Human Risk Management Blog

Phishing

Learn about current phishing techniques, notable campaigns and attacks, what to watch out for 'in the wild', and more.

41 Percent Of Infected Pay The Cryptolocker Ransom

I have warned about the Cryptolocker ransomware before, but now we have some hard numbers about the percentage of people that are forced to pay up when a workstation or server has been ...

Kiss Your Old Security Awareness Training Program Goodbye!

Is Your Security Awareness Training Program Not Working? Are Users Still Clicking Phishing Links And Opening Infected Attachments?

This Week Top 10 Phishing Scams

It's my job to keep an eye out for the most recent phishing scams and let everyone know. One of the newsletters I get as a source for this is called "hoaxslayer". They just reported some ...

Fake LinkedIn Phishing Profiles Going Pro

Why Cybercrime Pays Off

ransomware phishing warning issued by European Cybercrime Centre

Looks like the bad guys are also targeting Europe with ransomware phishing scams.

CyberheistNews Vol 4, # 05

CyberheistNews Vol 4, # 05

Social Engineering Alert: Missed Call From A Mystery Number?

TechCrunch wrote: "The people who read our site are a pretty savvy lot. You know not to accept checks from distant princes. You can spot a phisher from a mile away. But here’s one that ...

Scam Of The Week: Funeral Notification Phishing Attack

Another one to warn your employees about. The bad guys do not hesitate to exploit the most basic fears of people; the sudden death of a loved one. The message claims to be from a funeral ...

Arg The Cat O Nine Tails For Careless Clickers

Arg! The Cat O' Nine Tails For Careless Clickers!

SHOCKER: Point-Of-Failure Phishing Training Does Not Work

The Govinfosecurity site just reported on some very interesting scientific research that finds so-called "embedded training" is ineffective. Let's quickly define "embedded", they chose ...

The History Of Hacking In 5 Minutes For Dummies

What do you do when you need to explain the history of hacking to a busy non-technical manager in five minutes or less? Here is an attempt to make this extremely complex subject into a ...

Eastern European Hackers Hit Target Phish Out 40M Credit Cards

During the Black Friday shopping week, tens of millions of credit and debit card records were "phished" out of Target. The data breach was nationwide, and has extended for as far as ...

Interesting info on phishing and social engineering on 60 minutes

Last weekend, 60-minutes had a special about the NSA which spoke out on Snowden and spying. The headline was: "The NSA gives unprecedented access to the agency's HQ and, for the first ...

10 Social Engineering Predictions for 2014

Here are 10 predictions for 2014, all cyber attacks using social engineering to penetrate the network. Have fun reading, and I will try to report back in 12 months which ones came out as ...

Ponemon: Phishing part of 50% of APT's

The Antivirus Industry’s Dirty Little Secret

[Updated 5/1/2016]. The Antivirus industry has a dirty little secret that they really don’t want anyone to know. Despite the claims of their marketing departments, their products are not ...

A Serious Legal Liability: Bad or No Security Awareness Training

Please read this article and then forward it to the head of your legal department or the person in your organization who is responsible for compliance. Recently, the Department of Health ...

Is Your Security Awareness Training Program Broken?

Steve Ragan over at CSO Magazine wrote:


Get the latest insights, trends and security news. Subscribe to CyberheistNews.