Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

A New, Innovative Ransomware Attack Spreads Using Google Drive

An Eastern European cybercrime gang has started a new TorrentLocker ransomware campaign where whole websites of energy companies, government organizations and large enterprises are being ...
Continue Reading

Spear Phishing Attack Results In $5.3 Million Bitcoin Cyberheist

"Newly leaked, confidential documents have revealed details into a cyberattack aimed at Bitstamp, a company that fundamentally deals as a cryptocurrency trader, according to a report in ...
Continue Reading

CyberheistNews Vol 5 #27 Scam Of The Week: Payment By Facebook Friend

CyberheistNews Vol #5 #27 July 7, 2015 Scam Of The Week: Payment By Facebook Friend As of last Tuesday, Facebook has switched on person-to-person (P2P) payments for users in the US to ...
Continue Reading

Woman conned out of £50,000 in shrewd spearphishing scam

In a variation of the "CEO Fraud", spearphishing is getting more up close and personal. Read this story and apply the lesson learned in your own life before you lose your life savings. ...
Continue Reading

Criminal Hackers Steal Your Database? See You In Court

Jim Flynn wrote: "Helping to demonstrate that every cloud has a silver lining if you look hard enough, hacking has proven to be of great benefit to the legal profession. That's because ...
Continue Reading

What KnowBe4 Customers Say About Us July 3, 105

Hi Stu, "We're happy with the product. Getting good feedback from users who've gone through the programme and my management is highly impressed with the quality of the information given. ...
Continue Reading

OPM Phishing Attack: "Your Data Was Hacked, How To Protect Yourself"

And yes, as we predicted, there are now phishing attacks that mimic Office of Personnel Management (OPM) data breach notifications. The breach has expanded to millions more records. It ...
Continue Reading

Scam Of The Week: Payment By Facebook Friend

As of last Tuesday, Facebook has switched on person-to-person (P2P) payments for users in the US to "instant-message" money to their friends, using the debit cards connected to their bank ...
Continue Reading

Confidence In Antivirus Falls To All-time Low

Bromium is a company with a new antivirus mousetrap, so it will try to make old mousetraps look, well... old. However, they do point out correctly that traditional antivirus is starting ...
Continue Reading

CyberheistNews Vol 5 #26 FBI Alert: Latest CryptoWall Ransomware Damage More Than $18 Million

CyberheistNews Vol #5 #26 June 30, 2015 FBI Alert: Latest CryptoWall Ransomware Damage More Than $18 Million The latest version 3.0 of CryptoWall, descendant of the infamous CryptoLocker, ...
Continue Reading

Patch Flash NOW Or Get Infected With CryptoWall

It is now urgent to patch any Adobe Flash Player machines in your network. Why? There is an exploit kit called Magnitude that now uses a recently patched Flash zero-day vulnerability. An ...
Continue Reading

FBI Alert: Latest CryptoWall Ransomware Damage More Than $18 Million

The latest version 3.0 of CryptoWall, descendant of the infamous CryptoLocker, is the most advanced and most damaging ransomware in the wild at the moment, specifically targeting U.S. ...
Continue Reading

World's Most Famous Hacker Kevin Mitnick: IoT Is Exploitable

Clad in a blue suit and conservative necktie, KnowBe4's Chief Hacking Officer Kevin Mitnick no longer looks the part of the precocious teen who started hacking into computer systems while ...
Continue Reading

CyberheistNews Vol 5 #25 Scam Of The Week: Spoofed CEO Money Transfer Request

CyberheistNews Vol #5 #25 June 23, 2015 Scam Of The Week: Spoofed CEO Money Transfer Request Heads-up, there is a real wave of this scam going on at the moment. I would copy and paste ...
Continue Reading

Magazine publisher loses $1.5M in phishing scam

Cyber-criminals have social engineered magazine publisher Bonnier Group out of at least $1.5m after hacking the CEO’s email. The total damage could be as much as $3.0 million. Bonnier ...
Continue Reading

Ransomware Resume Phishing Security Test Gets Monster Open Rate

Now here is a real IT Horror Story. A brand new KnowBe4 customer which had not yet trained their employees decided to test their staff with one of the new templates we had just released.
Continue Reading

The Seven Deadly Social Engineering Vices Updated

You may not be aware that there is a scale of seven deadly vices connected to social engineering (SE). The deadliest SE attacks are the ones that have the highest success rates, often ...
Continue Reading

Ransomware Gives Cyber Criminals Almost 1,500% Return On Their Money

A new report by Trustwave shows some stunning numbers. You would almost come to the conclusion you are in the wrong business. They looked at how much of an investment a cybercriminal ...
Continue Reading

LastPass Hacked. Be Alert For Phishing Attacks

LastPass, the popular online password management service has been hacked and data was stolen, including the password hints, which is why you need to be alert for scams trying to exploit ...
Continue Reading

CyberheistNews Vol 5 #24 Scam Of The Week: Resume Ransomware & The Truth About The OPMgate Hack

CyberheistNews Vol 5 #24 June 16, 2015 Scam Of The Week: Resume Ransomware The SANS InfoSec Forums noted that since Monday May 25th new CryptoWall 3.0 ransomware attacks started, using ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews