Human Risk Management Blog

Security Awareness Training

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

3 Eye Opening Reasons Why Security Awareness Training is Even More Critical Now That You Have a Remote Workforce

In the history of IT and cyberthreats, there has never been a more critical time for organizations to employ security awareness training than now. With employees working from home, the ...

Three More Ransomware Families Join the Extortion Game

As ransomware creators look for ways to ensure they get paid for their malicious efforts, many are taking a page from the Maze ransomware manual and are posting stolen data if not paid.

Novel, but Retrospectively Obvious: a QR Code Generator Scam

A scammer has stolen more than $45,000 worth of bitcoin over the past month by tricking people with fake QR code generators, ZDNet reports. Harry Denley, Director of Security at MyCrypto, ...

Removing Zoom Meeting ID's: Treating the Symptom, Not the Cause

Zoom has been under a lot of scrutiny lately, and it's commendable that the vendor has been working through as many security issues as it has. With great growth and visibility comes great ...

The Bad Guys Use A New Text Reversal Technique To Get Phishing Attacks Past Your Security Filters

Dark Reading reports that researchers at Inky have observed attackers using a text reversal technique to get their phishing emails past security filters. Many email security filters ...

Hackers have hit every country on Earth with coronavirus-themed cyberattacks

Cyber criminals have launched coronavirus-themed cyberattacks in 241 countries and territories, new research from Redmond showed. "Every country in the world has seen at least one ...

Struggling with the Whole WFH Thing? Fear Not! The Bad Guys are Here to Help!

By Eric Howes, KnowBe4's Principal Lab Researcher. Over the past month we have provided readers with regular updates on the growth and development of Coronavirus-themed phishing emails ...

Zoom's Recent Hypergrowth Challenges -- And How To Use It In A Secure Way

The massive uptick in use of the popular video conferencing service Zoom has resulted in a rise in stock price, a class action lawsuit, and a huge opportunity for cybercriminals.

NASA sees an “exponential” jump in malware attacks as personnel work from home

Ars Technica reports that NASA has experienced an exponential increase in malware attacks and a doubling of agency devices trying to access malicious sites in the past few days as ...

Share the Red Flags of Social Engineering Infographic With Your Employees

Social engineering and phishing are responsible for 70% to 90% of all malicious breaches , so it’s very important to keep your employees at a heightened state of alert against this type ...

Cloud-based Business Email Compromise

The FBI’s Internet Crime Complaint Center (IC3) published an alert warning that criminals are exploiting cloud-based email services to carry out business email compromise (BEC) attacks. ...

March Content Update: Including Work From Home and Coronavirus Training Resources

Here are a few important updates to share with you from the month of March.

Phishing Trends Recap of COVID-19 Related Phishing Schemes

Our Chief Evangelist Strategy Officer Perry Carpenter took a bit of time and summarized the crazy month of March 2020 looking at the exponential growth of COVID-19 themed phishing attacks.

Seven Tips to Optimize Security

Data breaches continue, phishing attacks are on the rise, and people responsible for security wake up in a cold sweat a few times a year worried they’re the next victims.

Social Distancing Elevates Both Personal and Organizational Risk

With many countries participating in social distancing and “shelter in place” directives, remote workers are subjecting themselves and their employer to a number of risks. Find out why.

Bad News from the (Fake) CDC: You've Got Malware

Malicious actors continue to probe organizations' security and defenses with malicious emails explicitly crafted to create and exploit sense of panic in the wake of the COVID-19. Over the ...

Malicious Actors Release Coronavirus Guidelines for America

You already knew this was going to happen. It was just a matter of waiting. Fast on the heels of the release of President Trump's "Coronavirus Guidelines for America," malicious actors ...

Organizations Say They Want Employees to Prepare for Ransomware Attacks, But Do Little in the Way of Training

Organizations are keenly aware of the ramifications of ransomware attacks and the need to prevent them but aren’t empowering users to prevent becoming the victim.

A new ransomware strain called 'Save the Queen’, distributes itself from your own Domain Controllers

Sophisticated cybercriminals have continuously improved the effectiveness of ransomware attacks, according to Yaki Faitelson, co-founder and CEO of Varonis. In an article for Forbes, ...

They're Here! COVID-19 Stimulus Check Phishes Finally Arrive

Last week the FBI warned Americans to be on the look-out for malicious emails attempting to bamboozle users with news surrounding economic fiscal stimulus checks that were to be delivered ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.