KnowBe4 Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in human and agent security including social and prompt engineering, ransomware and phishing attacks.

Iranian Hacker Group APT34 Use New ‘Tonedeaf’ Malware over LinkedIn in Latest Phishing Campaign

Targeting several key industries, this new campaign likely seeks to aid the Iranian government with information that could be of use to further Iran’s economic and security goals.

[Heads-up] Nationwide Bomb Threat Extortion Phishing Attack Campaign With A Twist

IN OFFICES AND universities all across the country Thursday, the same threat appeared in email inboxes: Pay $20,000 worth of bitcoin, or a bomb will detonate in your building. Police ...

Two Puerto Rico Hospitals Hit With Ransomware That Encrypts 520,000 Patient Records

The two hospitals were hit by ransomware infections and are one of the largest data breaches reported by the U.S. Department of Health. This particular incident encrypted all kinds of ...

Reuters: "BlackRock in talks to take over Cofense after U.S. security concerns - sources"

(Reuters) July 28, 2019 — "BlackRock Inc (BLK.N), an investor in Cofense Inc, is in advanced talks to take over the U.S. cyber security firm, after a U.S. national security panel asked ...

Schools In Both The US And UK Victim Of Recent Phishing Attacks

A number of educational institutions have recently fallen victim to cyberattacks, highlighting the need for increased awareness training for students and faculty. SC Media UK has ...

NSA Launches Cybersecurity Arm To Defend The U.S. From Foreign Adversaries

Kate O'Flaherty wrote in Forbes: "The National Security Agency has announced its intention to create a cybersecurity directorate this fall in a bid to defend the U.S. against foreign ...

Here Is Some Great InfoSec Budget Ammo From UBS

A KnowBe4 employee forwarded this PDF to me. There is a very interesting point in here: your cybersecurity practices affect the valuation of your company. That should get the attention of ...

Louisiana Declares Cybersecurity State of Emergency

A series of ransomware attacks on school district systems leads the governor to declare the state's first cybersecurity state of emergency.

OSINT – a Hacker’s First Asset in Targeted Attacks

Before a cybercriminal wants to engage in a targeted attack against a particular organization or individual, they’d like to know a few things first. That’s where OSINT comes into play.

New Study Finds Employees Pose the Greatest Cybersecurity Risk

While historically being seen as an organization’s greatest asset, the latest report from the analyst firm Ponemon cites humans as the weakest link.