pushing The Diablo6 Variant

Our friend Larry Abrams at Bleepingcomputer wrote August 9th: "Through a large malspam campaign, Locky is back and currently being heavily distributed worldwide. While Locky was at one ...

HealthCare Industry Needs Prescription For Next Wave of Ransomware Threats

According to a recent article in HealthCare IT News, "Ransomware 2.0: It's Coming, and Healthcare Needs to get Prepared", the next wave of ransomware may be much harder to spot, -- and ...

We Love The PhishMe Free Idea!

Yesterday, PhishMe's CEO Rohyt Belani came out with a great new initiative. They have created a "lite" version of their platform — they call it simplified — and they are giving it away ...

Top White House officials fall for prankster social engineering tricks

A UK-based email prankster used social engineering tactics to fool several top White House officials into responding to his messages, including the Trump administration’s cybersecurity ...

Key Ransomware Money Laundering Operation Taken Down and Owner Arrested in Greece

More than 4 Billion Dollars May Have Been Laundered If you’ve been the victim of a ransomware attack you know cybercrooks almost always demand payment in Bitcoin. Now we know that the US ...

Lessons from Social Engineering Disasters to Improve Security

Michele Fincher from the excellent team at www.social-engineer.com wrote: "In my fantasy life, I’m Ruby Rose from John Wick: Chapter 2, Gina Carano from Haywire, with possibly some ...

This password bombshell will make you scratch your head...

OK, this is a headscratcher. This is why we were surprised. I found it in a Wall Street Journal article today (paywall). Bill Burr, the author of “NIST Special Publication 800-63. ...

How Modern Email Phishing Attacks Have Organizations On The Hook

Israeli anti-phishing vendor IronScales came out with an interesting new report about phishing trends. They looked at more than 8,500 attacks that bypassed spam filters, from more than a ...

How Not To Fall For Phishing As An IT Pro

OK, here is a new spear phishing scheme that attacks your development team. Cyber criminals with IPs resolving to Russia hijacked an extension for Google Chrome and abused their illegal ...

Cerber Ransomware Can Now Steal Bitcoin Wallet Data And Browser Passwords

The Russian 800-pound gorilla Dridex Banking Trojan gang who are also behind the Cerber ransomware have just upped their game. Cerber is part of the small set of professional ransomware ...

Hackers are targeting hotel Wi-Fi with particularly evil malware and spear phishing

The veteran DarkHotel hacking group is back with a few new tricks up their sleeve. These sophisticated hackers first began targeting high level executives in 2011 with a signature brand ...

Data Breaches Are Up 29 Percent Over Last Year

Data breaches are running 29 percent above last year, according to a report released by the Identity Theft Resource Center and CyberScout. Hacking was the leading cause of data breaches ...

CEO Fraud Attacks Were Far More Lucrative than Ransomware over the Past 3 Years

Cisco's midyear report released this week showed that CEO Fraud netted cybercrime five times more money than ransomware over the last three years. The surprising highlight of Cisco's ...

New Phishing Templates: OJ Simpson Parole and Chester Bennington Suicide Note

QUICK UPDATE

43% of C-suite execs name cybersecurity as No. 1 operational challenge

A global survey over 400 C-suite execs by the management consulting firm A.T. Kearney showed that cybersecurity (43 percent) is the top operational challenge they faced. Also, a whopping ...

New Type Of WhatsApp Phishing Attack

Heads-up. There is a new social engineering attack currently being tested in Europe, and that means we will see it in America in the near future.

Ransomware attack on KQED TV, Radio Station wiped out pre-recorded segments

KQED, a TV and radio station in San Francisco, is an example that shows how badly any organization can suffer when ransomware hits their network. KQED has been trying to recover from the ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.