Security Awareness Training Blog

Security Awareness Training Blog

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

The Bank of Hawaii early alert of scam phone calls spoofing caller ID

In an early-alert sign, The Bank of Hawaii is warning of a spate of scam phone calls that are spoofing the caller ID of the bank’s real call center, the Honolulu Star-Advertiser reports. ...
Continue Reading

Phishing Simulations Should be Educational, not Punitive

Phishing training programs need to be focused on educating employees rather than on shaming them, according to David Spark and Allan Alford, co-hosts of the Defense in Depth podcast. On ...
Continue Reading

They Know If You've Been Bad or Good...

Like most of the rest of us, malicious actors the world over love the holidays. It's a prime season to run social engineering schemes on users who are already of a mind to open their ...
Continue Reading

Responsibility...just because they are aware, doesn’t mean that they actually care.

This blog was cowritten by Joanna Huisman, KnowBe4's new SVP Strategic Insights & Research and Aimee Laycock. They say it takes a village to raise a child. It’s similar to any ...
Continue Reading

Waterloo Brewing loses $2.1 million in social engineering cyberattack

Waterloo Brewing Ltd. says it has lost $2.1 million in what it calls a social engineering cyberattack. The Ontario brewery says the incident occurred in early November and involved the ...
Continue Reading

Scripting the Language of Fraud

Scammers are constantly improving their craft and reusing techniques that are proven to work, and they sometimes share the most effective lines with other scammers, according to NPR. ...
Continue Reading

Companies Expected to Lose $5.2 Trillion in Opportunity Due to Cyber Attacks Over the Next Five Years

The big business of cyberthreats gets stamped with a huge price tag by professional services company Accenture in their latest report on Securing the Digital Economy.
Continue Reading

Ransomware Claims Are Up 50% in 2019 With Attacks Outpacing the Previous Five Years

According to cyber insurer Chubb, ransomware attacks are shifting industry focus and are becoming both more frequent and more expensive to address.
Continue Reading

[Heads-up. This Is Ugly] After Refusing The Maze Ransomware Payment, Their Stolen Data Was Leaked

After a deadline was missed for receiving a ransom payment, the group behind Maze Ransomware has published almost 700 MB worth of data and files stolen from a security staffing firm. Our ...
Continue Reading

A massive international email scam netted $3 million worth of top-secret US military equipment

In a recent case first reported by Quartz, a crew of international cyber criminals allegedly convinced an unidentified US defense contractor to send them millions of dollars worth of ...
Continue Reading

It's Happening The World Over: $300K Lost To Phone Scammer

A woman in Singapore lost $300,000 to a scammer posing as a Singtel customer service employee, according to the Straits Times. The scammer told the victim he would fix some problems with ...
Continue Reading

An Australian Watering Hole (but in Canberra, not the Outback)

The Australian Federal Parliament suffered a malware infection earlier this year after some users fell victim to a watering hole attack, the Australian Broadcasting Corporation (ABC) ...
Continue Reading

Cybercriminal Gang, Silent Starling, Creates New ‘Vendor Email Compromise’ Category

New attacks focus on organizations with global supply chains looking to trick a supplier’s customers into paying fake invoices and have already impacted 500 organizations worldwide.
Continue Reading

Now HERE is an interesting Phishing Campaign!

It's a phishing campaign against phishing campaigns! :-D It's a public service program that educates organizations and societies globally on the greatest cyber risk of all - the falsehood ...
Continue Reading

Ransomware Attack Hits Louisiana State Servers

Louisiana Governor John Bel Edwards on Monday revealed that a ransomware attack hit state servers, prompting a response from the state’s cyber-security team. The incident appears to have ...
Continue Reading

A Look at Election Influence And Social Engineering

Attempts to influence elections are by no means new, but highly targeted online advertising requires people to think about social engineering in the form of political messaging in a new ...
Continue Reading

Malicious Actors the World Over Endorse This One Security Practice

If you're working the trenches in your organization's IT department, then one of your more consistently annoying headaches involves passwords. Users and their passwords are the ongoing ...
Continue Reading

[Heads-Up] Scam Of The Week: Thousands Of Hacked Disney+ Accounts Are Already For Sale On Criminal Sites

Apart from me, guess who has been anticipating the Disney+ channel?
Continue Reading

A Majority of Organizations Experience Breaches Despite a Majority Saying They Are Prepared to Defend Against Them

The mismatch of signals by IT organizations shows a potential overestimation on IT’s part about its ability to prevent and protect against new cyberthreats.
Continue Reading

[Heads Up] This New, Unusual Ransomware Strain Goes Exclusively After Servers

Danny Palmer at ZDnet alerted on the following: "An unconventional form of ransomware is being deployed in targeted attacks against enterprise servers – and it appears to have links to ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews