Microsoft USB Scam Shows the Importance of Security Awareness Training

Stu Sjouwerman | Jul 25, 2022

Just when you thought scammers couldn't get more tricky in their attacks, this example will prove you wrong. One of our KnowBe4 colleagues shared this LinkedIn post on a recent very crafty USB scam:

USB Scam Alert

As you can see, the Microsoft USB looks VERY similar to a USB you would receive from Microsoft in the mail as part of an Office Professional Plus delivery. Unfortunately, the USB was plugged into the victim's computer and ransomware infected the machine.

This should be a valuable lesson for anyone that receives something in the mail that is software - ALWAYS assume that it could be malicious and always double-check with your organization to ensure that it is safe. New-school security awareness training can help your users identify the common red flags. 

We also have a new blog post by Roger Grimes that digs deeper into this malicious USB problem.

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.