Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Expect Micro Ransomware: Extortion One Document At A Time

I have been following the development of ransomware closely since September 2013 when the ransomware plague was unleashed on the internet in the form of CryptoLocker and its copycats. At ...

New RAA Ransomware Strain Created Entirely Using Javascript

Larry Abrams, who runs Bleepingcomputer was first to report on a new strain of ransomware called RAA. The criminal coders took the somewhat unusual step of writing the whole thing in ...

Scam Of The Week: Orlando Nightclub Phishing Attacks

Just when you think they cannot sink any lower, criminal internet scum is now exploiting the tragedy in Orlando. Unfortunately, from this spot I have been warning about these lowlifes ...

FBI: Business e-mail scam losses top $3 billion, a 1,300% increase in since Jan.

The FBI’s Internet Crime Complaint Center (IC3) this week said the scourge it calls the Business Email Compromise continues to rack-up victims and money – over $3 billion in losses so ...

New Type of Spear Phishing Directly Targeted at IT Pros

A member of the SpiceWorks IT forums reported he had received a new type of hybrid attack: first a phone call to his desk, followed up with a phishing email laced with malware, promoting ...

Scam Of The Week: Nasty Two-factor Auth Text Hack

We all know that two-factor authentication (2FA) is much better than just simple user/password credentials. However, there is a nasty spoofing trick that bypasses 2FA if the user does not ...

Individual ransomware payments skyrocket to a whopping $20,000

Heads-up! Individual ransomware payments are getting very expensive. Companies are stockpiling Bitcoin in case they are hit, and a new low-profile strain of ransomware is actually causing ...

Yikes: Ransomware scam targets lawyers with phony ethics complaints

Mike Mosedale at the Minnesota Lawyer wrote: "Talk about your dirty tricks. A new internet scam is targeting lawyers by exploiting one of their great fears: getting slapped with a ...

CyberheistNews Vol #6 #23

Scam Of The Week: FBI Warns Against Email Extortion

Your employees are being attacked both inside and outside the office. This new email extortion scam called CEO fraud can hit in both places, so it makes sense to warn them about this ...

UltraDeCrypter Ransomware DOES NOT Decrypt Your Files

KnowBe4 gets regular calls from system admins who found us on the internet that are between a rock and a hard place. Backups failed and they have no way to revert to normal files. Worse, ...

[ALERT] 93% of phishing attacks now have ransomware payloads

Oh boy. Things have gotten from bad to worse in an awful hurry. I remember the first time I reported on ransomware in the CyberheistNews Issue Feb 11, 2014, where an attorney's office ...

Looks Like 8 More Cyberheists By North Koreans

Gottfried Leibbrandt, chief executive of the world’s largest interbank funds-transfer system SWIFT, has said repeatedly that the prospect of cybercrime is what keeps him awake at night. ...

[INFOGRAPHIC] Don't Be The Victim Of A Cyberheist

We have created a new infographic for your users, as part of your ongoing security awareness training program. It's a few good reminders how to stay safe online, and to keep their ...

Top Ransomware campaign managers make 13 times more than avg Russian wages

A short report by Flashpoint gives us some insight into a recent ransomware campaign, which so far has generated a serious amount of profit considering it takes little effort to operate.

Phishing Attacks Ramp Into 2016 With Major Increase

In its most recent Phishing Trends Report, the APWG noted a 250% increase in phishing sites between October 2015 and March 2016 — and the 2016 increase shows the never ending criminal ...

Ransomware domains increased 3500% in Q1 2016

There has been a whopping 3500% increase in ransomware domains in the first quarter of 2016, compared to the last quarter of 2015. Those are the highlights of a new report by network ...

CEO And CFO Fired After Aerospace Company Grounded By CEO Fraud

Here is a great way for C-level execs to lose their job: allow your company to become the victim of CEO Fraud. That happened to the CEO and CFO of FACC, part of both Airbus' and Boeings' ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.