Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Top 10 Most Dangerous Phishing Attack Of The Week

KnowBe4 gets thousands of phishing attacks reported weekly through our free Phish Alert Button, and we pick the 10 most tricky ones, defang them, and put these into a phishing campaign ...

[ALERT] FBI: "CEO Fraud Is Now 5.3 Billion Email Scam"

There is no better budget ammo for new-school security awareness training than this. Attempts at cyber wire fraud, using spoofed email to impersonate a C-level executive or trusted ...

Ransomware Scum Decide What You Have To Pay By Reading The Economist

Russian organized cybercrime now has a surprising method of determining how much to ask for – the Big Mac index from The Economist. Security firm Recorded Future blogged that in March, a ...

Cyber Security: “We have met the enemy and it is us.”

By Laura DiDio, Principal at ITIC, a research and consulting firm based in the Boston area. “We have met the enemy and it is us.” This quote aptly describes the current state of security ...

Massive Google Doc Phishing Attack Propagated Through Social Engineering

Think Before You Click On Random Google Doc Invitation Links A very convincing Google Docs phishing scheme raced through the internet yesterday, looking like it came from someone you ...

Ransomware Causes 90-day Downtime And 700K Damages For Law Firm

PROVIDENCE, R.I. — Cybercriminals held a Providence law firm hostage for months by encrypting its files and demanding $25,000 in ransom paid in Bitcoin to restore access, according to a ...

Facebook and Google Were Victims of 100 Million-Dollar Phishing Scam

We have been reporting on this massive Cyberheist for a while now, but Fortune Magazine decided to unleash their investigative reporters and find out exactly who those two mysterious ...

America Ponies Up: Ransomware Payments Rise To $1,077 Per Infection

America was the victim of 34 percent of global ransomware infections in 2016. The "why" is clear; a whopping 64 percent of Americans are willing to pay to get their files back, as opposed ...

100+ Free Ransomware Decryption Tools

The threat of ransomware has never been more real. In fact, 2016 was a record year. Here are some scary statistics from the past year put together by the folks at Barkly: Nearly 50 ...

Northrop Grumman can make a stealth bomber – but falls for W-2 phishing attack

US military contractor Northrop Grumman notified their employees that hackers managed to gain access to their W-2 tax records. As The Register just reported, the makers of America’s ...

Newark City Hall Computers Infected With Ransomware

NEWARK, N.J. (CBSNewYork) — . The City of Newark’s computer system has been disabled by hackers demanding thousands in ransom money, according to a published report. Hackers are demanding ...

Cyber Insurer Beazley Sees New Phishing Threats Emerge

New York, April 25, 2017 - Beazley, a pioneer in cyber and data breach response insurance, today released its Beazley Breach Insights – April 2017 findings based on its response to client ...

French Presidential Candidate Target Of Russian Hacker Phishing Attack

The French presidential election has been hit with a case of déjà vu. Emmanuel Macron's campaign said its staff received phishing emails meant to steal their passwords. Trend Micro said ...

This Week's Top "In The Wild" Phishing Attacks

And here are this week's Top 10 "In The Wild" phishing attacks that we received from our customers by employees clicking the Phish Alert Button and sending the email to us for analysis. ...

U.S. Court Sentences Russian Hacker to a Record-Setting 27 Years

On Friday, a Seattle Federal District Court judge sentenced 32 year old Roman Valerevich Seleznev to 27 years in prison for running a vast credit card and identity theft operation, ...

NIST Releases Update to Cybersecurity Framework

The National Institute of Standards and Technology (NIST) has issued a draft update (PDF) to the Framework for Improving Critical Infrastructure Cybersecurity—also known as the ...

And Just When You Thought Locky Ransomware Had Disappeared...

Locky ransomware reappeared with a vengeance Friday, this time not using Office documents combined with social engineering to have the user enable macros, but with a PDF that has a Word ...

[ALERT] Aaron Hernandez Death Phishing Scams

Low-life scum is exploiting the deaths of famous people, such as the suicide yesterday of former N.E. Patriots player Aaron Hernandez.


Get the latest insights, trends and security news. Subscribe to CyberheistNews.