KnowBe4 Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in human and agent security including social and prompt engineering, ransomware and phishing attacks.

NSO spyware ‘targets Big Tech cloud services’

The Israeli company whose spyware hacked WhatsApp has told buyers its technology can surreptitiously scrape all of an individual’s data from the servers of Apple, Google, Facebook, Amazon ...

Lateral Phishing Used To Attack Organizations On Global Scale

Warwick Ashford at ComputerWeekly reported: "Lateral phishing is a growing type of account takeover that has enabled attackers to target more than 100,000 people by hijacking just 154 ...

Whoa Nellie. BEC Scams Average USD 300 Million Per Month In Illegal Transfers

New data compiled by the Financial Crimes Enforcement Network (FinCEN) shows that illegal transactions linked to business email compromise (BEC)—aka CEO Fraud— scams averaged $300 million ...

CBInsights Welcomes KnowBe4 To The Cybersecurity Unicorn Club

CBInsights wrote: "Cybersecurity unicorns (*) are being minted at a faster rate than ever before, and $1B+ valuations are coming through even larger funding rounds. Private companies are ...

Microsoft Notifies 10,000 Customers About Nation-state Cyber Attacks

In an article about cyber security related to voting machines, an interesting snippet of information surfaced: “Microsoft said it has notified almost 10,000 customers in the past year ...

SANS Security Awareness Report Highlights the Rising Era of Awareness Training

SANS Security Awareness, a division of SANS Institute, announced they have released their new 2019 Security Awareness Report. In its fifth consecutive year, this very useful annual report ...

[INFOGRAPHIC] Employees receive nearly five phishing emails per work week, according to Avanan

One in every 99 work emails is a phishing attack, according to a recent Avanan report. With employees accustomed to a busy inbox, it's easy to fall victim to a phishing attack disguising ...

Mimecast Identifies Brand New Phishing Tactic Called "SHTML"

In early April, researechers discovered a rare type of server-parsed HTML (SHTML) based phishing attack emerging from the UK.

Chinese Hackers Use Island Hopping to Steal Industrial and Commercial Secrets in 5-year Attack on the World’s Largest Technology Service Providers

Dubbed the “Cloud Hopper” campaign, victim companies such as Ericsson, HPE, IBM, and more were targets of exfiltration aimed and helping advance the Chinese economy.

Microsoft Discovers New Excel-Based Attack to Deliver the FlawedArmmyRAT Malware

A new set of tweets from Microsoft Security Intelligence walks through an attack that uses a number of built-in Windows toolsets to infect machines with the notorious malware.