Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Some KnowBe4 Racing Fun At The Sebring Track

KnowBe4 had a July sales game and the top three reps won a day at Florida's Sebring racing track. They had a great day and here are some shots by KnowBe4's Creative Director Robert La ...
Continue Reading

Scam Of The Week: Microsoft Windows 10 Upgrade Installs Ransomware.

Major Operating System upgrades are usually a cause of confusion among end-users and the current Windows 10 upgrade is no exception. The bad guys exploit these confusions in several ways, ...
Continue Reading

Leaked NSA slides: Chinese hackers wreaking havoc on USA

I have been talking for years at this blog about the Chinese hacking into the U.S. for mainly espionage, using highly sophisticated social engineering and spear-phishing attacks. This ...
Continue Reading

Phish or Be Phished? The Choice is Yours

By Guest Blogger Brad Mathis, Senior Consultant, Information Security It is mid-2015. By now, we have all seen incoming emails claiming we have been bequeathed a huge sum of money from a ...
Continue Reading

CyberheistNews Vol 5 #30 How To Get The OK To Phish Your Own Employees

CyberheistNews Vol #5 #30 July 28, 2015 How To Get The OK To Phish Your Own Employees IT people responsible for network security talk to us all the time. Almost all of them agree that ...
Continue Reading

Out With The Old And in With The New (KnowBe4 Logo)

We moved to a new 15,000 square feet office with expansion space for 100 KnowBe4 employees, and this week we had our logo mounted on the top of the building. This is a 30-second ...
Continue Reading

You Asked For Training Campaigns And We Built It For You

By far the most requested feature in the KnowBe4 console was Training Campaigns. We're excited to tell you they are here now, in version 5.2 of your console. When it comes to rolling out ...
Continue Reading

CyberheistNews Vol 5 #29 AshleyMadison: Second Nightmare Phishing Problem

CyberheistNews Vol #5 #29 July 21, 2015 AshleyMadison: Second Nightmare Phishing Problem Again, we have a nightmare phishing scenario with the brand new AshleyMadison (AM) hack. A few ...
Continue Reading

AshleyMadison: Second Nightmare Phishing Problem

8/19/2015 UPDATE: Yesterday the full 10 Gigabyte database was released on the Internet, with all records including confidential files related to the company itself. People that registered ...
Continue Reading

New TeslaCrypt's Shrewd Disguise as CryptoWall

Security researcher Fedor Sinitsyn reported on the new TeslaCrypt V2.0. This family of ransomware is relatively new, it was first detected in February 2015. It's been dubbed the "curse" ...
Continue Reading

Blackhat 2015 Survey: End-User Wins Easily As IT's Big Worry

According to the 2015 Black Hat Attendee Survey, nearly three quarters (73 percent) of top security professionals think it likely that their organizations will be hit with a major data ...
Continue Reading

Aggressive New Tech Support Social Engineering Scam

The Tech Support Scams are getting worse by the month. Here is a horror story that was just shared today. I suggest you read it, and keep alert for Red Flags like these! "My dad almost ...
Continue Reading

CyberheistNews Vol 5 #28 Scam Of The Week: Internet Capacity Warning

CyberheistNews Vol #5 #28 July 14, 2015 Scam Of The Week: Internet Capacity Warning OK, so here is the latest scam, possibly fueled by the recent news that we have run out of IPv4 ...
Continue Reading

U.K.-hedge fund loses a million dollars in social engineering attack

A British hedgefund lost more than a million dollars in a social engineering attack on their Chief Financial Officer Thomas Meston, and there is an expensive court case going on because ...
Continue Reading

OPM: 'Victim-as-a-Service' Provider

Unconscionable. I would even say callous and criminal negligence, all on the current administration's watch, of the highly confidential and very private information of the people working ...
Continue Reading

Scam Of The Week: Internet Capacity Warning

OK, so here is the latest scam of the week, possibly fueled by the recent news that we have run out of IPv4 addresses in the U.S. Employees receive an email which claims to be from the ...
Continue Reading

A New, Innovative Ransomware Attack Spreads Using Google Drive

An Eastern European cybercrime gang has started a new TorrentLocker ransomware campaign where whole websites of energy companies, government organizations and large enterprises are being ...
Continue Reading

Spear Phishing Attack Results In $5.3 Million Bitcoin Cyberheist

"Newly leaked, confidential documents have revealed details into a cyberattack aimed at Bitstamp, a company that fundamentally deals as a cryptocurrency trader, according to a report in ...
Continue Reading

CyberheistNews Vol 5 #27 Scam Of The Week: Payment By Facebook Friend

CyberheistNews Vol #5 #27 July 7, 2015 Scam Of The Week: Payment By Facebook Friend As of last Tuesday, Facebook has switched on person-to-person (P2P) payments for users in the US to ...
Continue Reading

Woman conned out of £50,000 in shrewd spearphishing scam

In a variation of the "CEO Fraud", spearphishing is getting more up close and personal. Read this story and apply the lesson learned in your own life before you lose your life savings. ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews