Human Risk Management Blog

Phishing

Learn about current phishing techniques, notable campaigns and attacks, what to watch out for 'in the wild', and more.

Phishing Continues to be on the Rise in 2018!

It should come as no surprise that the most successful attack tactic is being used more in 2018. APWG’s latest report shows us the trends and what to expect for the remainder of 2018.

New UK Phishing Campaigns Lure Industry Targets With Compromised Email Contacts

A new batch of U.K. phishing campaigns is using compromised email contacts to lure targets from the engineering, transport and defense sectors.

Spam Remains the Criminals' Favorite Online Tool

Spam is forty years old, and it's still the enduring favorite of cyber criminals. What's reckoned to have been the first spam was distributed in 1978 over ARPANET. ARPANET would evolve ...

UK Insurer Beazley: "Phishing attacks up in second quarter."

Attacks that target business email accounts continued to increase in the second quarter of 2018, accounting for 23% of incidents reported to Beazley P.L.C. clients, the insurer said ...

Snail-Mail Phishing with a CD as Bait

Several state government offices in the US have received CDs by mail, infected with malware. It's a clumsy attempt, according to an alert the Multi-State Information Sharing and Analysis ...

Why Using Brands Is An Essential Element Of Phishing Simulations

It's clear to everyone that company's brand is a valuable property. Often hundreds of millions of dollars were used to create the brand over decades. It creates instant recognition and ...

Emotet Phishing Epidemic: Infections Costing Orgs Up to $1 Million Per Incident

US-CERT alert sounds the alarm on Emotet, one of the most costly and destructive malware strains currently active.

Beware of Free Gift Card Phishing Scams

People can’t resist the lure of free stuff. Cyber criminals know this and are always looking for ways to make a quick effortless buck. Put these two together and you have the perfect ...

Is it Shark Week at your Organization?

Curiosity for one of the most aggressive and dangerous beasts in the ocean has us dedicating a week to learning about it. Should cyberattacks that put your organization at risk get equal ...

Second Quarter 2018 Top-Clicked Phishing Email Subjects [INFOGRAPHIC]

We've been reporting on the top-clicked phishing email subjects every quarter for a while now across three different categories: general emails, those related to social media, and 'in the ...

Scam Of The Week: *Another* New CEO Fraud Phishing Wrinkle

So, here's a new CEO Fraud phish: see these fresh screen shots from emails reported to us through the free KnowBe4 Phish Alert Button. Bad guys spoof the managing partner and CPA and an ...

Russian Reminders: Phishing is Fruitful

The recent indictment by special counsel Robert Mueller of 12 Russian military officials for the hacking of Democratic servers and emails in 2016 is a powerful reminder – phishing works.

New Report: Mobile Phishing on the Rise

With users being three times more likely to click on a suspicious link on their mobile device, along with over half of mobile users tapping on a phishing URL, mobile phishing is a bigger ...

From the Phishing Archives: Just How Far Will Cybercriminals Go for a Scam? Apparently into Outer Space.

The Nigerian Prince scam was found taking a turn upwards to the stars, seeking your help to bring a poor lonely astronaut home.

Sextortion Phishing Campaign Uses Recipient's Hacked Passwords

Krebs on Security has posted a new item: "Here's a clever new twist on an old email scam that could serve to make the con far more believable. The message purports to have been sent from ...

[Heads-Up] New Deceptive Strains Of Payroll Phishing: "Because that's where the money is..."

Most readers will probably be familiar with the story of bank robber Willie Sutton who, after being nailed by the cops, was asked why he robbed the bank. His answer (undoubtedly delivered ...

Court Ruling: Chubb Insurance Unit Crime Policy Covers ‘Spoofed’ Phishing Wire Transfer

Very interesting article in the Insurance Journal. In a closely-watched case on insurance coverage in an age of expanding cyber risk, a federal appeals court in New York has upheld a ...

Context is the Key to Phishing Success

According to the latest report from NIST, one of the most critical factors around whether a user clicks a phishing email or not is context.

Nothing is Sacred: Scammers Phish Church Parishioners

Always looking for new ways to separate you from your money, cybercriminals in Canada are using names of priests and archbishops to solicit money.

Homographic Domains Make Phishing Scams Easier

Is that email from citibank.com or citíbank.com? If you think that last sentence was a mistake, take another look, as you may be the next phishing victim. Cybercriminals are using ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.