Human Risk Management Blog

Phishing

Learn about current phishing techniques, notable campaigns and attacks, what to watch out for 'in the wild', and more.

Context is the Key to Phishing Success

According to the latest report from NIST, one of the most critical factors around whether a user clicks a phishing email or not is context.

Nothing is Sacred: Scammers Phish Church Parishioners

Always looking for new ways to separate you from your money, cybercriminals in Canada are using names of priests and archbishops to solicit money.

Homographic Domains Make Phishing Scams Easier

Is that email from citibank.com or citíbank.com? If you think that last sentence was a mistake, take another look, as you may be the next phishing victim. Cybercriminals are using ...

Kiss Your Privacy Goodbye. Exactis Leaks A Database With 340 Million Personal Data Records

Whoa Nellie. Here is the ultimate spear phishing data trove. WIRED reported: "Earlier this month, security researcher Vinny Troia discovered that Exactis, a Palm Coast, Florida-based data ...

[Heads-up] Employees Sue Company For W-2 Phishing Scam. Federal Court Decides Triple Damages

Imagine my surprise when I saw a picture of myself in the blog of large North Carolina Law firm Poyner Spruill. It was all good though. They had picked up an example of a real W-2 ...

Exclusive Interview with Kevin Mitnick Ask Me Anything [VIDEO]

KnowBe4's Chief Hacking Officer Kevin Mitnick sat down with our team for an exclusive interview where we could ask him anything… We thought you’d like to hear his answers, too. Ever ...

Penalty! Another FIFA World Cup Phishing Scam Found

As we round out the second week of the FIFA World Cup, new phishing scams continue to permeate, seeking to take advantage of fan’s interest and excitement.

What Is Angler Phishing And How Do I Avoid Becoming A Victim?

Experian in an ongoing campaign to clean up their massive hack came out with a useful post: What is Angler Phishing? Angler phishing is the practice of masquerading as a customer service ...

Phishing Attacks Make Mortgage Wire Fraud Easier

The stress of obtaining a mortgage has just gotten worse, thanks to cybercriminals trying to con you out of your money. In new attacks targeting companies involved in the mortgage lending ...

Vacation Dream Home Phishing Nightmare (but with a Happy Ending)

Mike Malone and his wife found the vacation condo of their dreams in Florida. They were in touch with a real estate agent who was handling the deal when suddenly their condo purchase ...

[Heads-up] Massive Downtime Caused By Bad Guys Killing Bank's 9,500+ Systems To Hide Stealing 10 Million Dollars Via SWIFT

A cyberattack against Banco De Chile (BDC)—that country's largest financial institution—bricked a hair-raising 9,000 workstations and 500 servers. However, killing these machines was ...

New Global Research Underscores Continued Increase in Phishing Threats and Impact on Staff & Productivity

Barracuda today announced key findings from a new global research report. Here are the highlights:

New Phishing Campaign Uses IQY Attachments to Bypass Antivirus And Installs RATs

A malicious spam campaign, distributed by the Necurs botnet, is using a new attachment type that is doing a good job in bypassing your antivirus and mail filters.

We Received A CEO Fraud Phishing Attack From Our Own Personal Accountants

This is an up-close and personal account of how my wife Rebecca and I (we hope) dodged a cybercrime bullet. You probably do not know that I am an elected official of the City of ...

Kate Spade Suicide Phishing Templates

This is another celebrity death which will spawn a raft of phishing and social media attacks. We recommend to inoculate your users before they make it through the filters.

Watch Out For World Cup Soccer Phishing Scams

The 2018 FIFA World Cup has drawn a worldwide audience. It's also attracted phishing scams using event tickets as bait. Tickets for the matches can only be purchased legitimately through ...

Punycode Makes SMiShing Attacks More Deceiving

Phishing attacks carried out via text messages that use the “Punycode” technique to make nefarious URLs look legitimate are becoming more popular, cloud security firm Zscaler says.

Cobalt Cybercrime Group Resumes Phishing Attacks

The leader of the Cobalt hacking group was arrested in Spain two months ago, but the gang resurfaced at the end of May. Their spear phishing emails started hitting victims' in-boxes again ...

Why is Windows 10 Rapidly Gaining Ground in The Enterprise While Win7 Gets Ditched?

Duo Security is a provider of secure login/access tools, and they just released their yearly Trusted Access Report with some very interesting data. Here Is The Summary Stats gathered from ...

It's May 25th, 2018: GDPR DAY! Here Are Phishing Templates You Can Use...

Because it is "GDPR day" our templates team has been hard at work developing GDPR/Privacy policy templates. We have 6 new templates available in the system, located in Current Events. We ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.