Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

NotPetya "ransomware" Froze Business At Global Law Firm DLA Piper

Kate Fazzini and Adam Janofsky at the Wall Street Journal wrote an excellent piece about the dangers of becoming collateral in global cyber warfare. They wrote: "This week’s “Petya” ...

[ALERT] NotPetya Is a Cyber Weapon, Not Ransomware

Yesterday morning, after monitoring this new outbreak for 24 hours, I came to the conclusion we were dealing with cyber warfare , and not ransomware . Two separate reports coming from ...

We Are Dealing With Cyber Warfare Here

OK, after 24 hours of monitoring this new Petya ransomworm outbreak, I am calling it. This has been brewing under the surface for a few years, but now we are dealing with open cyber ...

APWG Cybercrime Report: Phishers’ Command of Domain Name System Reaches All-Time High in 2016

Criminalization of DNS for Phishing Advanced Most Every Year Since 2012 CAMBRIDGE, Mass.-- The APWG's latest study has found that cybercriminals have been shifting their tactics markedly, ...

[ALERT] Looks Like A New Worldwide Ransomware Outbreak

Motherboard reported: "A quickly-spreading, world-wide ransomware outbreak has reportedly hit targets in Spain, France, Ukraine, Russia, and other countries. This strain is deadlier than ...

Scam Of The Week: Real Estate Wire Transfer Phishing Fraud

According to the NY Daily News, State Supreme Court Justice Lori Sattler was in the process of selling her apartment and buying another, when she received an email that seemed like it was ...

Security Awareness Training Can Lower Your Cyberinsurance Premium

New-school security awareness training might even pay for itself from Day 1! How? Call your cybersecurity insurance carrier or agent and specifically ask if you get a discount on the ...

Windows 10 Stops Ransomware Cold? Not So Fast!

Recently, Microsoft claimed that no known ransomware could penetrate the new Win10 Creators Update.

Global Cyber Alliance: "Few U.S. Hospitals Secure Their Email Against Phishing"

Shaun Waterman at the quite useful CyberScoop site wrote: "Fewer than one-third of the largest 98 public and private hospitals in the United States secure their email against phishing and ...

FBI: "Extortion And CEO Fraud Are The Top Online Fraud Complaints"

And victims aren't reporting ransomware attacks... Online extortion, tech support scams and phishing attacks that spoof the boss (CEO Fraud) were among the most damaging and expensive ...

July 4th and Current Events Phishing Templates

For KnowBe4 customers, we have some new templates available in Current Events and Holiday: Three July 4th-related templates in the Holiday category Five new Current Events templates ...

KnowBe4 Moves From #38 to #6 On Cybersecurity 500

The Cybersecurity 500 / Q2 2017 list of the world's hottest security companies was officially released June 21, 2017. In their press release they said: "Worldwide spending on ...

Web Hosting Provider Pays $1 Million to Ransomware Attackers

South Korean web hosting company Nayana agreed to pay $1 million in Bitcoin after a ransomware attack hit 153 Linux servers. The attack took place June 10 and resulted in over 3,400 ...

[BREAKING] Scam Of The Week: Your Politics Have Been Breached

Gizmodo reported on a blog post by IT Security company UpGuard which revealed the largest US voter data leak to date. Political data gathered on more than 198 million US citizens was ...

KnowBe4 May 2017 New Training Modules Released

Here are the May releases, with an indication on the subscription levels which give access to these modules: For May we released the following: Common Threats (standalone module) - Level ...

[ALERT] New Fileless, Code-injecting Ransomware Bypasses Antivirus

Security researchers have discovered a new fileless ransomware in the wild, which injects malicious code into a legitimate system process (svchost.exe) on a targeted system and then ...

See Me On Video At The NYSE Cyber Investing Summit Pitching KnowBe4

The CyberWire wrote: Pitches: "Innovation from Young Companies The Pitch Panel was the Cyber Investing Summit's fast round of innovation pitches, moderated by Allegis's Bob Ackerman and ...

FIN10: Anatomy of a Ransomware Phishing Extortion Operation

Cyber security firm FireEye reported that that a number of Canadian mines and casinos were hacked by a group named FIN10 – FireEye labels FIN10 to be “one of the most disruptive threat ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.