KnowBe4 Blog

Security Awareness Training

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

The U.S. Cybersecurity and Infrastructure Security Agency Lays Out Strategic Vision and Priorities in the Wake of Texas Ransomware Attacks.

This new document, entitled Strategic Intent highlights ways to “defend today, secure tomorrow” and comes out as the CISA director admits that ransomware is “only getting worse.”

Microsoft Remains the Most Impersonated Brand in Phishing Attacks, with Facebook Phishing Surging

For the fifth quarter in a row, Microsoft is the favorite domain of choice for scammers using phishing attacks to lure their victims into clicking on malicious content.

18 Months, 61 Billion Credential-Stuffing Attacks

Akamai observed 61 billion credential stuffing attacks between January 2018 and June 2019, according to Computer Business Review. In a new report on Internet security, Akamai researchers ...

Oklahoma Pension Fund Robbed of $4.2 million via Compromised Email

Attackers stole millions of dollars from Oklahoma’s pension fund for retired law enforcement officers, the Oklahoman reports. The Oklahoma Law Enforcement Retirement System (OLERS) said ...

Ex White House CIO attacks insurance firms for 'fuelling ransomware industry'

Former CIO of the White House Theresa Payton has warned that cyber insurance companies are supporting the ransomware industry by manipulating organisations into paying to have their ...

WSJ: "U.S. Targets North Korean Hacking as Rising National-Security Threat"

Ian Talley and Dustin Volz at the WSJ wrote:

Employees Are the Reason 70% of Financial Companies Have Suffered Security Incidents in the Last Twelve Months

The latest data from cybersecurity vendor Clearswift shows untrained employees are clearly the source of incidents that plague an overwhelming majority of companies in the financial ...

Video Becomes the Next Big Bait for Social Engineering

Scammers are always looking for new ways to get potential victims to engage. It appears that the latest trend is to leverage our familiarity with watching video to spawn an attack.

Only 5% of U.S. Healthcare Employees Receive Continual Cybersecurity Awareness Training

A recent report by security vendor Kaspersky highlights how healthcare organizations are at risk of cyberattack – and how a lack of training is responsible.

Global Phishing Campaign Targets Universities

Researchers at Secureworks’ Counter Threat Unit (CTU) have been tracking a major phishing campaign that’s using library-themed emails to target more than sixty universities around the ...

Germany Gets Hit With Destructive Filewiper Phishing Attack

Cyber security remains the biggest threat to business in Africa

CAPE TOWN – African business owners who attended the World Economic Forum (WEF) on Africa in Cape Town have flagged cybersecurity as the biggest threat to business.

Ethical Hackers as Educators

Ethical hackers are especially well-positioned to use their knowledge of attack techniques to educate people, according to Zoë Rose, a white-hat hacker based in the UK. On the CyberWire’s ...

FBI Cyber Warning: Attacks On Key Employees Up 100%, As 281 Are Arrested

Zak Doffman, contributor at Forbes reported: "There is a cyberattack epidemic hitting businesses around the world, targeting individuals responsible for requesting fund transfers or ...

The Legal Profession's Catfishing Problem

Scammers frequently impersonate lawyers in fraudulent emails in order to get recipients to take those emails seriously, according to Victoria Hudgins at Legaltech News. Legal threats or ...

The FBI Updates Their Numbers And BEC Is Now A 26 Billion Dollar Scam

FBI's Internet Crime Complaint Center (IC3) says that Business Email Compromise (BEC) scams —aka CEO Fraud—are continuing to grow every year, with a 100% increase in the identified global ...

Cybersecurity: 99% of email attacks rely on victims clicking links

Danny Palmer at ZDNet had the scoop: "Social engineering is by far the biggest factor in malicious hacking campaigns, warn researchers – so how can it be stopped?"

Nemty Ransomware Infests Bogus PayPal Site

BleepingComputer describes a PayPal phishing site that’s delivering a new strain of Nemty ransomware. The attackers used Unicode characters from different alphabets to make their URL look ...

Visa Scam in the UK Targets Chinese Students

Scammers are using bogus threats of deportation to coerce Chinese students studying in the UK into handing over tens of thousands of dollars, the Guardian reports. The scammers are posing ...

Cybercriminals Unleash Ransomware Attack Designed to Compromise the Security of 120 French Hospitals

A ransomware infection has left one hospital in a group of 120 resorting to pen and paper as they work to remediate an attack custom-designed to attempt to take down all 120.