Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

CyberheistNews Vol 3, 39

CyberheistNews Vol 3, # 39

FBI: “Beta Bot” malware kills your anti-virus and steals data

This week, the FBI sent out a warning that a strain of malware known as "Beta Bot" can turn off your antivirus, stops access to the websites of antivirus vendors so that your antivirus ...

Is Your Security Awareness Training Program Broken?

Steve Ragan over at CSO Magazine wrote:

RAPID7 SECURING USER RISK

Rapid7 found 66% of IT professionals conduct user security awareness training to reduce the risk of successful phishing attacks.

CyberheistNews Vol 3, # 38

CyberheistNews Vol 3, # 38

Scam Of The Week: Ransomware Uses Child Porn Threat

Getting caught viewing child porn is a huge deal and instantly makes you an outcast in most western countries. Cybercriminals have cooked up a new way to blackmail people out of their ...

CyberheistNews Vol 3, # 37

CyberheistNews Vol 3, # 37

Scam Of The Week: "U.S. Starts Bombing Syria"

This one is crafty. There is a fake CNN spam being sent with a subject that reads: "The United States began bombing!" in Syria, but clicking on it will likely result in the workstation ...

Data Breach? You WILL Be Sued...

It's almost 10 years ago that the first big data breach happened. That was data broker ChoicePoint and 160,000 consumer records were stolen. Dan Kaplan at SC Magazine had a long article ...

What's Next for IT Debate #3 Does Infrastructure Really Matter?

You can see and hear me September 17th at 1pm, 10am PT. The subject is: "Does Infrastructure Really Matter -- What clients don't know can hurt them"

KnowBe4 Finalist in Tampa Industry Achievement Awards

We just received word from the Tampa Bay Technology Forum that KnowBe4 has been selected as a finalist in TBTF’s 10th Annual Industry Achievement Awards in the Emerging Technology Company ...

Kevin Mitnick Security Awareness Training 2014

CyberheistNews Vol 3, # 36

CyberheistNews Vol 3, # 36

Kevin Mitnick Details Modern IT Threats; spear phishing and more

One of the most infamous hackers of all time talks about Website security and what users should do to protect themselves. In the world of computer security hackers, few are as well-known ...

SEA used spear-phishing in attack on NY Times

A spear-phishing attack, one of the most common and oldest cyber tricks in the book, enabled hackers to hijack and modify the DNS records for several domains on Tuesday, including The New ...

Cybercrime Automates Fake ID's For Spear-phishing

Today it was reported through several sources that a new Cybercrime-as-a-Service option is available: creation of fake scanned passports, ID cards, driver's licenses and fake scanned ...

CyberheistNews Vol 3, # 35 Security-Awareness-Training-Newsletter

CyberheistNews Vol 3, # 35

April 8, 2014: WinXPGeddon

If you still run Windows XP April 2014, you've got a timebomb on your hands if that system is still connected to the Internet. Stand-alone systems are a bit less of a risk.

Electronic ID cards join fight against phishing attacks

Phishing attacks are believed to have hit 37.3 million people last year, escalating online password theft 300%. To fight back against this type of cyberattack, a team of researchers at ...

New Cybercrime-as-a-Service: Unethical Pen-testing

I have talked about this a few times before, there is a well-developed $3 Billion underground economy specialized in cybercrime. Here is an example of a "promising" new criminal DIY ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.