Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Did China Leak Prism Deliberately?

UPDATED June 9: 16:51p - In an interview with TechCrunch, Eugene H. Spafford, a computer science professor at Purdue and a noted expert in computer security observed something ...

VIDEO: They Gave Me 90 Seconds...

Our VP Channel asked me to record a 90-second elevator pitch why next-generation security awareness training is necessary to keep your network secure. Here it is! (pant, pant...)

46 Percent Of Hospital’S Hacked Money Gone For Good

Chelan County Treasurer David Griffiths says Leavenworth's hospital district stands to recover less than half the $1 million stolen in an online banking theft. About $415,000 has been ...

New Fun Little Quiz: How Phish-prone Are You?

We created a fun new little quiz you could send to your users!

CyberheistNews Vol 3, #23

How the Syrian Electronic Army Hacked The Onion

This is a write-up of how the Syrian Electronic Army hacked The Onion using spear-phising. In summary, they phished Onion employees’ Google Apps accounts via 3 separate methods. From ...

Cybercrime Targets: C-Level execs, HR managers and System Admins

According to a recent research of Group-IB on cybercrime, senior management is considered among most popular targets.

Interesting Infection Danger Numbers

Symantec just released a white paper where they compared their product with 6 other enterprise endpoint security products. They had AV-Test do the review, and they included above graph to ...

Top 5 System Admin Hate Votes

May 22, the question was asked on Spiceworks: "What is your IT-related arch nemesis?". More than 200 replies came in. We tabulated (and somewhat normalized) the main things that generate ...

The Seven Deadly Social Engineering Vices

(updated June 17, 2015) You may not be aware that there is a scale of seven deadly vices connected to social engineering. The deadliest social engineering attacks are the ones that have ...

CyberheistNews Vol 3 #22

Webroot Spots NATO Job Apps Lead To Malware

This one qualifies as a Scam Of The Week and it's a good one to forward to your employees.

0-Day Threats and Security Awareness

OK, we all know that there is a lively trade in 0-day threats. Often this is an unknown vulnerability in a popular browser that is not fixed yet. Microsoft recently announced they fixed ...

Your Opinion Please! Family Online Safety

CyberheistNews Vol 3, # 21

CyberheistNews Vol 3, # 21

End-user awareness is the missing link in cyber security

This article appeared originally at Government Security News Fri, 2013-05-17 03:56 PM By: Megan Horner Megan Horner Nobody can argue that cyber security and data privacy have become hot ...

Phishing Scam Of The Week: Walmart.com

Wal-Mart took special effort this week and warned customers of an unusually 'high quality' phishing email that tries to get personal and credit information. They stated on their corporate ...

Cybercrime Attack Vector Of Choice: Employees

Today, employees are the low hanging fruit for cybercrime. Organizations counter this with what is called 'Security Awareness Training' (SAT), but modern SAT is far removed from how it ...

Facebook 'Fraud-as-a-Service' Promoted Via Google

You may have read CyberheistNews Vol 3, #19, which had 'Fraud-as-a-service Goes Mainstream' as its headline. Here is a follow up on that. You can now download apps that hack Facebook, and ...

CyberheistNews Vol 3 #20

Latest Attack Trend: 'Persistent Spear Phishing'


Get the latest insights, trends and security news. Subscribe to CyberheistNews.