Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Download This Hacked App And Die - Literally.

In the WSJ of Dec 22, 2016 there is an article that hides the real headline. It talks about the research done by CrowdStrike which shows that the DNC hack was done by a hacker group known ...

Is Lynda.com A Hacking Victim? They Lost 55K Records Somehow...

Lynda.com, the online learning unit of LinkedIn, has reset passwords for some of its users after it discovered recently that an unauthorized external party had accessed a database ...

CyberheistNews Vol 6 #51 Scam of the Week: The 1 Billion Yahoo Hack

CyberheistNews | KnowBe4

L.A. County Phishing Attack: 750,000 record data breach

Confidential health data or personal information of more than 750,000 people may have been accessed in a cyberattack on Los Angeles County employees in May that led to charges this week ...

Scam Of The Week: The 1 Billion Yahoo Hack

This is getting old. It's all over the press... again. Here is a Reuters article where I am quoted, which covers the most recent billion-record Yahoo hack. Some people asked me after our ...

The rise of ransomware-as-a-service. Stu Sjouwerman CSO Interview

My Interview at CSO About Ransomware-as-a-Service Joan Goodchild, Editor-in-chief at CSO sat me down and asked why Ransomware-as-a-Service has taken off recently: "It’s not just your ...

KnowBe4 and Barracuda Team Up to Educate and Protect Users Against Phishing Attacks

KnowBe4, the most popular security awareness training and simulated phishing platform, and Barracuda Networks, Inc. (NYSE: CUDA), a leading provider of cloud-enabled security and data ...

IBM study: 70% of Businesses Attacked Pay Ransomware

A rather mind-blowing 70% of businesses hit by ransomware paid the hackers to regain access to hijacked systems and files, according to a new IBM X-Force Ransomware report. Of the ...

And Another Billion More Yahoo Accounts Hacked

In the September/ October timeframe this year it became clear that Yahoo had lost more than 500 million records which was the biggest hack of the year. Who knew that they would top ...

[ALERT] Yikes, A New And Scary Double-Ransomware Whammy.

Sophos reported on one of the more scary ransomware strains I have seen lately. It's called Goldeneye and encrypts the workstation twice: both the files and the Master File Table (MFT). ...

New Book Coming Soon from Kevin Mitnick for You

The Art of Invisibility: The World's Most Famous Hacker Teaches You How to Be Safe in the Age of Big Brother and Big Data Kevin Mitnick, the world's most famous hacker, and KnowBe4's ...

SanFran Muni Ransomware Hacker Gets Hacked Back!

A couple of weeks ago, a yet unknown attacker hacked the computer systems of the San Francisco’s Municipal railway causing a free ride for all that Saturday. The ransomware hacker was ...

Former NSA Director Michael Hayden: "We have a Russia Problem"

I have been saying this here for the last few years, but if you get it confirmed by a former NSA director, that's nice to hear. The Wall Street Journal just reported that President Barack ...

Want Your Ransomed Files Back? Just Infect Someone Else!

Larry Abrams just reported: "Yesterday a new in-development ransomware was discovered by MalwareHunterTeam called Popcorn Time that intends to give victim's a very unusual, and criminal, ...

Locky Ransomware Campaign Using Osiris Extension from Egyptian Mythology

The threat actors behind Locky ransomware have moved on from Norse gods such as Zepto, Odin and Thor and into Egyptian mythology with a new campaign that uses the extension .osiris when ...

Phishing from the Middle: Social Engineering Refined

By Eric Howes, KnowBe4 Principal Lab Researcher. Phishing attacks have long been associated with malicious emails that spoof well-known institutions in order to trick users into coughing ...

Phishing Reply Tracking Is Now Available for All KnowBe4 Customers

Two of the big cybersecurity attacks are the CEO Fraud (aka Business Email Compromise) which has caused $3.4 billion in damages as well as the W-2 Scams which social engineer ...

CyberheistNews Vol 6 #49 Welcome To The CyberheistNews 2017 Crystal Ball Issue.

CyberheistNews Vol 6 #49 Welcome To The CyberheistNews 2017 Crystal Ball Issue. In December I spend a few days analyzing our space, and predict the coming year. The Crystal Ball issue is ...

Kaspersky: DDoS Often Smokescreen For Phishing Attack

Distributed denial of service attacks, also known as DDoS, are becoming a major threat. They can bring websites and networks down, and generally make a lot of noise demanding attention. ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.