Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

CyberheistNews Vol 5 #43 Near-flawless Social Engineering Attack Spoiled By Single Error

*|CyberHeistNews|* CyberheistNews Vol #5 #43 Oct 13, 2015 Near-flawless Social Engineering Attack Spoiled By Single Error Steve Ragan at CSO has a great story about a CEO Fraud social ...
Continue Reading

WSJ Gives Powerful Ammo For More InfoSec Budget

A front page article in the Wall Street Journal describes the escalating arms race for a possible cyberwar. This article is a great way to get C-level execs a crash course about ...
Continue Reading

Teach your execs well: Stop phishing in the C-suite

J. Peter Bruzzese is an InfoWorld columnist and five-time-awarded Microsoft MVP (current technical expertise Office 365, previous four years Exchange). He is a technical speaker, author ...
Continue Reading

[INFOGRAPHIC] Social Engineering

“You could spend a fortune purchasing technology and services, and your network infrastructure could still remain vulnerable to old-fashioned manipulation.” — Kevin Mitnick. Bad guys ...
Continue Reading

Postal employees fall to internal phishing sting

Aaron Boyd wrote: "Determined not to fall victim to another network breach, the U.S. Postal Service is phishing its own employees, testing their ability to recognize a scam before it's ...
Continue Reading

[INFOGRAPHIC] Men Twice As Likely To Fall For Phishing Attacks

In the never ending battle of the sexes, it looks as though women are winning the phishing fight according to new research from KnowBe4. In an analysis done by KnowBe4 of 201,755 phishing ...
Continue Reading

Near-flawless Social Engineering attack spoiled by single flaw

Steve Ragan at CSO has a great story about a CEO Fraud social engineering attack that was caught just in time because the employees were given effective security awareness training. This ...
Continue Reading

Cisco Takes Down $60M Ransomware Operation

Good news for a change. Cisco just posted that they disabled a cybercrime operation that used the Angler exploit kit to distribute ransomware. The takedown shutttered a global ransomware ...
Continue Reading

CyberheistNews Vol #5 #42 Scam Of The Week: Facebook Dislike Button

*|CyberHeistNews|* CyberheistNews Vol #5 #42 Oct 6, 2015 Scam Of The Week: Facebook Dislike Button At a Sept 15, 2015 Town Hall Q&A session at Facebook headquarters, Zuckerberg ...
Continue Reading

Men Are Twice As Likely To Fall For Phishing Attacks

In an analysis done by KnowBe4 of 201,755 phishing emails sent over the past 30 days, it was found men appear to be more prone to clicking on a phishing email than women. In further ...
Continue Reading

Scam Of The Week: Facebook Dislike Button

At a Sept 15, 2015 Town Hall Q&A session at Facebook headquarters, Zuckerberg mentioned that for years users had been asking about a 'dislike button', and that Facebook was finally ...
Continue Reading

New KnowBe4 Feature CEO Fraud Prevention Phishing Test

We just released a new feature that allows you to test your employees for "CEO Fraud" spear phishing attacks. When you create a phishing email template, you can now specify a Sender Name ...
Continue Reading

KnowBe4 Third Quarter 2015 is 400% Over Q3 2014

We had a blow-out quarter this Q3 2015. When we looked at Q3 2014 and did the math, we expanded a mind boggling 400% year-over-year. We added 267 new accounts in September only, which was ...
Continue Reading

Fixing the #1 Problem in Computer Security: A Data-Driven Defense

This is a great whitepaper you can download for free at Microsoft written by IT Security Guru Roger Grimes. Here is the Executive Summary: "Many companies do not appropriately align ...
Continue Reading

CyberheistNews Vol #5 #41 KnowBe4 Got A CEO Fraud Phishing Attack. Wrong Mark!

*|CyberHeistNews|* CyberheistNews Vol #5 #41 Sept 29, 2015 KnowBe4 Got A CEO Fraud Phishing Attack. Wrong Mark! KnowBe4 has been warning against "CEO Fraud" emails for a few months now, ...
Continue Reading

Ransomware Attacks Move From Consumers To Small Medium Business

The criminal gangs that live off ransomware infections are targeting Small Medium Business (SMB) instead of consumers, a new Trend Micro Analysis shows. The reason SMB is being targeted ...
Continue Reading

Miami County pays CryptoWall Ransom To Get 911 Center Back Online

The Miami County Communication Center’s administrative computer network system was compromised with a CryptoWall 3.0 ransomware infection which locked down their 911 emergency center. ...
Continue Reading

The Meaning Of The U.S. and China Hacking Agreement

Last Friday, after years of data breaches by Chinese hackers, many months of negotiations and occasional threats from the White House, while China's President Xi was in DC, the U.S. and ...
Continue Reading

The ten immutable laws of security administration revisited

Casper Manes at GFI wrote a great blog post that I'm crossposting here. Welcome back to our series for people looking to break into the Infosec field or just learn more about information ...
Continue Reading

KnowBe4 got a CEO Fraud phishing attack. Wrong Mark!

KnowBe4 has been warning against "CEO Fraud" emails for a few months now, the FBI also calls them "Business Email Compromise" (BEC). I had been hoping we would get one of these ourselves, ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews