Security Awareness Training Blog

Security Awareness Training Blog

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

[Heads-up] Bad Guys Love Marriott: 500 Million Data Breach Is Phishing Heaven

So I guess we have just reached the tipping point, it's "privacy game over" for business travelers.
Continue Reading

KnowBe4 Fresh Content Update & New Features November 2018

We've got a few content updates in the KnowBe4 Modstore to share with you for the month of November!
Continue Reading

Employers Are Liable If They Don't Protect Employees' Sensitive Personal Information from Attack

A recent ruling from the Pennsylvania Supreme Court on an employee lawsuit against the University of Pittsburgh Medical Center stemming from a data breach should put all employers on ...
Continue Reading

Shadow IT is Alive and Well: One-Third of Employees Deploy Their Own Software

Employees see IT as an “inconvenience” and look for ways to get around security measures, putting the organization at risk, according to SailPoint’s 2018 Market Pulse Survey.
Continue Reading

As You Read This, It's Cyber Monday. How To Avoid The Top 10 Security Threats

InfoSecBuzz asked a number of security experts for their advice on the top security threats and how to avoid them. These are specialists from Alienvault, Cylance, Cybereason, F5 Networks, ...
Continue Reading

[Heads-up] Bad Guys Are Now Taking Over Email Inboxes Without Phishing Attacks

I found a great article in SecurityWeek by Alastair Paterson, the CEO of Digital Shadows. Could not have said it better myself, and he alerted everyone about an attack vector that was ...
Continue Reading

Do Your Emails Make the Naughty or Nice List?

Black Friday is just as popular with hackers as it is with shoppers. So is Cyber Monday, for that matter.
Continue Reading

CEOs are Prime Targets for Social Engineering Attacks

CEOs can be the weakest link in an organization’s security posture, according to Mimecast’s Matthew Gardiner. Carole Theriault talked to Gardiner last week on The CyberWire’s Hacking ...
Continue Reading

How better training, cybersecurity upgrades made one credit union safer

America’s Christian Credit Union, Glendora, Calif., reduced its cybersecurity threat plane by 90 percent by upgrading both its hardware and its resistance to phishing – and earned a ...
Continue Reading

Hacked Law Firm Can't Claw Back $580,000 From Bank That Completed Transfer

Max Mitchell at Law.com has an interesting and rather painful story. Don't let this happen to your organization.
Continue Reading

KnowBe4 Named a Leader in the 2018 Gartner Magic Quadrant for Security Awareness Training

KnowBe4 has been positioned by Gartner, Inc. in the Leaders quadrant of the 2018 Gartner Magic Quadrant for Security Awareness Computer-Based Training for the second year in a row. ...
Continue Reading

Tweets from Elon Musk Still Aren't What They Seem

We've seen this before, and it's worth noting again. A tweet from a blue-checked Elon Musk is all it takes to set a Bitcoin giveaway frenzy into motion. The only problem is that it’s just ...
Continue Reading

Having a Cybersecurity Culture Matters (and Pays)

According to ISACA and the CMMI Institute, organizations continue to invest heavily in security technology while neglecting security training to create the appropriate corporate culture.
Continue Reading

Security is a Whole-of-Organization Responsibility

We've blogged about other recent studies of security. They're in substantial agreement. Here's one from Gemalto, and it reports that more than 4.5 billion digital records, each with an ...
Continue Reading

Catphishing or Emotional Terrorism or Both: You Decide

A 65-year-old woman from North Carolina, Roxanne Reed, is in jail for allegedly plotting to kill her mother for the insurance money. Roxanne Reed had swallowed a catphishing scam, one in ...
Continue Reading

CSO: Users Pose the Greatest Security Risk

The latest data from CSO’s 2018 U.S. State of Cybercrime report highlights the risk users create, and how little organizations are doing to address it.
Continue Reading

Most Americans Can be Fooled by Fake Election Emails

The average American cannot reliably distinguish between fake and legitimate election campaign emails, according to a study by Valimail. In the weeks leading up to the US midterm ...
Continue Reading

Successful Pretexting Attacks Have Nearly Tripled since 2017

Pretexting attacks are a growing threat to organizations, warn Chris Tappin and Simon Ezard from the Verizon Threat Research Advisory Centre. Verizon’s 2018 Digital Breach Investigation ...
Continue Reading

KnowBe4 Fresh Content Update & New Features October 2018

Check out the content and feature updates in the KnowBe4 platform for the month of October!
Continue Reading

Elon Musk Draws Attention to Cryptocurrency Scams on Twitter

The Tesla founder’s recent tweet about cryptocurrency got him temporarily locked out of his Twitter account, demonstrating the seriousness of the scam.
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews