Human Risk Management Blog

Security Awareness Training

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

Amazon, Paypal, and Gmail Users are the Latest Target in a Sophisticated Multistage Phishing Attack

The latest attack, dubbed “Heatstroke” uses new target-specific phishing kits that may be sold as a “phishing-as-a-service” using new techniques to avoid leaving a trail.

More Than 2.2 Billion Stolen Account Credentials Have Been Made Available on the Dark Web

2019 is looking to be the year of the “data dump”, with more exposed records than any other year, empowering further credential stuffing attacks, according to McAfee.

Crime Sometimes Pays: $1.1M Recovered from U.K. Phishing Scammer 2 Years After Being Caught

We don’t often hear enough stories of cybercriminals being caught and paying back what they’ve stolen, but in the case of scammer Grant West, that’s exactly what has happened.

New Instagram Phishing Scam Uses Familiar (But Fake) 2FA Codes to Trick Victims

Scammers use familiar verification methods to establish credibility and lull the victim into a false sense of security to compromise Instagram accounts.

FBI Issues ‘High-Impact’ Ransomware Attack Warning—What You Need To Know

The FBI has issued a new warning that healthcare organizations, industrial companies, and the transportation sector are being targeted with ransomware. The attack methodologies continue ...

Cybersecurity Awareness Is Not Just For October!

By Joanna Huisman, KnowBe4's new SVP Strategic Insights & Research. I have a big birthday coming up, and as you can probably guess, I’m less than thrilled about it. I tell myself it’s ...

[HUMOR] Her Majesty Is Not Inviting You to Save the Realm

Daniel Phillips at BeInCrypto reports that a snail mail phishing campaign is impersonating the Private Secretary to Queen Elizabeth II and asking people to loan between £450,000 and ...

KnowBe4 Fresh Content and Feature Updates - September 2019

October is National Cybersecurity Awareness Month and to help celebrate, KnowBe4 has news to share with you, new content and feature updates along with a really cool security awareness ...

KnowBe4 Honored for Innovation in Security Awareness Training with 2019 CyberSecurity Breakthrough Award

CyberSecurity Breakthrough, a leading independent market intelligence organization that recognizes the top companies, technologies and products in the global information security market, ...

Ransomware Incident To Cost Danish Company A Whopping $95 Million

Catalin Cimpanu for ZDNet's Zero Day reported: "Demant, one of the world's largest manufacturers of hearing aids, expects to incur losses of up to $95 million following what appears to be ...

Copyright Infringement Warning as Phishbait

Scammers are using fake copyright infringement warnings to trick people into handing over their Instagram credentials, Naked Security reports. The warnings arrive in emails that appear to ...

North Koreans Spear Phish U.S. Victims With Social Engineering Hidden In Obscure Kodak FlashPix Format

A suspected North Korean threat actor has been sending spear phishing emails targeting US organizations, according to Prevailion researchers Danny Adamitis and Elizabeth Wharton. Adamitis ...

NetWire Remote Access Trojan Being Spread by Phishing Campaign

Researchers at Fortinet have come across a phishing campaign delivering a new version of the NetWire remote access Trojan (RAT). The phishing emails claim to contain invoices and ...

"Mishperceptions": The Five Most Common Phishing Myths Busted!

By Joanna Huisman, KnowBe4's new SVP Strategic Insights & Research. The bad guys know that the easiest way into your organization is through your employees. This is not an opinion. Of ...

Senate Passes Bill Aimed At Combating Ransomware Attacks

The U.S. Senate has approved new legislation aimed at helping government agencies and private-sector companies combat ransomware attacks. The legislation comes as local governments and ...

KnowBe4 Acquires Twist and Shout Group to Enhance High-Quality Video Production Capabilities

I am excited to announce the acquisition of the Twist and Shout Group, which encompasses Twist and Shout Media and Twist and Shout Communications. Twist and Shout Group is a UK- and ...

[Heads Up] Five New Ways How Cyber Criminals Commit Insurance Fraud

TransUnion and Iovation predict that the increased use of online platforms to interact with insurance providers will result in new fraud challenges for insurance companies and their ...

Scam Of The Week: Yahoo Massive Data Breach Settlement Phishing Attacks

Yahoo is close to reaching a $117.5 million settlement in a class-action lawsuit over a series of data breaches that affected users between 2012 and 2016 — and your employees are ...

Chinese Hackers Target Airbus Suppliers in Quest for Commercial Secrets

European aerospace giant Airbus has been hit by a series of attacks by hackers targeting its suppliers in search of commercial secrets, sources told AFP, adding they suspected a Chinese ...

Russian Secret Weapon Against U.S. 2020 Election Revealed In New Cyberwarfare Report

You may have sensed this, but you need to confront the fact the Planet Earth is an anarchy of nations. The UN is ineffective and thoroughly corrupt. A few good things have come out of it, ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.