Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

PAYCHEX: 60% Of Hacked SMBs Are Out Of Business 6 Months Later

Paychex wrote a great article about the urgency of creating a cyber security culture in your business. This is excellent ammo to send to your C-level execs: "Creating a cyber security ...

Scam Of The Week: Phish With Hidden Sting

As you may have heard, KnowBe4 has released a no-charge Outlook Add-in that allows employees to report phishing attacks to their Incident Response team with just one click. It's called ...

CyberheistNews Vol 6 #3 Scam Of The Week: Dell Tech Support Service Tag Hack

This is a real one. A number of people using Dell PCs have been contacted by scammers claiming to be Dell Tech Support who actually had specific data that only Dell could have had. We're ...

Tampa is 842% above the national average in malware infections

A new study by Enigma Software revealed the hardest hit cities in the country when it comes to computer viruses. Tampa was ranked #2 for malware infections per person. That's 842% above ...

Files Lost Forever Due To Buggy Ransomware

Researchers discovered a sample of ransomware that damages files permanently. The malicious code is based on the work of Turkish Oktu Sen security researchers, who last year made their ...

Scam Of The Week: Dell Tech Support Service Tag Hack

This is a real one. A number of people using Dell PCs have been contacted by scammers claiming to be Dell Tech Support who actually had specific data that only Dell could have had. We're ...

CyberheistNews Vol 6 #2 Scam Of The Week: Fantasy Football Site Hacked

For this Scam Of The Week, we decided to go out on a limb and run a "What If" scenario" on an attack that we think is very likely.

KnowBe4 has explosive year over year growth of 358% for Q4 2015

(Tampa Bay, FL) January 11, 2016 --- KnowBe4 announced its explosive year over year growth of 358% for Q4 2015, with a record number of new corporate accounts and a stellar customer ...

CyberheistNews Vol 6 #1 First Javascript-only Ransomware-as-a-Service Discovered

Cybercrime has piggybacked on the extremely successful SaaS model and several strains of Ransomware-as-a-Service (RaaS) like TOX, Fakben and Radamant have appeared in 2015

First Javascript-only Ransomware-as-a-Service Discovered

Cybercrime has piggybacked on the extremely successful SaaS model and several strains of Ransomware-as-a-Service (RaaS) like TOX, Fakben and Radamant have appeared in 2015. However, a new ...

Scam Of The Week: Massive LinkedIn Spam Steals Passwords

"I feel like a complete idiot. I just got taken by a LinkedIn spam that may have just stolen my banking password." These words dropped in my inbox, written a while ago by Dan Tynan, ...

Credit Union Chilling CEO Fraud Story

I received this the last day of the year from a Director of IT Security who works at a mid-size credit union. "Stu, I think you’ll be interested in my story. If you want to share it, just ...

Cyber criminals release hard to recognize social engineering scam.

Jerome Segura, a senior security researcher over at our friends at Malwarebytes reported about a new, in-the-wild tech support scam that has moved from Amazon Web Services to Rackspace's ...

Top 10 Predictions for 2016: Read It, This Is A Good One

At the end of the year I spend a few days reading all the IT security pundit's 2016 predictions and synthesize them with my own perspective. The Crystal Ball issue is the shortest of the ...

KMSAT 2016 has been released

We are excited to announce that the Kevin Mitnick Security Awareness Training 2016 module has been released. If your subscription is current, you will see it in the Training -> ...

CyberheistNews Vol #5 #54 Scam Of The Week: Comcast Triple Threat

You are probably aware that Comcast is the largest home ISP in the U.S. and that they also have many thousands of business users. No wonder they are the target of a sophisticated social ...

Scam Of The Week: Comcast Triple Threat

You are probably aware that Comcast is the largest home ISP in the U.S. and that they also have many thousands of business users. No wonder they are the target of a sophisticated social ...

Major TeslaCrypt Ransomware Offensive Underway

This month, Symantec researchers reported a boost in TeslaCrypt attacks, going from 200 a day to 1,800. TeslaCrypt first appeared in March 2015, and differentiated itself because many of ...

Data Breach Caused By Phishing Results in $750,000 HIPAA Penalty

Federal regulators have hit the University of Washington Medicine with a $750,000 penalty and a corrective action plan as part of a HIPAA settlement after a 2013 malware-related breach ...

CyberheistNews Vol #5 #53 Despite Warnings, CEO Fraud Scams Still Successful And Growing

In the last few months, law enforcement has warned repeatedly about a new scam that is rapidly expanding. The FBI calls it "Business Email Compromise" (BEC), but it is better known as ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.