Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

CyberheistNews Vol 5 #18 May 12, 2015 How New Phishing Malware Rombertik Kills Your Hard Drives

CyberheistNews Vol 5 #18 May 12, 2015 How New Phishing Malware Rombertik Kills Your Hard Drives InfoSec researchers at Cisco's TALOS group discovered a strain of malware that spreads ...
Continue Reading

Phishing in the C-Suite: 96% of Executives Vulnerable to Attacks

According to a recent survey, 96% of executives failed to tell the difference between a real email and a phishing email 100% of the time.
Continue Reading

Credit Union Times: Ransomware, WordPress Threats Grow

At 27%, banks and credit unions are the largest segment of KnowBe4's customers, obviously because they are the bad guys' #1 target. Thing is, banks and credit unions found us, we did not ...
Continue Reading

How Phishing Malware Rombertik Kills Your Hard Drives

InfoSec researchers at Cisco's TALOS group discovered a strain of malware that spreads through phishing. Attackers use social engineering tactics to entice users to download, unzip, and ...
Continue Reading

What our customers are saying about our security awareness training

One of our customers sent us this today: "I wanted to give you an update on our security awareness training. When we did the baseline phishing campaign for 85 employees and we had a click ...
Continue Reading

CyberheistNews Vol 5 #18 May 5, 2015 Your Antivirus Enduser Is Exposed To Phishing Attacks For 17.5 Hours

CyberheistNews Vol 5 #18 May 5, 2015 Your Antivirus Enduser Is Exposed To Phishing Attacks For 17.5 Hours The 2015 Websense threat report is abundantly clear about it. "Websense detected ...
Continue Reading

Your Antivirus Enduser Is Exposed To Phishing Attacks For 17.5 Hours

The 2015 Websense threat report is abundantly clear about it. "Websense detected 28 percent of malicious email messages before an antivirus signature became available, presenting AV users ...
Continue Reading

NEW: This Week's Five Most Popular HackBusters Posts 2015-5-2

NEW: This Week's Five Most Popular HackBusters Posts What are IT security people talking about? Here are this week's five most popular hackbusters posts: 1) The Untold Story Of Silk Road ...
Continue Reading

10 Lessons Learned From Painful Ryanair $5M Cyberheist

Low-cost airline Ryanair shamefacedly came clean last week that they fell victim to a cyberheist which stole almost 5 million dollars out of its fuel bank account. The money was siphoned ...
Continue Reading

Social Engineering Exploit Fools HR with Infected IT Resumes

Proofpoint threat researchers recently detected a clever email-based attack that combines phishing and social engineering techniques in order to trick users into opening a malicious ...
Continue Reading

Scam Of The Week: Nepal Earthquake

More than 5,000 people dead and counting. And you can also count on cyber-criminals exploiting the disaster. What else is new. Disgusting. Scammers are now using the Nepal disaster to ...
Continue Reading

New Multi-Language Ransomware Crypt0l0cker

Ransomware is being localized for large Asian countries now. There is an ongoing attack targeting Korea, followed by Malaysia and then Japan. If you have business partners or subsidiaries ...
Continue Reading

Tesla Attack Caused By Social Engineering

A few days ago, you may have read the news that Tesla Motors had their website and Twitter accounts hijacked by pranksters. OpenDNS has a blog post that goes into great technical detail.
Continue Reading

CyberheistNews Vol 5 #17 Apr 28, 2015 FUN CARTOON: The 5 Generations Of Security Awareness Training

FUN CARTOON: The 5 Generations Of Security Awareness Training For a change, let's have some fun for a moment. InfoSec is gloomy enough as you will see if you keep on reading. So first the ...
Continue Reading

Ransomware Mafia Now Uses Bitcoin As Obfuscation Layer

Bitcoin is a very speculative currency, still relatively easy to manipulate compared to the major currencies, and subject to massive increases and drops in value. Currently the falling ...
Continue Reading

How Criminals Exploit Gaps In Your Security Awareness Training

I was at RSA in San Francisco last week. Great show, with ~30,000 attendees and packed exhibit halls at the Moscone Center. We invited KnowBe4 customers who were attending RSA for a ...
Continue Reading

CyberheistNews Vol 5 #16 Apr 21, 2015 - Scam Of The Week: IRS Refund Ransomware

*|CyberHeistNews|* Scam Of The Week: IRS Refund Ransomware CyberheistNews Vol 5 #16 Apr 21, 2015 Scam Of The Week: IRS Refund Ransomware Many of us waited till the last moment before the ...
Continue Reading

The 5 Security Awareness Training Generations [CARTOON]

Today, your employees are frequently exposed to advanced phishing and ransomware attacks. Your users are the weak link in your IT security. There are 5 ways (generations) to train ...
Continue Reading

Scam Of The Week: IRS Refund Ransomware

Many of us waited till the last moment before the April 15 tax deadline and are now holding our collective breath in expectation of that possibly rewarding refund. The problem is that ...
Continue Reading

90% of phishing incidents trace back to PEBKAC and ID10T errors

Don't have time to read through the massive Verizon's 2015 Data Breach Investigations Report? Here is a great summary; 90% of Security incidents are still caused by PEBKAC and ID10T ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews