Security Awareness Training Blog

Phishing Blog

Learn about current phishing techniques, notable campaigns and attacks, what to watch out for 'in the wild', and more.

New Type Of WhatsApp Phishing Attack

Heads-up. There is a new social engineering attack currently being tested in Europe, and that means we will see it in America in the near future.
Continue Reading

Second Quarter 2017 Top-Clicked Phishing Email Subjects [INFOGRAPHIC]

KnowBe4 customers run millions of phishing tests per year, and we report at least quarterly on the latest top-clicked phishing email subjects so our customers know what the highest-risk ...
Continue Reading

Scam Of The Week: Phishing Moves To Smishing

Cybercriminals are increasingly trying to circumvent your spam filters and instead are targeting your users directly through their smartphone with smishing attacks, which are hard to ...
Continue Reading

Russians Are Suspects in Phishing Attacks Involving U.S. Nuclear Site

A report from the FBI and the US Department of Homeland Security warns of malware attacks targeting mainly nuclear power stations, and energy facilities. The attacks started May this ...
Continue Reading

APWG Cybercrime Report: Phishers’ Command of Domain Name System Reaches All-Time High in 2016

Criminalization of DNS for Phishing Advanced Most Every Year Since 2012 CAMBRIDGE, Mass.-- The APWG's latest study has found that cybercriminals have been shifting their tactics markedly, ...
Continue Reading

Scam Of The Week: Real Estate Wire Transfer Phishing Fraud

According to the NY Daily News, State Supreme Court Justice Lori Sattler was in the process of selling her apartment and buying another, when she received an email that seemed like it was ...
Continue Reading

Global Cyber Alliance: "Few U.S. Hospitals Secure Their Email Against Phishing"

Shaun Waterman at the quite useful CyberScoop site wrote: "Fewer than one-third of the largest 98 public and private hospitals in the United States secure their email against phishing and ...
Continue Reading

July 4th and Current Events Phishing Templates

For KnowBe4 customers, we have some new templates available in Current Events and Holiday: Three July 4th-related templates in the Holiday category Five new Current Events templates ...
Continue Reading

Scam Of The Week: DMV Warns Drivers About Traffic Ticket Phishing

Online reporter Doug Olenick at SC Media was the first to point to a press release from the NY State Department of Motor Vehicles warning about a phishing scam where New York drivers are ...
Continue Reading

Did you know how the word Phishing came to be?

I found this at ComputerWorld: "The word phishing was coined around 1996 by hackers stealing America Online accounts and passwords. By analogy with the sport of angling, these Internet ...
Continue Reading

Scam Of The Week: Massive DocuSign Phishing Attacks

DocuSign has admitted they were the victim of a data breach of customer email addresses only that has led to massive phishing attacks which used the exfiltrated DocuSign information. ...
Continue Reading

Macron Campaign Fought Off Phishing Attacks With Cyberdeception Techniques

Gadi Evron is the Founder and CEO at IT security company Cymmetrica. He wrote a long-ish post on hackernoon (which is powered by Medium). I'm giving you the upshot, but first, what is ...
Continue Reading

Top 10 Most Dangerous Phishing Attack Of The Week

KnowBe4 gets thousands of phishing attacks reported weekly through our free Phish Alert Button, and we pick the 10 most tricky ones, defang them, and put these into a phishing campaign ...
Continue Reading

Massive Google Doc Phishing Attack Propagated Through Social Engineering

Think Before You Click On Random Google Doc Invitation Links A very convincing Google Docs phishing scheme raced through the internet yesterday, looking like it came from someone you ...
Continue Reading

Ransomware Causes 90-day Downtime And 700K Damages For Law Firm

PROVIDENCE, R.I. — Cybercriminals held a Providence law firm hostage for months by encrypting its files and demanding $25,000 in ransom paid in Bitcoin to restore access, according to a ...
Continue Reading

Northrop Grumman can make a stealth bomber – but falls for W-2 phishing attack

US military contractor Northrop Grumman notified their employees that hackers managed to gain access to their W-2 tax records. As The Register just reported, the makers of America’s ...
Continue Reading

Newark City Hall Computers Infected With Ransomware

NEWARK, N.J. (CBSNewYork) — . The City of Newark’s computer system has been disabled by hackers demanding thousands in ransom money, according to a published report. Hackers are demanding ...
Continue Reading

Cyber Insurer Beazley Sees New Phishing Threats Emerge

New York, April 25, 2017 - Beazley, a pioneer in cyber and data breach response insurance, today released its Beazley Breach Insights – April 2017 findings based on its response to client ...
Continue Reading

French Presidential Candidate Target Of Russian Hacker Phishing Attack

The French presidential election has been hit with a case of déjà vu. Emmanuel Macron's campaign said its staff received phishing emails meant to steal their passwords. Trend Micro said ...
Continue Reading

This Week's Top "In The Wild" Phishing Attacks

And here are this week's Top 10 "In The Wild" phishing attacks that we received from our customers by employees clicking the Phish Alert Button and sending the email to us for analysis. ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews