Security Awareness Training Blog

Phishing Blog

Learn about current phishing techniques, notable campaigns and attacks, what to watch out for 'in the wild', and more.

Nothing is Sacred: Scammers Phish Church Parishioners

Always looking for new ways to separate you from your money, cybercriminals in Canada are using names of priests and archbishops to solicit money.
Continue Reading

Homographic Domains Make Phishing Scams Easier

Is that email from citibank.com or citíbank.com? If you think that last sentence was a mistake, take another look, as you may be the next phishing victim. Cybercriminals are using ...
Continue Reading

Kiss Your Privacy Goodbye. Exactis Leaks A Database With 340 Million Personal Data Records

Whoa Nellie. Here is the ultimate spear phishing data trove. WIRED reported: "Earlier this month, security researcher Vinny Troia discovered that Exactis, a Palm Coast, Florida-based data ...
Continue Reading

[Heads-up] Employees Sue Company For W-2 Phishing Scam. Federal Court Decides Triple Damages

Imagine my surprise when I saw a picture of myself in the blog of large North Carolina Law firm Poyner Spruill. It was all good though. They had picked up an example of a real W-2 ...
Continue Reading

Exclusive Interview with Kevin Mitnick Ask Me Anything [VIDEO]

KnowBe4's Chief Hacking Officer Kevin Mitnick sat down with our team for an exclusive interview where we could ask him anything… We thought you’d like to hear his answers, too. Ever ...
Continue Reading

Penalty! Another FIFA World Cup Phishing Scam Found

As we round out the second week of the FIFA World Cup, new phishing scams continue to permeate, seeking to take advantage of fan’s interest and excitement.
Continue Reading

What Is Angler Phishing And How Do I Avoid Becoming A Victim?

Experian in an ongoing campaign to clean up their massive hack came out with a useful post: What is Angler Phishing? Angler phishing is the practice of masquerading as a customer service ...
Continue Reading

Phishing Attacks Make Mortgage Wire Fraud Easier

The stress of obtaining a mortgage has just gotten worse, thanks to cybercriminals trying to con you out of your money. In new attacks targeting companies involved in the mortgage lending ...
Continue Reading

Vacation Dream Home Phishing Nightmare (but with a Happy Ending)

Mike Malone and his wife found the vacation condo of their dreams in Florida. They were in touch with a real estate agent who was handling the deal when suddenly their condo purchase ...
Continue Reading

[Heads-up] Massive Downtime Caused By Bad Guys Killing Bank's 9,500+ Systems To Hide Stealing 10 Million Dollars Via SWIFT

A cyberattack against Banco De Chile (BDC)—that country's largest financial institution—bricked a hair-raising 9,000 workstations and 500 servers. However, killing these machines was ...
Continue Reading

New Global Research Underscores Continued Increase in Phishing Threats and Impact on Staff & Productivity

Barracuda today announced key findings from a new global research report. Here are the highlights:
Continue Reading

New Phishing Campaign Uses IQY Attachments to Bypass Antivirus And Installs RATs

A malicious spam campaign, distributed by the Necurs botnet, is using a new attachment type that is doing a good job in bypassing your antivirus and mail filters.
Continue Reading

We Received A CEO Fraud Phishing Attack From Our Own Personal Accountants

This is an up-close and personal account of how my wife Rebecca and I (we hope) dodged a cybercrime bullet. You probably do not know that I am an elected official of the City of ...
Continue Reading

Kate Spade Suicide Phishing Templates

This is another celebrity death which will spawn a raft of phishing and social media attacks. We recommend to inoculate your users before they make it through the filters.
Continue Reading

Watch Out For World Cup Soccer Phishing Scams

The 2018 FIFA World Cup has drawn a worldwide audience. It's also attracted phishing scams using event tickets as bait. Tickets for the matches can only be purchased legitimately through ...
Continue Reading

Punycode Makes SMiShing Attacks More Deceiving

Phishing attacks carried out via text messages that use the “Punycode” technique to make nefarious URLs look legitimate are becoming more popular, cloud security firm Zscaler says.
Continue Reading

Cobalt Cybercrime Group Resumes Phishing Attacks

The leader of the Cobalt hacking group was arrested in Spain two months ago, but the gang resurfaced at the end of May. Their spear phishing emails started hitting victims' in-boxes again ...
Continue Reading

Why is Windows 10 Rapidly Gaining Ground in The Enterprise While Win7 Gets Ditched?

Duo Security is a provider of secure login/access tools, and they just released their yearly Trusted Access Report with some very interesting data. Here Is The Summary Stats gathered from ...
Continue Reading

It's May 25th, 2018: GDPR DAY! Here Are Phishing Templates You Can Use...

Because it is "GDPR day" our templates team has been hard at work developing GDPR/Privacy policy templates. We have 6 new templates available in the system, located in Current Events. We ...
Continue Reading

Which Users Will Cause The Most Damage To Your Network And Are An Active Liability?

The statistic that four percent of employees will click on almost anything, with “Free Coffee” and “Package Delivery” taking some of the top spots among phishbait subject lines, may not ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews